💡Update May 19, 2025: Uh oh: DDoSecrets publishes 410 GB of heap dumps, hacked from TeleMessage's archive server Update May 21, 2025: I've written a new detailed analysis of the heap dump dataset itself: TeleMessage customers include DC Police, Andreessen Horowitz, JP Morgan, and hundreds more Update May 26, 2025:| micahflee
💡Update May 26, 2025: I've published the source code for TeleMessage Explorer: a new open source research tool I've been digging through the 410 GB of Java heap dumps from TeleMessage's archive server, provided by DDoSecrets. Here's a description of the dataset, some of my initial findings, details about an| micahflee
I've spent the last week or two writing code to make sense of the massive hack of data from TeleMessage, the comically insecure company that makes a modified Signal app that Trump's former national security advisor Mike Waltz was caught using. I've decided to publish my code as open source| micahflee
This morning, Distributed Denial of Secrets published 410 GB of data hacked from TeleMessage, the Israeli firm that makes modified versions of Signal, WhatsApp, Telegram, and WeChat that centrally archive messages. Because the data is sensitive and full of PII, DDoSecrets is only sharing it with journalists and researchers. There's| micahflee
TeleMessage, a company that makes a modified version of Signal that archives messages for government agencies, was hacked.| micahflee
Despite their misleading marketing, TeleMessage, the company that makes a modified version of Signal used by senior Trump officials, can access plaintext chat logs from its customers. In this post I give a high level overview of how the TeleMessage fake Signal app, called TM SGNL, works and why it's| micahflee
💡Update May 4, 2025: I have published quite the follow-up story, if I may say so myself: The Signal Clone the Trump Admin Uses Was Hacked Update May 6, 2025: I've written a new detailed analysis. The findings are based on the TM SGNL source code and are corroborated by| micahflee
A photograph of Trump administration official Mike Waltz's phone shows him using an unofficial version of Signal designed to archive messages during a cabinet meeting.| 404 Media
Things are scary in the US right now. ICE is disappearing students for protesting genocide and kidnapping innocent people off the streets to enslave in El Salvador. All over the country, people are taking to the streets every week to protest oligarchy, and fascist counter-protesters are starting to show up| micahflee
Android Studio provides app builders with an integrated development environment (IDE) optimized for Android apps. Download Android Studio today.| Android Developers
Learn about what you will need to enroll in the Apple Developer Program.| Apple Developer
Burp Suite Community Edition is PortSwigger's essential manual toolkit for learning about web security testing. Free download.| portswigger.net
The Apple Developer Enterprise Program allows large organizations to develop and deploy proprietary, internal-use apps to their employees.| Apple Developer