
Telegram Desktop Flaw Could Have Let Attackers Steal Crypto Wallet Files
- —The flaw affected Telegram Desktop up to version 7.2.8
- —Attackers added victims to a group and lured them into clicking a tg:// link
- —Stolen files could include wallet data and Telegram session files
- —Telegram fixed the issue in version 7.2.9 on September 17; no real-world exploits confirmed
Why it matters: Crypto holders should update Telegram Desktop to 7.2.9, disable auto-downloads and keep private keys on a hardware wallet.
Source: Cryptoast