Russian Intelligence Exploits Signal Backup Flaw, Cryptographic Fix Proposed
ID: d57231de-f69c-574d-9ee2-41b84e0615a5
STIX ID: report--d57231de-f69c-574d-9ee2-41b84e0615a5
Feed Name: ThreatCluster
Threat Score
A critical flaw in Signal's static backup recovery key mechanism was allegedly exploited by Russian intelligence services (FSB and GRU) via social engineering, enabling unauthorized recovery of users' message archives; the FBI and CISA issued an advisory on June 26, 2026 reporting thousands of affected accounts and a proposed mitigation (STEBR) was published to limit exposure and improve key management.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
