Poland shifts away from Signal following cyberattacks on officials’ accounts

Poland shifts away from Signal following cyberattacks on officials’ accounts

Poland shifts away from Signal following cyberattacks on officials’ accounts

https://securityaffairs.com/192381/intelligence/poland-shifts-away-from-signal-following-cyberattacks-on-officials-accounts.html

Publish Date: 2026-05-19 04:57:00

Source Domain: securityaffairs.com

Poland shifts away from Signal following cyberattacks on officials’ accounts

Pierluigi Paganini
May 19, 2026

Poland told officials to stop using the popular instant messaging app Signal after cyberattacks targeted government accounts.

Poland has instructed government officials to stop using Signal for sensitive communications and move to a state-developed alternative. The decision follows repeated cyberattacks targeting Signal accounts belonging to politicians, military personnel, and public servants. Officials believe the campaigns are linked to Russian-backed APT groups.

The attacks did not break Signal’s encryption but instead targeted users through account compromise and social engineering tactics. In one scenario, attackers impersonate Signal support staff or automated security bots, warning users about suspicious activity and tricking them into sharing verification codes or PINs, which allows full account takeover.

Another method uses malicious QR codes or links that secretly connect an attacker-controlled device to the victim’s account. Once linked, attackers can silently access private chats, group messages, and conversation history.

“National-level Computer Security Incident Response Teams (CSIRTs) have identified phishing campaigns conducted by APT groups linked to hostile state agencies. These attacks target, among others, public figures and government employees.” reads the announcement.

“Perpetrators use social engineering techniques, posing as Signal support staff. Victims receive messages about their account being blocked, which are intended to trick them into clicking malicious links. The goal is to take control of communications, posing a direct threat to national security and the confidentiality of information.”

To improve the security of official communications, the Ministry of Digital Affairs is recommending that government staff use national…

Source