article thumbnail

On the Twitter Hack

Schneier on Security

Class breaks are endemic to computerized systems, and they're not something that we as users can defend against with better personal security. It didn't matter whether individual accounts had a complicated and hard-to-remember password, or two-factor authentication. For Twitter users, this attack was a double whammy.

Hacking 312
article thumbnail

NY Man Pleads Guilty in $20 Million SIM Swap Theft

Krebs on Security

In May 2019, the jury awarded Terpin a $75.8 Unauthorized SIM swaps often are perpetrated by fraudsters who have already stolen or phished a target’s password, as many financial institutions and online services rely on text messages to send users a one-time code for multi-factor authentication. million judgment against Truglia.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Redesigning UI - The Duo Mobile App, What’s New

Duo's Security Blog

In early 2019, we embarked on a project to improve the Duo Mobile user authentication experience. Before we do that, I wanted to take some time to share with you exactly how we’re making it easier for users to authenticate using Duo Mobile. Fighting Fraud by Humanizing the Push Screen Authentication is hard!

Mobile 72
article thumbnail

No, Spotify Wasn't Hacked

Troy Hunt

I just went and looked at the pastes HIBP has collected since the clock ticked over to 2019 and found 20 of them already: Digging further, I found over a thousand pastes with "Spotify" in the title. Instead, they need to look inwardly and adjust their own security practices instead. That's it, job done, they're into your account.

Hacking 223
article thumbnail

The 773 Million Record "Collection #1" Data Breach

Troy Hunt

pic.twitter.com/6ZKcGHfHhq — Troy Hunt (@troyhunt) January 13, 2019. Also turn on 2-factor authentication wherever it's available. I chose the password manager 1Password all those years ago and have stuck with it ever it since. What can you do if you were in the data?