Telegram applied for its own TLD (.)gram), here's the threat intel angle nobody's talking about yet
Pavel Durov announced on Aug 18 that Telegram applied to ICANN for a .gram top-level domain. If approved, Telegram usernames could double as web domains, with AI-generated websites spun up from a single prompt.
A few things stood out from a security research angle:
Telegram is already deeply embedded in the threat ecosystem. A .gram TLD would let that content move from Telegram channels to actual browsable, indexable websites phishing pages, fake logins, malware delivery with no infrastructure setup required.
There's also a DNS-level impersonation problem: whoever holds a brand's username on Telegram controls that brand's .gram domain. Most companies aren't even present on Telegram, so this is a blind spot most brand protection programs haven't accounted for.
The bigger structural shift: Telegram would become the registry operator for .gram, not just a registrant. In July 2026, t(.)me went offline for ~19 hours after an OFAC sanctions filing triggered a registry-level serverHold something Telegram couldn't undo itself because it didn't control the .me registry. Owning .gram removes that external dependency, but it also puts all abuse-handling and takedown decisions in Telegram's hands.
Worth noting: research from Interisle Consulting has found new gTLDs make up a small share of the domain market but account for a disproportionate share of reported cybercrime domains abuse tends to concentrate early, right after a TLD opens for registration.
Still early days but if you're on a CTI or brand protection team, this is worth adding to your radar now rather than after it launches.