{"id":680563,"date":"2025-07-19T02:45:31","date_gmt":"2025-07-18T23:45:31","guid":{"rendered":"https:\/\/buradabiliyorum.com\/en\/hacker-reconnaissance-work-continues-on-telemessage-app-vulnerability-report\/"},"modified":"2025-07-19T02:45:31","modified_gmt":"2025-07-18T23:45:31","slug":"hacker-reconnaissance-work-continues-on-telemessage-app-vulnerability-report","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/hacker-reconnaissance-work-continues-on-telemessage-app-vulnerability-report\/","title":{"rendered":"Hacker reconnaissance work continues on TeleMessage app vulnerability \u2014 Report"},"content":{"rendered":"<p style=\"float:right;margin:0 0 10px 15px;width:240px\">\n                        <img decoding=\"async\" src=\"https:\/\/images.cointelegraph.com\/images\/840_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjUtMDcvMDE5ODFmNjQtM2I5ZC03YTU1LTg2NTItMzQ0ZTZhMGZiODFi.jpg\" class=\"type:primaryImage\">\n                    <\/p>\n<p>As of Wednesday, at least eleven IP addresses have actively tried to exploit the vulnerability, with thousands more addresses possibly doing reconnaissance work.<\/p>\n<p><p>Hackers are continuing to seek out opportunities to exploit the infamous CVE-2025-48927 vulnerability involved in TeleMessage, <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.greynoise.io\/blog\/active-exploit-attempts-signal-based-messaging-app\" rel=\"nofollow noopener\" target=\"_blank\" title=\"https:\/\/www.greynoise.io\/blog\/active-exploit-attempts-signal-based-messaging-app\">according<\/a> to a new report from threat intelligence company GreyNoise. <\/p>\n<p>GreyNoise\u2019s tag, which monitors attempts to take advantage of the vulnerability, has detected 11 IP addresses that have attempted the exploit since April. <\/p>\n<p>Other IP addresses may be performing reconnaissance work: A total of 2,009 IPs have searched for Spring Boot Actuator endpoints in the past 90 days, and 1,582 IPs have specifically targeted the <em>\/health<\/em> endpoints, which commonly detect Spring Boot Actuator deployments.<\/p>\n<p>Read more<\/p>\n<\/p>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMN63nwsw68G3Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/news\/\" data-internallinksmanager029f6b8e52c=\"2\" title=\"News\" target=\"_blank\" rel=\"noopener\">News<\/a> articles, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/buradabiliyorum.com\/en\/category\/general\/\" target=\"_blank\" >General category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/cointelegraph.com\/news\/hacker-reconnaissance-work-telemessage-vulnerability-report?utm_source=rss_feed&#038;utm_medium=feed&#038;utm_campaign=rss_partner_inbound\" target=\"_blank\" >Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>As of Wednesday, at least eleven IP addresses have actively tried to exploit the vulnerability, with thousands more addresses possibly doing reconnaissance work. Hackers are continuing to seek out opportunities to exploit the infamous CVE-2025-48927 vulnerability involved in TeleMessage, according to a new report from threat intelligence company GreyNoise. GreyNoise\u2019s tag, which monitors attempts to&#8230;<\/p>\n","protected":false},"author":1,"featured_media":680564,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/images.cointelegraph.com\/cdn-cgi\/image\/format=auto,onerror=redirect,quality=90,width=1200\/https:\/\/s3.cointelegraph.com\/uploads\/2025-07\/01981f64-3b9d-7a55-8652-344e6a0fb81b","fifu_image_alt":"","footnotes":""},"categories":[1],"tags":[90958,117,5056,70944],"class_list":["post-680563","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-general","tag-messaging-app","tag-business","tag-encryption","tag-hackers"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/680563","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=680563"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/680563\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/680564"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=680563"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=680563"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=680563"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}