Leo was having a normal Tuesday until he opened a message from an unknown user in a large public group. His screen froze instantly. Every time he tried to restart Telegram, the app would crash within seconds of opening. He had fallen victim to a "crush bug" message.
Sextortion is one of the most dangerous Telegram scams. A fraudster pretends to be a girl on Telegram, luring a victim into a video call. During this call, the fraudster records the victim in a compromising position. They then threaten to release the video to the victim's contacts unless a ransom is paid in the form of gift cards, cryptocurrency, or bank transfers. In Hong Kong, police recorded 25 such cases in a single week, with total losses exceeding $570,000.
Telegram Privacy Explained: What's Protected & What's Not - ESET crush bug telegram new
In the absence of a universal patch for the sticker vulnerability, experts recommend several immediate steps for high-risk users: Limit Communication
This is the #1 vulnerability. Go to
The latest has forced users offline by instantly closing the application upon startup or when performing specific tasks like searching and viewing media. A disruption like this impacts millions who rely on the platform for encrypted daily communication. This article covers what causes the issue, how it impacts your security, and the exact steps to restore your app's functionality. What is the New Telegram Crash Bug?
Uninstall the app, restart your phone, and install it again from the App Store. 2. Check for "Hotfix" Updates Telegram often releases updates rapidly to fix these bugs. Open the Google Play Store or Apple App Store. Leo was having a normal Tuesday until he
In late March and early April 2026, the cybersecurity world was alerted to a critical "crush bug" or zero-day vulnerability affecting Telegram. This flaw is particularly dangerous because it is a "zero-click" exploit, meaning a user’s device can be compromised without them ever interacting with a malicious file or clicking a link. The vulnerability has sparked a significant debate between security researchers and Telegram’s development team, raising urgent questions about the safety of mobile messaging platforms. The Mechanics of the "Crush" The vulnerability, tracked as ZDI-CAN-30207 with a near-perfect CVSS severity score of , centers on how the Telegram application processes media. The Vector : Attackers deliver specially crafted animated stickers to a target. Zero-Click Execution