http://www.alexrad.me/discourse/a-264-attack-on-telegram-and...
http://www.alexrad.me/discourse/a-264-attack-on-telegram-and...
WhatsApp used port 443 but sent plain text messages for years. Only fairly recently they switched around to actual encryption.
Telegram messages have never been readable across the network and they claim that they also can't read the messages themselves. This is due to storing the encryption key in a different data center, but that begs for the question of how they deliver my phone the message if they don't have the decryption key. (Answering "incorrectly" that they can read my messages was how I didn't make it on the support team.)
Then there is MTProto which everyone is buzzing about but which isn't even supported in all clients. This is the "secret chat" feature you see here and there, and it is actually encrypted end to end (and verifyably so). Clients are all open source so we can check that they are end to end encrypted -- WhatsApp or Facebook can ship you a backdoored version and you'd never be the wiser.
Saying Telegram is "not encrypted by default" is like saying "https is not encrypted by default" because the server software can read the private messages you send to other people.
End to end encryption isn't enabled by default though, the argument being that this way you lose some features (like a shared history on their servers..).