Monday, April 28, 2025

Latest

Twilio Confirms Data Breach: Millions of Authy Users’ Phone Numbers Exposed

American messaging giant Twilio (NYSE: TWLO) confirmed on Monday that unauthorized “threat actors” accessed phone numbers associated with Authy, its two-factor authentication app. This comes after hacking group ShinyHunters claimed that it had stolen 33 million phone numbers from the app.

“Twilio has detected that threat actors were able to identify data associated with Authy accounts, including phone numbers, due to an unauthenticated endpoint. We have taken action to secure this endpoint and no longer allow unauthenticated requests,” Twilio said in a security alert on its website

“We have seen no evidence that the threat actors obtained access to Twilio’s systems or other sensitive data. As a precaution, we are requesting all Authy users to update to the latest Android and iOS apps for the latest security updates and encourage all Authy users to stay diligent and have heightened awareness around phishing and smishing attacks,” the company wrote. 

While the exposed data may seem limited to phone numbers, security experts warn of potential risks. Rachel Tobac, CEO of SocialProof Security, told TechCrunch that this information could be exploited for targeted phishing attacks, as hackers can now impersonate Authy or Twilio with increased credibility.

Twilio appears to downplay the recent incident but it follows a more extensive breach in 2022, where hackers accessed data from over 100 customers and compromised employee credentials across numerous companies. In that attack, 93 Authy users were specifically targeted, allowing the hackers to register additional devices on their accounts and potentially intercept two-factor authentication codes.


Information for this story was found via the sources and companies mentioned. The author has no securities or affiliations related to the organizations discussed. Not a recommendation to buy or sell. Always do additional research and consult a professional before purchasing a security. The author holds no licenses.

Leave a Reply

Video Articles

Bell Q3 Earnings: Massive Impairments. Guidance Cuts. A Mess.

Alamos Gold Q3: Record Revenue & Production Amid Rising Costs

The Junior Mining Market Is Back

Recommended

Germany Looks To Modernize Military Recruitment But Stops Short of Conscription

First Majestic Silver Posts Topline Revenue Of $146.1 Million In Q3 2024

Related News

Hackers Target Internet Archive in Major Data Breach

The Internet Archive, home to the Wayback Machine, fell victim to a significant cyberattack that...

Friday, October 11, 2024, 12:56:00 PM

EMX Reports Potential $2.3 Million Loss Due to Cyber Attack in Turkey Subsidiary

EMX Royalty Corporation (TSXV: EMX) has announced that one of its subsidiaries in Turkey has...

Wednesday, May 15, 2024, 08:05:38 AM

US Investigates Major Telecom Hack Linked to Chinese Intelligence

A major cybersecurity breach linked to the Chinese government has compromised the networks of several...

Monday, October 7, 2024, 10:17:53 AM