• Disclaimer
  • Privacy Policy
  • Copyright Notice
  • Anti Spam Policy
  • Medical Disclaimer
  • DMCA Compliance
  • Terms and Conditions
  • Social Media Disclaimer
  • Amazon Affiliate disclaimer
Advertisement
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • GADGET
    • MOBILE
    • SCIENCE
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blog
  • Classifieds
No Result
View All Result
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • GADGET
    • MOBILE
    • SCIENCE
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blog
  • Classifieds
No Result
View All Result
No Result
View All Result
Home TECH

Google Fi hack victim had Coinbase, 2FA app hijacked by hackers • TechCrunch

New Mexico Digital News by New Mexico Digital News
February 1, 2023
in TECH
0
Google Fi hack victim had Coinbase, 2FA app hijacked by hackers • TechCrunch
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter


On January 1, a technologist who goes by the nickname regexer received an email saying he had successfully reset his account at the crypto exchange Coinbase.

Unfortunately — and worryingly — he had actually not requested a password reset. Regexer, who asked to be referred to by his online moniker for fear of being targeted by hackers again, quickly realized he was being hacked, and his attempts to log into his Coinbase to regain control were unsuccessful.

Soon after, he noticed he had no cell phone service. Then, his two-factor app, Authy, notified him that a new device was added to his account. After the hackers took control of regexer’s cell phone service, the hackers were able to reset the passwords on his accounts and intercept two-factor SMS messages. That allowed the hackers to take control of Authy, giving them the ability to use the 2FA codes created by the app, according to regexer.

This gave them a chance to break into even more accounts owned by regexer.

“Now I don’t know what the hell is going on. I am totally owned,” regexer told TechCrunch, recalling the incident.

Unsure what to do, regexer started changing passwords on his other important accounts that had apparently not been compromised yet. Then, on a whim, he started turning airplane mode on and off on his iPhone. Somehow, after a few attempts, his cellphone service was restored.

Regexer isn’t sure if turning airplane mode on and off is what stopped the attack but he is glad that happened.

For weeks, regexer had no idea how he had been hacked. Then, on Monday, he received an email from his cell phone provider, Google Fi, informing him and all other customers that hackers had stolen some customers’ information, likely connected to the recent breach at T-Mobile.

Unlike for other customers, the email regexer received contained more detailed information about the hack he suffered weeks prior.

“Other data related to your Google Fi account also may have been accessed without authorization, such as a zip code, and the service/emergency address associated with your account,” read the email, which regexer shared with TechCrunch. “Additionally, on January 1, 2023 for about 1 hour 48 minutes, your mobile phone service was transferred from your SIM card to another SIM card. During the time of this temporary transfer, the unauthorized access could have involved the use of your phone number to send and receive phone calls and text messages. Despite the SIM transfer, your voicemail could not have been accessed. We have restored Google Fi service to your SIM card.”

Regexer said he has talked to two Google Fi customer representatives trying to figure out more details about what happened, but neither of them told him anything. And, interestingly, regexer didn’t see any evidence that his Google account, which is tied to the Google Fi account, was compromised. It’s unclear how the hackers were able to perform the SIM swap.

Google has not responded to a request for comment. And it’s not yet known if there were other people, or how many, specifically targeted by hackers the way regexer was.

Once he regained control of this online life, regexer investigated the hack and found out the hackers had also taken over his Outlook email account, and — smartly — in an effort to hide their actions, deleted the emails informing of the password reset.

Even though nothing else happened since January 1, regexer is still worried and is calling on Google to disclose more information.

“The main thing I’d like to know is whether I and others are still vulnerable, and if there’s anything we can do to protect ourselves. I’d love to know more details about the mechanisms that were used for the phone number takeover because that will shed light on the level of ongoing vulnerability and methods for defense, as well as whether SMS two-factor remains better than no two-factor at all. (I can replace SMS for some online accounts, but not all. Many banks and others only allow two-factor via SMS.) I’d also love to know how many people had their phone numbers hijacked in connection with the breach, and, if it was a small subset, was there any reason that we in particular were targeted,” regexer said.

“So unless Google sheds more light on the attack there is a big open question about how vulnerable people’s phone numbers now are.”


Are you a Google Fi subscriber that was also a victim of a similar attack? Did you also get a personalized notification from the company about the hack against you? We’d love to hear from you. You can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382, or via Wickr, Telegram and Wire @lorenzofb, or email lorenzo@techcrunch.com.



