T'as le droit de garder un numéro de téléphone séparé pour les situations où tu dois en donner un sans vraiment avoir confiance. Ton vrai numéro, c'est la clé de récupération de ton compte bancaire, pis c'est lui qui reçoit tes codes de vérification pour Gmail, Hydro-Québec, ton courtier. Garder le contrôle là-dessus, c'est juste du gros bon sens. (1/2)

#SIMswap #vie_privee #securite #fraude #WIGGWIGG

You can keep a separate phone number for situations where you don't fully trust the other party. Your real number is the recovery key for your bank account and receives your verification codes for Gmail, your power company, your investment platform. Sharing it everywhere is an unnecessary attack surface. (1/2)

#SIMswap #privacy #security #infosec #WIGGWIGG

Corte falla contra AT&T por entregar línea telefónica sin verificar identidad del usuario

La empresa había sido absuelta en primera instancia, pero en la apelación no pudo demostrar que verificó correctamente la identidad de quien solicitó el reemplazo, lo que desencadenó en que sus fotos fueran compartidas en redes sociales.

La Jornada
A man had $21,000 taken from his bank.
This is how I protect myself.
1. Don't use SMS 2 factor authentication.
2. Use password protected 2FA app Aegis
3. My authorization app is not on my phone it's on a tablet or old phone that has no cell service.
If someone sim swaps me it will NOT give them access to my bank account.
4. I have my phone service locked with a SIM pin. #Security #simswap
https://youtu.be/dvOZoV00RHY?si=Il2F4yHNrQxEC5x2
SIM Swap Scam: How Criminals Stole $21,000 in Minutes

YouTube

📌 𝗠𝗼𝗯𝗶𝗹𝗲 𝗠𝗼𝗻𝗲𝘆 𝗲𝘁 𝗰𝘆𝗯𝗲𝗿𝗰𝗿𝗶𝗺𝗶𝗻𝗮𝗹𝗶𝘁𝗲́ : 𝗹𝗮 𝗰𝗼𝗻𝗳𝗿𝗼𝗻𝘁𝗮𝘁𝗶𝗼𝗻 𝗲𝗻 𝗖𝗼̂𝘁𝗲 𝗱’𝗜𝘃𝗼𝗶𝗿𝗲 𝗲𝘁 𝗮𝘂 𝗦𝗮𝗵𝗲𝗹

https://www.facebook.com/share/p/1FvnokyUvX/
𝗟𝗮 𝗯𝗼𝗻𝗻𝗲 𝗶𝗻𝗳𝗼𝗿𝗺𝗮𝘁𝗶𝗼𝗻 𝗰𝗿𝗲́𝗱𝗶𝗯𝗶𝗹𝗶𝘀𝗲 𝗹𝗲 𝗺𝗲𝘀𝘀𝗮𝗴𝗲

#VDLV #CyberSécuritéCI #MobileMoney #CIVforte #StopBrouteurs #ProtectionNumérique #AES #InclusionFinancière #Vishing #SIMSwap #FraudesDigitales

Facebook

@F3715H @maddy +1

Interestingly the whole #SimSwapping #fraud shite is basically a #US-centric thing.

Cuz I've not heard of any successful #SimSwap fraud ring in #Germany.

https://thegayagenda.fans/notes/ajd3pmwhdhbc0scn

Maddy - Floofy fops friend :neofox_floof_happy: (@maddy)

Ah, I see that Virgin Mobile/Bell is still blatantly violating the CRTC's unlocking mandate... (📎1) RE: All telecoms are bastards. Same with insurance companies. RE: ...

The Gay Agenda Fans

Alerta: Vazamento facilita phishing e SIM Swap

Você sabia que um vazamento de dados pode transformar seu telefone em alvo direto de golpes? 😱🔒

• O que está acontecendo:
• Vazamento de informações do marketplace usado pela Ledger
• Golpistas podem usar esses dados para phishing (e-mails falsos) e se passar pelo suporte
• Ataques de SIM swap se tornam mais fáceis quando sabem seu número de telefone
• Muitos...

#Ledger #Trezor #phishing #SIMswap #segurança #criptomoedas #alerta #MorningCrypto

Scammers hacked her phone and stole thousands - so how did they get her details?

scammers trick a network operator into thinking they're the account holder to get a new Sim card for a mobile device.

"Once they had access to Sue's phone number they were were able to intercept any security codes sent to verify her identity for her Gmail account,"

#scam #simswap #security #cybersecurity #hackers #hacking #hacked

#security #cybersecurity #hackers #hacking #hacked

https://www.bbc.com/news/articles/czrk7gxk2l6o

Scammers hacked her phone and stole thousands of pounds - how did they get her details?

Sue Shore told the BBC how scammers targeted her - and we found her information had been leaked online.

OSINT points to possible arrest of crypto actor ‘Danny’ after seizure-style wallet flows

https://www.technadu.com/osint-signals-possible-raid-and-arrest-of-crypto-threat-actor-following-seizure-style-wallet-transfers/615245/

• $18.58M consolidated into one wallet
• Flows match known LE seizure patterns
• Links to Genesis ($243M) & Kroll SIM-swap ($300M+)
• Reported Dubai villa raid + arrests

#OSINT #ThreatIntel #CryptoCrime #SIMSwap #GenesisBreach #KrollBreach

Zwakke 2FA/MFA werkt AVERECHTS

In https://www.security.nl/posting/912441/65-plussers+gebruiken+tweestapsverificatie+minder+vaak+dan+gemiddeld#posting912477 schreef ik eerder deze week:

2FA (MFA) is ruk.

Laat de overheid een wachtwoordmanager adviseren die wél op domeinnamen checkt.

(Dat laatste kan standaard onder Android, iOS en iPadOS - middels "AutoFill").

Op veler "verzoek" onderbouwde ik die stelling (niet voor de eerste keer) in https://www.security.nl/posting/912441/65-plussers+gebruiken+tweestapsverificatie+minder+vaak+dan+gemiddeld#posting912530.

En in https://www.security.nl/posting/912441/65-plussers+gebruiken+tweestapsverificatie+minder+vaak+dan+gemiddeld#posting912733 legde ik uit waarom online inloggen *lastig* veilig te krijgen is - wat je ook verzint (het blijven shared secrets).

Vandaag heb ik Microsoft Authenticator ook maar weer eens getest (onder Android). Mijn bevindingen leest u in (de tweede helft van) https://www.security.nl/posting/912441/65-plussers+gebruiken+tweestapsverificatie+minder+vaak+dan+gemiddeld#posting912864 - hieronder een stukje daaruit.

#ZwakkeMFA #SMS #AuthenticatorApps #Zwakke2FA #Weak2FA #WeakMFA #MicrosoftAuthenticator #2FAsucks #MFAsucks #Phishing #NepWebsites #PhaaS #Evilginx2 #SIMswap #SS7 #AcountTakeOver #CookieTheft #AccountLockout