Monday, December 15, 2025
No Result
View All Result
Coins League
  • Home
  • Bitcoin
  • Crypto Updates
    • Crypto Updates
    • Altcoin
    • Ethereum
    • Crypto Exchanges
  • Blockchain
  • NFT
  • DeFi
  • Metaverse
  • Web3
  • Scam Alert
  • Regulations
  • Analysis
Marketcap
  • Home
  • Bitcoin
  • Crypto Updates
    • Crypto Updates
    • Altcoin
    • Ethereum
    • Crypto Exchanges
  • Blockchain
  • NFT
  • DeFi
  • Metaverse
  • Web3
  • Scam Alert
  • Regulations
  • Analysis
No Result
View All Result
Coins League
No Result
View All Result

2FA app Authy data breach exposes 33M users to potential phishing attacks

July 7, 2024
in Scam Alert
Reading Time: 2 mins read
0 0
A A
0
Home Scam Alert
Share on FacebookShare on TwitterShare on E Mail


The 2FA app Authy breach uncovered 33 million cellphone numbers, posing phishing assault dangers.
No accounts have been compromised but.
Twilio has already secured the endpoint and improved app safety.

On July 1, 2024, Twilio, the developer behind the favored two-factor authentication (2FA) app Authy, disclosed an information breach affecting person cellphone numbers.

Whereas the accounts themselves weren’t compromised, the publicity of cellphone numbers poses a big threat of phishing and smishing assaults.

Particulars of the Authy knowledge breach

In a safety alert issued by Twilio, it was revealed that hackers had gained entry to the Authy Android app database by way of an “unauthenticated endpoint.”

The breach allowed attackers to establish knowledge related to person accounts, together with cellphone numbers.

Regardless of this, Twilio assured customers that their accounts weren’t compromised and that authentication credentials remained safe.

Nonetheless, the uncovered cellphone numbers might be exploited for phishing and smishing assaults, prompting Twilio to induce customers to stay cautious and conscious of suspicious texts they may obtain.

Authy, broadly utilized by centralized exchanges like Gemini and Crypto.com for 2FA, generates codes on person gadgets for safe entry to delicate duties similar to withdrawals and transfers. Coinbase and Binance additionally enable the app as an possibility. It’s typically in comparison with Google Authenticator, serving an identical objective in enhancing digital safety.

Following the breach, Twilio secured the compromised endpoint and launched an up to date app model with improved safety measures. The corporate emphasised that there was no proof of attackers having access to Twilio’s programs or different delicate knowledge.

Implications of the 2FA app safety breach

The Authy breach underscores the persistent risk posed by cybercriminal teams like ShinyHunters, reportedly liable for the assault.

Identified for high-profile breaches, together with the 2021 AT&T knowledge breach affecting 51 million prospects, ShinyHunters leaked a textual content file containing 33 million cellphone numbers registered with Authy.

This breach serves as a stark reminder of the vulnerabilities in even probably the most trusted safety functions.

Authenticator apps like Authy and Google Authenticator have been developed to counter SIM swap assaults — a prevalent social engineering tactic the place attackers trick cellphone corporations into transferring a person’s cellphone quantity to the attacker. This permits them to obtain 2FA codes supposed for the authentic person.

Regardless of these apps’ safety benefits, this current breach highlights that no system is fully foolproof.

To mitigate the dangers related to such breaches, customers are suggested to undertake multi-layered safety measures. This contains repeatedly updating authentication apps, enabling app-based quite than SMS-based 2FA, and remaining vigilant in opposition to phishing makes an attempt.

Moreover, customers might think about using {hardware} safety keys for an added layer of safety.

Share this articleCategoriesTags



Source link

Tags: 2FA33MAppAttacksAuthybreachdataexposesphishingpotentialUsers
Previous Post

Eight Alums Raised More Than $292 Million in Q2 2024

Next Post

South African Regulator Investigates 30 Cases of Unlicensed Crypto Operations

Related Posts

Do Kwon faces sentencing in New York as TerraUSD collapse returns to spotlight
Scam Alert

Do Kwon faces sentencing in New York as TerraUSD collapse returns to spotlight

December 11, 2025
Binance CEO hacked by cell carrier exploit that likely leaves your own crypto exposed
Scam Alert

Binance CEO hacked by cell carrier exploit that likely leaves your own crypto exposed

December 13, 2025
Fake DBS crypto app scam exposes rising investor risks in India
Scam Alert

Fake DBS crypto app scam exposes rising investor risks in India

December 9, 2025
US crackdown exposes Burma crypto scam network using fake trading sites
Scam Alert

US crackdown exposes Burma crypto scam network using fake trading sites

December 3, 2025
South Korea’s Upbit hack puts spotlight on Solana security and exchange safeguards
Scam Alert

South Korea’s Upbit hack puts spotlight on Solana security and exchange safeguards

November 27, 2025
Monad mainnet scam alerts rise as fake ERC20 transfers spread across new chain
Scam Alert

Monad mainnet scam alerts rise as fake ERC20 transfers spread across new chain

November 29, 2025
Next Post
South African Regulator Investigates 30 Cases of Unlicensed Crypto Operations

South African Regulator Investigates 30 Cases of Unlicensed Crypto Operations

ECC Transparency Report for Q4 2023

ECC Transparency Report for Q4 2023

Is A Liquidity Crunch Looming?

Is A Liquidity Crunch Looming?

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Twitter Instagram LinkedIn RSS Telegram
Coins League

Find the latest Bitcoin, Ethereum, blockchain, crypto, Business, Fintech News, interviews, and price analysis at Coins League

CATEGORIES

  • Altcoin
  • Analysis
  • Bitcoin
  • Blockchain
  • Crypto Exchanges
  • Crypto Updates
  • DeFi
  • Ethereum
  • Metaverse
  • NFT
  • Regulations
  • Scam Alert
  • Uncategorized
  • Web3

SITEMAP

  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2023 Coins League.
Coins League is not responsible for the content of external sites.

No Result
View All Result
  • Home
  • Bitcoin
  • Crypto Updates
    • Crypto Updates
    • Altcoin
    • Ethereum
    • Crypto Exchanges
  • Blockchain
  • NFT
  • DeFi
  • Metaverse
  • Web3
  • Scam Alert
  • Regulations
  • Analysis

Copyright © 2023 Coins League.
Coins League is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In