TeleMessage parent company Smarsh says it is “investigating a potential security incident” and has suspended all its services “out of an abundance of caution”
The messaging app that President Donald Trump's former national security advisor was seen using during …
CNBCKevin Breuninger
Context & Ripple Effects
The suspension follows reporting that TeleMessage, a maker of modified messaging apps used by U.S. officials, was breached and chat and contact data was exposed. That made the incident more than a vendor-security problem: it put a communications tool used in government-facing contexts under immediate scrutiny.
Subsequent examination of TeleMessage’s modified Signal client found plaintext chat logs being sent to its archive server, sharpening the central question of whether the product’s archiving layer changed the security properties users expected from Signal.
First-order effects
Smarsh’s precautionary shutdown immediately interrupts access to its services while the parent company investigates, forcing TeleMessage users and other affected customers to use alternatives or defer communications workflows.
TeleMessage faces an acute trust and continuity problem after the breach that exposed chats and contacts; its government-linked users must assess whether potentially sensitive communications or metadata were affected.
Second-order effects
Customers that adopted a modified messenger for retention or compliance functions will have to re-evaluate the trade-off between archival requirements and end-to-end messaging security.
The incident increases pressure on vendors selling secure-message wrappers or archive layers to demonstrate that added compliance infrastructure does not create a weaker data path than the underlying app.
Third-order effects
If security failures in government-facing communications tools continue to expose data, procurement and policy scrutiny will increasingly focus on the security of integration and retention layers—not just the reputation of the underlying messenger.
The episode points toward a broader separation between consumer-grade encrypted messaging and products adapted for institutional recordkeeping, where compliance features can become a distinct security boundary.
The trend: Security incidents are shifting attention from encrypted apps themselves to the archival, compliance, and administrative layers built around them.
TeleMessage, the messaging app used by former national security adviser Michael Waltz to discuss various topics with other government officials, is temporarily suspending services due to a reported hack. — This is why using random consumer apps for national security purposes is…
If SignalGate 1 and 2 and Trump's now-former national security adviser Mike Waltz using TeleMessage Signal wasn't enough, wait, there's more. — TeleMessage has now confirmed that its services have “suspended” in fears of a breach...
TeleMessage has suspended their service. Also, “a hacker credibly claimed to NBC News to have broken into a centralized TeleMessage server and downloaded a large cache of files” (this is a different hacker than my source) www.nbcnews.com/tech/securit...
TeleMessage, the company behind the modified Signal client used by Trump admin officials, has been breached. Attacker claims the hack took “15-20 minutes” with minimal effort. [image]
**If true**, why was the U.S. Government using a foreign built technology (I don't care which foreign) to capture these messages? Would literally be such a juicy intel target that I just straight up assume it's being exploited.
TeleMessage has wiped their website. (All links on the page are dead ends) Multiple gov agencies including State Dept and CDC have active contracts with the company. [image]
The “Signal Archiver” developer TeleMessage has stripped their website of information, and killed all the links. Look at this side by side. Left: TeleMessage website captured on May 1 Right: TeleMessage website today. (links dead) [image]
New detail added — CBP confirms it was using TeleMessage and disabled use after the hack: “Following the detection of a cyber incident, CBP immediately disabled TeleMessage as a precautionary measure. The investigation into the scope of the breach is ongoing,” the spokesperson s…
The Israeli company behind the modified Signal app used by the Trump administration has been hacked. TeleMessage's backend panel was accessed using credentials found in intercepted data. The hacker exposed archived messages and contact info for U.S. officials. The hack reveals [i…
NYT finally acknowledges TeleMessage is an Israeli app, but makes no mention of why that matters, the massive counterespionage concerns, or any connections to Israeli intelligence. It's like they're intentionally fumbling this story. [image]