【】
On Monday,Signal, often viewed as the most secure messaging app, shared that a security breach of its phone number verification service provider affected 1,900 of its users. Due to the breach, these users' phone numbers were exposed.
Tweet may have been deleted
According to Signal's post detailing the situation, the provider, Twilio, was targeted in a phishing attack. In Twilio's own postexplaining the situation, the company says it was a "sophisticated social engineering attack designed to steal employee credentials." The attack was successful in obtaining credentials from some of Twilio's employees. Twilio says that around 125 of its customers had data compromised during the attack. One of these affected customers is Signal.
On the bright side, Signal's reputation as the most secure messaging app is intact thanks to its service being 100 percent end-to-end encrypted. Without access to a Signal user's physical device, a bad actor could not access that user's messaging history. So, any sensitive information that was shared within messages on Signal have not been compromised. Profile data, contact list, and other data also was not compromised, again, thanks to Signal's design.
However, Signal warns that there were issues that arose for the users affected by the breach:
"For about 1,900 users, an attacker could have attempted to re-register their number to another device or learned that their number was registered to Signal. This attack has since been shut down by Twilio."
SEE ALSO:Apple delayed Telegram's iOS app update due to unauthorized use of its emojiAccording to Signal, one of those 1,900 users reported that their account was re-registered on another device without their authorization. Also, as Signal notes, most of its users were not affected at all by the security breach.
That there's been fairly little fallout from this security breach is a testament to Signal's security. But the breach is also a reminder of Signal's one glaring flaw: the requirement that a user registers their phone number to use the messaging service. Signal has previously hinted that it will soon allow people to use usernames instead of their phone number, but there is currently no scheduled roll out for that feature.
TopicsCybersecurity
相关文章

There's a big piece of fake chicken stuck to this phone case
If the perfect smartphone case signals a bit about who its owner is, then this silicon fried chicken2026-03-25
家裏自己做了豆腐,剩下很多,請問豆腐怎麽炒又嫩又滑?-九州...本來一塊嫩滑的豆腐放到鍋裏炒出之後變得又老又硬 。就比如說麻婆豆腐,在麻婆豆腐起鍋之前最重要的一步就是調汁收汁,提前準備好一碗調好的湯汁,2026-03-25
中國古代計時工具有哪六種?中國古代的計時工具:1、圭表:圭表中的“表”是一根垂直立在地麵的標竿或石柱;“圭”是從表的跟腳上以水平位置伸向北方的一條石板 。每當太陽轉到正南方向的時。計時工具有哪些?沙漏、2026-03-25
為什麽讓浙江滾出中國?新浪微博,有個叫“範曉沐”的的人在微博上發表熱門話題:#浙江滾出中國#說的是,浙江這次的台風讓浙江人自救說浙江人都那麽富,那麽有錢,有錢人多...d3玩家滾出wow是什麽梗?一個2026-03-25
Two astronauts just installed a new parking spot on the International Space Station
UPDATE: Aug. 19, 2016, 2:04 p.m. EDT。 Astronauts Kate Rubins and Jeff Williams are back in the Inter2026-03-25
為什麽媽媽不喜歡我化妝?首先,你沒有表明自己的年紀,如果年紀還小,化妝品對皮膚又有一定損傷,從這方麵看呢,媽媽不讓你化妝,是從愛你的角度出發的,可以理解,第二,如果是年紀已經...首...你認為“娘們2026-03-25

最新评论