| domain | rys.io |
| summary | The website's analysis reveals a consistent pattern of the Telegram app’s long-term `auth_key_id` becoming visible across various scenarios, suggesting a potential security vulnerability. This vulnerability was observed when using Tor, joining channels in different locations (Poland vs. Iceland), and even after blocking and unblocking IP addresses associated with the app.
The presence of multiple `auth_key_id` values, including all-zero values, alongside new keys, appears to correlate with the use of perfect forward secrecy during channel joining. The author questions Newag’s involvement in the locking functionality and highlights the identical 21-day stationary condition across separate systems. They raise concerns about unauthorized software modification and advocate for a collaborative approach with Dragon Sector to investigate the source of the intrusion. |
| title | Songs on the Security of Networks |
| description | a blog by Michał "rysiek" Woźniak |
| keywords | telegram, have, software, using, data, more, there, even, people, access, might, does, service, telegrams, time, being, like |
| upstreams |
blogroll.org |
| downstreams |
|
| nslookup | A 95.217.113.34 |
| created | 2024-11-29 |
| updated | 2026-01-16 |
| summarized | 2026-02-02 |
|
|