Source link

Previous Post

Powell speaks after central bank’s latest hike

Next Post

Mark Zuckerberg just won a big FTC victory over Lina Khan in a fight over virtual reality

New Mexico Digital News

New Mexico Digital News

Next Post
Mark Zuckerberg just won a big FTC victory over Lina Khan in a fight over virtual reality

Mark Zuckerberg just won a big FTC victory over Lina Khan in a fight over virtual reality

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Santa Fe
◉
43°
Clear
6:49 am7:25 pm MDT
Feels like: 39°F
Wind: 7mph ENE
Humidity: 26%
Pressure: 29.94"Hg
UV index: 0
SunMonTue
63/36°F
64/30°F
36/19°F
Weather forecast Santa Fe, New Mexico ▸

Stay Connected test

  • 23.8k Followers
  • 99 Subscribers
  • Trending
  • Comments
  • Latest
INVESTIGATION ALERT: The Schall Law Firm Encourages Investors in PROG Holdings, Inc. with Losses of $100,000 to Contact the Firm

SHAREHOLDER ACTION ALERT: The Schall Law Firm Encourages Investors in Barclays PLC with Losses of $100,000 to Contact the Firm

September 24, 2022
Interior Department Announces Next Steps to Address Drought Crisis Gripping the Colorado River Basin

Interior Department Announces Next Steps to Address Drought Crisis Gripping the Colorado River Basin

September 24, 2022
Four Fun Things | Cup of Jo

Four Fun Things | Cup of Jo

August 9, 2022
The Chennai Shopping Mall New Store Grand Opening @ Hanumakonda on 10th September 2022

The Chennai Shopping Mall New Store Grand Opening @ Hanumakonda on 10th September 2022

August 31, 2022
Two dead in triple shooting in Lamar – Canon City Daily Record

Two dead in triple shooting in Lamar – Canon City Daily Record

0
Musk’s alleged affair with Google co-founder’s wife lead to divorce, end of friendship: report

Musk’s alleged affair with Google co-founder’s wife lead to divorce, end of friendship: report

0

Yellen downplays US recession risk as economic reports loom

0
He Runs a New York Real Estate Empire. Did He Steal It?

He Runs a New York Real Estate Empire. Did He Steal It?

0
Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

Federal Reserve Board fines Wells Fargo $67.8 million for … – Federal Reserve

April 2, 2023
Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

Press Release | Press Releases | Newsroom | U.S. Senator Bill … – Senator Bill Cassidy

April 2, 2023
Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

EPA Grants Waivers for California’s On-highway Heavy-duty Vehicle … – U.S. EPA.gov

April 2, 2023
Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

Manchin Statement on Treasury EV Tax Credit Guidance | U.S. … – Joe Manchin

April 2, 2023

Recent News

Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

Federal Reserve Board fines Wells Fargo $67.8 million for … – Federal Reserve

April 2, 2023
Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

Press Release | Press Releases | Newsroom | U.S. Senator Bill … – Senator Bill Cassidy

April 2, 2023
Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

EPA Grants Waivers for California’s On-highway Heavy-duty Vehicle … – U.S. EPA.gov

April 2, 2023
Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

Manchin Statement on Treasury EV Tax Credit Guidance | U.S. … – Joe Manchin

April 2, 2023
Newmexico Digital News

Follow Us

Browse by Category

  • APPS
  • ARTS & THEATER
  • BUSINESS
  • CELEBRITY
  • CRYPTO
  • CULTURE
  • ECONOMY
  • Education
  • ENTERTAINMENT
  • FASHION
  • FINANCE
  • FOOD
  • GADGET
  • Gambling
  • GAMING
  • HEALTH
  • HISTORY
  • LIFESTYLE
  • MARKET
  • MOBILE
  • MONEY
  • MOVIE
  • MUSIC
  • Nature
  • News
  • PRESS RELEASE
  • REAL ESTATE
  • Religion
  • SCIENCE
  • Shopping
  • SHOWS
  • SPORTS
  • TECH
  • TRAVEL

Recent News

Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

Federal Reserve Board fines Wells Fargo $67.8 million for … – Federal Reserve

April 2, 2023
Benson Hill Announces Preliminary Unaudited 2022 Results and … – Business Wire

Press Release | Press Releases | Newsroom | U.S. Senator Bill … – Senator Bill Cassidy

April 2, 2023
  • Disclaimer
  • Privacy Policy
  • Copyright Notice
  • Anti Spam Policy
  • Medical Disclaimer
  • DMCA Compliance
  • Terms and Conditions
  • Social Media Disclaimer
  • Amazon Affiliate disclaimer

© 2023 Newmexico Digital News

No Result
View All Result
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • GADGET
    • MOBILE
    • SCIENCE
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blog
  • Classifieds

© 2023 Newmexico Digital News