Monday, August 4, 2025
  • Login
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS
CRYPTO MARKETCAP
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS
No Result
View All Result
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse
No Result
View All Result

2FA app Authy data breach exposes 33M users to potential phishing attacks

by SB Crypto Guru News
July 3, 2024
in Scam Alert
Reading Time: 3 mins read
0 0
A A
0


2FA app Authy data breach exposes 33M users to potential phishing attacks
  • The 2FA app Authy breach exposed 33 million phone numbers, posing phishing attack risks.
  • No accounts have been compromised yet.
  • Twilio has already secured the endpoint and improved app security.

On July 1, 2024, Twilio, the developer behind the popular two-factor authentication (2FA) app Authy, disclosed a data breach affecting user phone numbers.

While the accounts themselves were not compromised, the exposure of phone numbers poses a significant risk of phishing and smishing attacks.

Details of the Authy data breach

In a security alert issued by Twilio, it was revealed that hackers had gained access to the Authy Android app database through an “unauthenticated endpoint.”

The breach allowed attackers to identify data associated with user accounts, including phone numbers.

Despite this, Twilio assured users that their accounts were not compromised and that authentication credentials remained secure.

However, the exposed phone numbers could be exploited for phishing and smishing attacks, prompting Twilio to urge users to remain cautious and aware of suspicious texts they might receive.

Authy, widely used by centralized exchanges like Gemini and Crypto.com for 2FA, generates codes on user devices for secure access to sensitive tasks such as withdrawals and transfers. Coinbase and Binance also allow the app as an option. It is often compared to Google Authenticator, serving a similar purpose in enhancing digital security.

Following the breach, Twilio secured the compromised endpoint and released an updated app version with improved security measures. The company emphasized that there was no evidence of attackers gaining access to Twilio’s systems or other sensitive data.

Implications of the 2FA app security breach

The Authy breach underscores the persistent threat posed by cybercriminal groups like ShinyHunters, reportedly responsible for the attack.

Known for high-profile breaches, including the 2021 AT&T data breach affecting 51 million customers, ShinyHunters leaked a text file containing 33 million phone numbers registered with Authy.

This breach serves as a stark reminder of the vulnerabilities in even the most trusted security applications.

Authenticator apps like Authy and Google Authenticator were developed to counter SIM swap attacks — a prevalent social engineering tactic where attackers trick phone companies into transferring a user’s phone number to the attacker. This allows them to receive 2FA codes intended for the legitimate user.

Despite these apps’ security advantages, this recent breach highlights that no system is entirely foolproof.

To mitigate the risks associated with such breaches, users are advised to adopt multi-layered security measures. This includes regularly updating authentication apps, enabling app-based rather than SMS-based 2FA, and remaining vigilant against phishing attempts.

Additionally, users could consider using hardware security keys for an added layer of protection.


Share this article

Categories

Tags



Source link

Tags: 2FA33MAppAttacksAuthyBitcoin NewsBreachCrypto NewsCrypto UpdatesDataexposesLatest News on CryptoPhishingPotentialSB Crypto Guru Newsusers
Previous Post

Eight Alums Raised More Than $292 Million in Q2 2024

Next Post

ECC Transparency Report for Q4 2023

Related Posts

Grok refuses to pick winner for Crypto Rover competition citing ZachXBT pump and dump evidence

Grok refuses to pick winner for Crypto Rover competition citing ZachXBT pump and dump evidence

by SB Crypto Guru News
July 21, 2025
0

X’s Grok chatbot declined to select a winner for a $1,000 Ethereum giveaway organized by crypto influencer Crypto Rover, citing...

XRP trading volume soars as new ATH attracts deepfake scam targeting investors

XRP trading volume soars as new ATH attracts deepfake scam targeting investors

by SB Crypto Guru News
July 18, 2025
0

XRP has hit a new all-time high of $3.65, driven largely by a spike in trading activity across South Korea...

Chinese industry group warns Web3 and DeFi high-return deals hide classic Ponzi engines

Chinese industry group warns Web3 and DeFi high-return deals hide classic Ponzi engines

by SB Crypto Guru News
July 10, 2025
0

The Beijing Internet Finance Industry Association (BIFA) issued a notice on July 9 urging retail investors to reject pitchbooks that...

Scam targets dormant Bitcoin wallets with fake legal notice

Scam targets dormant Bitcoin wallets with fake legal notice

by SB Crypto Guru News
July 8, 2025
0

Analysts at BitMEX Research have raised the alarm about a scam targeting early Bitcoin holders, particularly those with wallets dating...

Crypto firms paid .7M monthly to North Korean workers

Crypto firms paid $2.7M monthly to North Korean workers

by SB Crypto Guru News
July 2, 2025
0

An on-chain investigation has revealed that North Korea IT workers posing as foreign developers have earned nearly $17 million from...

Load More
Next Post
ECC Transparency Report for Q4 2023

ECC Transparency Report for Q4 2023

Solana Eases Gains: Can SOL Bulls Safeguard the 2 Support?

Solana Eases Gains: Can SOL Bulls Safeguard the $132 Support?

Facebook Twitter LinkedIn Tumblr RSS

CATEGORIES

  • Altcoin
  • Analysis
  • Bitcoin
  • Blockchain
  • Crypto Exchanges
  • Crypto Updates
  • DeFi
  • Ethereum
  • Metaverse
  • Mining
  • NFT
  • Regulations
  • Scam Alert
  • Uncategorized
  • Web3

SITE MAP

  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2022 - SB Crypto Guru News.
SB Crypto Guru News is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS

Copyright © 2022 - SB Crypto Guru News.
SB Crypto Guru News is not responsible for the content of external sites.