"‘Your Photos Have Been Uploaded’—The Telegram Scam Fooling Millions"



Introduction: In a new wave of cyberattacks, Telegram users are being targeted in a phishing scam that tricks them into compromising their accounts. The scam is cleverly designed to exploit users’ trust in familiar contacts, making it especially dangerous for unaware users. Here’s everything you need to know about this ongoing phishing scam, including how to spot it and protect yourself.

The Scam in Detail: The phishing scam begins with Telegram users receiving a message from one of their contacts. The message usually contains a disturbing claim, such as “Your photos have been uploaded on a particular site.” Alarmed, users are tempted to click the link provided, which appears to lead them to a Telegram login page. However, this page is a fake.








Upon entering their login credentials on this phishing site, users unknowingly give attackers full access to their Telegram account. Once inside, the scam automatically forwards similar messages to the user’s contacts, spreading rapidly across the platform and catching more users in the same trap.

How the Attack Works:

  1. Initial Contact: A user receives a message from one of their contacts, usually with a shocking or concerning statement.
  2. Fake Login Page: The user is directed to a login page that closely mimics Telegram’s actual login screen.
  3. Account Compromise: Once login credentials are entered, attackers gain control of the account.
  4. Spread of the Scam: The attackers use the compromised account to forward similar messages to the user’s contact list, perpetuating the cycle.

Why This Scam Is So Effective: The scam exploits people’s trust in their contacts. Most users are likely to believe a message coming from someone they know, making this attack harder to detect than typical phishing emails or random messages from unknown numbers.

How to Protect Yourself:

  • Verify Messages: If you receive any alarming or suspicious message, even from a known contact, try to verify its authenticity through another platform or contact method.
  • Enable Two-Step Verification: Telegram offers an additional layer of security through two-step verification. This helps prevent unauthorized access even if your credentials are compromised.
  • Check for HTTPS and the URL: Always check the URL and ensure it begins with “https://” and contains the official Telegram domain.
  • Report Phishing Links: Report any suspicious messages or links to Telegram so they can take action against the attackers.

Conclusion: Staying informed about phishing tactics is essential for protecting yourself online. As scammers use increasingly sophisticated tactics, vigilance is the best defense. Share this information with friends and family to prevent them from falling victim to this or similar scams.

Previous Post Next Post