Feed›Malware›Signal flaws allowed rogue servers to decrypt users’ contact...
MalwareCyber Insider
9.0 — CRITICAL

Signal flaws allowed rogue servers to decrypt users’ contact queries

📅 27 August 2026 at 10:42 UTC📰 Cyber InsiderView original source ↗
Signal flaws allowed rogue servers to decrypt users’ contact queries

Security researchers at V12 discovered two critical vulnerabilities in Signal’s Contact Discovery Service that could allow a malicious server operator to escape the protections of its Intel SGX enclave. The flaws enabled arbitrary reading of protected enclave memory and, in the more severe case, code execution inside the trusted environment. V12 researcher Nihal disclosed the … The post Signal flaws allowed rogue servers to decrypt users’ contact queries appeared first on CyberInsider.

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

A vulnerability in Signal's Contact Discovery Service allowed a malicious server operator to decrypt users' contact queries, compromising the privacy of Signal users. The vulnerabilities were exploited by a researcher using real Intel SGX hardware.

⚙️Technical Details
💥Impact Assessment
Severity: critical
Who Is at Risk
Signal users whose contact queries were sent to the affected servers
🛡️Recommended Actions
1Keep Signal updated with the latest patches
2Monitor for suspicious activity on your account
3Use a VPN when using Signal
📦Affected Products
Product Name: Signal's Contact Discovery ServiceAffected Software: True

Read the full article

This is a curated summary. The complete article is available at Cyber Insider.

Read on Cyber Insider ↗
← Back to feed