In the last few days, the encrypted messaging platform, ‘Signal’ confirmed a variety of their customers fell victim to the phishing attack on Twilio. It is estimated that 1,900 were affected by the breach via phone number and SMS verification links to “reset passwords” on a phony Twilio link. By posing as Twilio’s IT dept, the hackers were able to obtain victim’s login credentials. Unfortunately, it is still unclear who was behind this attack. Cloudflare also revealed they were subjected to a phishing attack around the very same time as Twilio, but was not breached as an end result owing to the corporation-vast use of hardware-centered, FIDO2-compliant multi-factor authentication (MFA) keys.


More

Tech Target: Adopt passkeys over passwords to improve UX, drive revenue

The digital economy continues to rely on password-based authentication, but password weaknesses — and human…

Read More →

Federal Register: Strengthening and Promoting Innovation in the Nation’s Cybersecurity

A Presidential Document by the Executive Office of the President on 01/17/2025 Executive Order on Strengthening and Promoting Innovation…

Read More →

Insurance Business: Experts warn NZ businesses to prepare for AI-driven cyber threats

Cybersecurity experts are calling on New Zealand businesses to strengthen their defences as cyber threats…

Read More →