Telegram Bots Can Undermine Overall Encryption of the Chat App, Claim Researchers

Advertisement
By Gaurav Shukla | Updated: 18 January 2019 13:31 IST
Highlights
  • Telegram Bots are quite popular among the app’s users
  • Telegram uses HTTPS protocol to encrypt the bot traffic
  • The app currently has over 200 million users globally

Telegram is a popular encrypted chat app used by millions of users

Telegram has emerged as a popular communications app for millions of users around the globe, who have security concerns and seek an encrypted chat platform. While the company's encryption protocol has long been controversial among the cryptography community, its bots have now come under fire in a recent report from a Web security firm. The security firm claims that the comparably lower security standard used for bots on the app undermines the overall security of the Telegram chats, making the supposed encrypted chats potentially susceptible to interception by malicious parties.

Telegram Bots are small apps that are mostly created by third-party developers to do a specific task and can be embedded inside chats or public channels. According to a research report by Forcepoint Security Labs, a US-based cyber-security firm, Telegram doesn't use the same encryption protocol with bots that the company uses to protects its chats. This means, adding a bot to a chat or public channel can potentially weaken the security of that particular chat and make it easier for a malicious party to intercept the chats.

“Telegram uses its in-house MTProto encryption for securing messages between regular users as it (justifiably) sees TLS as not secure enough on its own for an encrypted messaging application. Unfortunately, this does not apply in the case of programs which use the Telegram Bot API as messages sent this way are only protected by the HTTPS layer,” wrote Abel Toro, a security researcher at Forcepoint, in a blog post.

Advertisement

“To make matters worse, any adversary capable of gaining a few key pieces of information transmitted in every message can not only snoop on messages in transit but can recover the full messaging history of the target bot,” he added.

Advertisement

It is concerning that the security of a messaging service, which advertising itself as a “secure messaging application,” can allegedly be impaired by one of its own features. Forcepoint security researchers suggest that the Telegram users should totally avoid bots if they want to keep their chats private.

Telegram was originally launched back in 2015 and as per the last data released by the company, it has over 200 million active users worldwide.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Telegram, Telegram Bots, Encryption, HTTPS
Advertisement

Related Stories

Popular Mobile Brands
  1. OnePlus 15R India Launch Has Officially Been Teased
  2. Oppo Launches Find X9 Series in India with Hasselblad-Tuned Cameras
  3. Lava Agni 4 Demo Campaign Lets Buyers Experience the Phone Before Buying
  4. Bitcoin Price Slumps to $89,900 as Fear, Caution Grip Crypto Market
  5. Oppo Reno 15 Series Launched With Up To 6,500mAh Battery: See Price, Features
  6. The Game Awards 2025: See the Full List of Nominees
  7. Oppo Find X9 Series Launch Today: Know Price, Specs and More
  8. These Samsung Galaxy S26 Models Might Be Slimmer and Lighter, Tipster Says
  9. Oppo Enco Buds 3 Pro+ With Up to 43 Hours of Battery Life Launched in India
  10. Google's Latest Weather Forecasting AI Model Is Available to Users
  1. Asus ProArt P16 Launched With Up To Nvidia GeForce RTX 5090 GPU, Ryzen AI 9 HX 370 Processor: Price, Features
  2. Elon Musk’s xAI Releases Grok 4.1 AI Model, Rolled Out to All Users
  3. Oppo Enco Buds 3 Pro+ Launched in India With ANC, Up to 43 Hours Total Battery Life: Price, Features
  4. Bitcoin Price Slumps to $89,900 as Fear, Caution Grip Crypto Market
  5. The Game Awards 2025 Nominees Announced: Clair Obscur: Expedition 33 Leads With 12 Nominations
  6. Jeff Bezos Set to Head Project Prometheus, Building AI for Physical World Applications: Report
  7. Poco F8 Ultra Confirmed to Launch With Flagship Snapdragon 8 Elite Gen 5 Chip
  8. Oppo Find X9, Oppo Find X9 Pro Launched in India With MediaTek Dimensity 9500 Chipset: Price, Specifications
  9. iPhone Air Designer Abidur Chowdhury Reportedly Departs Apple for AI Startup
  10. Google DeepMind Releases WeatherNext 2, a Forecasting AI Model for Users
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.