3

T-Mobile discloses data breach affecting ‘very small number’ of users

 2 years ago
source link: https://siliconangle.com/2021/12/29/t-mobile-discloses-data-breach-affecting-small-number-users/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

T-Mobile discloses data breach affecting ‘very small number’ of users

38606092560_082734be8f_z.jpg
SECURITY

T-Mobile US Inc. today disclosed that some of its customers have been targeted by hackers using a cyberattack tactic known as SIM swapping. 

The carrier also stated that the hackers may have gained access to “limited account information” belonging to a subset of the affected users. However, T-Mobile didn’t specify how many users are affected or how the cyberattack was carried out. 

“We informed a very small number of customers that the SIM card assigned to a mobile number on their account may have been illegally reassigned or limited account information was viewed,” T-Mobile told BleepingComputer in a statement today.

SIM swapping is a type of cyberattack in which hackers trick a carrier’s employees into reassigning the phone number of a user to a SIM card they control. Using this method, a hacker can potentially bypass the multifactor authentication systems of online services and compromise victims’ accounts.

Reports of the data breach first emerged on Tuesday. Internal T-Mobile documents are said to indicate that some of the affected users had their account information stolen, but weren’t affected by the SIM swap attack. Other users were affected by both the data theft and the SIM swap. As of Tuesday, T-Mobile had reportedly already reversed the setting changes caused by the cyberattack.

“Unauthorized SIM swaps are unfortunately a common industry-wide occurrence, however this issue was quickly corrected by our team, using our in-place safeguards, and we proactively took additional protective measures on their behalf,” T-Mobile said in its statement today.

The incident is the latest in a series of data breaches to have affected T-Mobile customers over the last few years. Since 2018, the carrier has disclosed no fewer than seven different breaches including the SIM swap attack detailed today.

One of the most severe cybersecurity incidents at T-Mobile came to light earlier this year. In April, the carrier disclosed that hackers had stolen personal information belonging to more than 50 million past and current customers. T-Mobile said that the hackers gained access to its network by compromising internal testing environments and using them to infect other parts of its technology infrastructure.

Earlier in 2021, the carrier reported a separate SIM swapping attack that targeted up to 400 customers. The hackers responsible for the breach reportedly used a flaw in an internal T-Mobile application to carry out the cyberattack.

Photo: T-Mobile

A message from John Furrier, co-founder of SiliconANGLE:

Show your support for our mission by joining our Cube Club and Cube Event Community of experts. Join the community that includes Amazon Web Services and Amazon.com CEO Andy Jassy, Dell Technologies founder and CEO Michael Dell, Intel CEO Pat Gelsinger and many more luminaries and experts.

Join Our Community 

Click here to join the free and open Startup Showcase event.

“TheCUBE is part of re:Invent, you know, you guys really are a part of the event and we really appreciate your coming here and I know people appreciate the content you create as well” – Andy Jassy

We really want to hear from you, and we’re looking forward to seeing you at the event and in theCUBE Club.

Click here to join the free and open Startup Showcase event.


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK