Jump to content

Recommended Posts

Posted

Here's Why Account Authentication Shouldn't Use SMS

https://www.databreachtoday.com/heres-account-authentication-shouldnt-use-sms-a-11708

Quote

A database security blunder revealed on Friday serves as a reminder that the days of SMS-based authentication should be over.

The database, which wasn't protected by a password, contained 26 million text messages, some of which were two-step verification codes and password reset links, TechCrunch reports. When it was found, the database was still recording texts in near real-time, offering a huge resource for potential attackers.

 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...