telega.me

High Risk Moderate Traffic Tranco #277,275

Telega is a third-party messaging client built on the Telegram open-source codebase. It is specifically marketed to users in Russia as a way to access Telegram services without the need for a VPN.


⚠️ Security Alert: Man-in-the-Middle (MITM) Risk via Unofficial Client

Risk Category: High-Risk Third-Party Software / Data Interception

URLert.com has classified telega.me as a significant security risk to Telegram users. While marketed as a stable, VPN-free alternative to the official Telegram messenger, technical analysis and community reports indicate that this client is actively compromising user privacy through sophisticated interception techniques.

Specific Findings & Risks:

  • Active MITM Attacks: Since March 2026, the application has been observed performing Man-in-the-Middle (MITM) attacks. The client redirects traffic from legitimate Telegram Data Centers (DCs) to malicious proxies controlled by the operator.
  • Credential & Session Theft: By intercepting the auth_key during the connection process, the operators gain full access to the user's Telegram account, including private messages, media, and contacts.
  • Weakened Encryption: The application utilizes unauthorized RSA keys and has been found to disable Perfect Forward Secrecy (PFS) by default, ensuring that all traffic can be recorded and decrypted by the service providers.
  • Malicious Distribution: Recent reports indicate the domain has been used to distribute executable files (.exe) via complex redirect chains, increasing the risk of secondary malware infections.
  • Administrative Control: The operators possess the capability to read, alter, or block messages and perform unauthorized actions on behalf of the user.

Recommendation: URLert.com strongly advises against using the Telega client or entering Telegram credentials on any site associated with telega.me. If you have used this application, immediately terminate all active sessions via the official Telegram app (Settings > Devices), enable Two-Step Verification (2FA), and uninstall the Telega software from all devices.

Messaging Platforms messagingTelegramcommunicationsoftware
Community Intelligence
Safe 0% Suspicious 0% Dangerous 100%
2 votes
Bitdefender Safety Recommendation

Verified Threat: This website is known to be dangerous. If you visited this site, your device may already be at risk.

We strongly recommend running a full device scan with Bitdefender Total Security to detect and remove any malware that may have been downloaded.

Get Bitdefender Affiliate link

Community Intelligence

Join Discussion
0/20+

Messages are published to the community portal.

Investigate a specific URL

Recent Threat Analysis

URLert analyzed recent scan activity for telega.me and found 6 results.

Network Infrastructure

Historical and current IP address mappings for this domain.

Something wrong?
Domain owner?
Developer API

Integrate Domain Intelligence

Access this classification data programmatically via our API.

GET /api/v1/classify?domain=telega.me
{
  "domain": "telega.me",
  "confidence": "high",
  "category": {
    "purpose": "messaging",
    "specialization": "Third-party Telegram Client"
  },
  "identity": {
    "headline": "Stable Telegram-based messenger client for seamless communication",
    "summary": "Telega is a third-party messaging client built on the Telegram open-source codebase. It is specifically marketed to users in Russia as a way to access Telegram services without the need for a VPN.",
    "operator": "АО «ТЕЛЕГА»",
    "parent_entity": null,
    "topics": [
      "messaging",
      "Telegram",
      "communication",
      "software",
      "Russia"
    ]
  },
  "functions": {
    "is_ugc_platform": false,
    "is_file_host": false,
    "is_url_shortener": false,
    "is_public_idp": false,
    "is_crypto_platform": false,
    "allows_user_subdomains": false,
    "is_form_builder": false,
    "is_document_host": false
  },
  "facts": {
    "registered_date": "2020-09-18T01:11:30Z",
    "rank": 277275,
    "hosting_provider": "DDOS-GUARD DDOS-GUARD LTD"
  }
}