Malicious SS7 activity and why SMS should never by used for 2FA

Eric Kuhnke eric.kuhnke at gmail.com
Sun Apr 18 00:58:43 UTC 2021


https://lucky225.medium.com/its-time-to-stop-using-sms-for-anything-203c41361c80

https://krebsonsecurity.com/2021/03/can-we-stop-pretending-sms-is-secure-now/


Anecdotal: With the prior consent of the DID holders, I have successfully
ported peoples' numbers using nothing more than a JPG scan of a signature
that looks like an illegible 150 dpi black and white blob, pasted in an
image editor on top of a generic looking 'phone bill'.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20210417/8fe35cde/attachment.html>


More information about the NANOG mailing list