TGViewer
Durov's Code Durov's Code @durovs_code · 37.6K subscribers
Post #4644 917
😏 Telegram export with a catch

Researchers found a Telegram Desktop flaw that can hide malicious code inside an exported chat. When the HTML file is opened in a browser, the code can read the messages in that export and send them to an attacker-controlled server.

It can also collect names and timestamps or replace the page with a fake Telegram verification form.

↖️ https://durovscode.com/telegram-desktop-html-export-security-flaw
  • 👍 15
More from @durovs_code
  1. Sep 21, 2026😄 Financial advice, apparently Saturn tested 18 popular AI models on personal finance que…
  2. Sep 21, 2026🤔 Teamwork, apparently The US has proposed a “notification mechanism” with China for AI i…
  3. Sep 18, 2026🤩 Bad optics Australia is considering banning camera-equipped smart glasses from federal…
  4. Sep 18, 2026🤐 A little help from the competition Researchers used Anthropic’s Claude to breach OpenAI…
  5. Sep 17, 2026😄 The models had other plans OpenAI says the industry still hasn’t solved how to reliably…
  6. Sep 16, 2026💅 No scrolling until 13 The European Commission wants to ban children under 13 from socia…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →