Signal says attackers may have accessed phone number of 1900 users More Info - Globalradiancereview.com
Researchers at Hold Security recently discovered that a group of hackers had managed to access users’ phone numbers from Signal’s database, as well as some other information on their accounts. The hackers reportedly gained access through a vulnerability in Signal’s API (application programming interface) that allowed them to access data without having to send an SMS message first. The researchers said they believe this hack happened sometime between March and May 2018 and involved only 1900 users out of the total registered users on the platform. The vulnerability was fixed within a few days, but until then, anyone could have accessed any user’s phone number simply by sending an SMS message to their email address listed in their account settings page. We have no evidence yet that any other vulnerabilities have been exploited,” Hold Security said in a blog post published Wednesday morning. A security firm has discovered a new malware called “Spoofed Signal” that’s targeting Whats...