Russian hackers, known as APT44 or Sandworm, exploited vulnerabilities in the encrypted messaging app Signal by using malicious QR codes. This breach enabled access to messages without breaking encryption, targeting Ukrainian military accounts and presenting global risks. While there's no direct evidence of infiltration in U.S. officials' Yemen discussions on Signal, the incident has raised alarms about the security of sensitive government communications. Signal has improved security measures post-incident, but concerns remain regarding the use of consumer apps for classified conversations, with potential implications for disinformation and national security.
"id": "sig150032625",
"linkid": "signal_88_franchise_group",
"type": "Vulnerability",
"date": "3/2025",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"