電信商成為透過簡訊傳送動態密碼的破口!駭客對思科身分驗證服務Duo合作電信業者發動網路攻擊,竊取部分雙因素驗證資訊
· 2024-04-16

思科旗下的身分驗證服務Duo傳出遭遇供應鏈攻擊事故,該公司合作的一家電信服務供應商遭到入侵,部分用戶3月期間的雙因素驗證資訊疑似遭攻擊者偷走

思科

思科近日針對身分驗證平臺Duo的用戶發出通知,指出其中一家處理他們寄送雙因素驗證(MFA)簡訊及VoIP訊息的電信服務供應商,於4月1日遭到網路攻擊。對方透過網路釣魚取得員工帳密,然後存取該廠商的內部系統,並下載3月1日至31日與特定Duo用戶有關的簡訊及VoIP訊息。

根據思科與這家廠商聯手調查的結果,攻擊者並未存取相關訊息的內容,也沒有利用這家廠商的平臺濫發簡訊。但遭竊的訊息事件記錄所儲存的內容,很有可能包含網釣攻擊有關的敏感資訊,這些資料包括電話號碼、電信服務供應商、地理位置資料、日期、時間、訊息類型等。

這家電信服務供應商察覺遭駭的當下,他們隨即註銷遭竊的帳號,並分析系統的活動事件記錄,然後通知思科。思科也對用戶提出警告,防範上述遭竊資訊很有可能被對方用於社交工程攻擊,或是從事網路釣魚。

Popular articles
1spin4win grows its Latin American presence by partnering with Fortuna Juegos
Online Game
Vietnam’s Controlled Gaming Shift Gains Ground, But Domestic Demand Still Lags
Southeast Asia
Vietnam's tightening online gaming policy creates new market opportunities
Southeast Asia
Gaming & Technology Expo Makes a Powerful Entrance in CDMX
Marketing
Online gambling, crypto pose ongoing money laundering risks in Philippines, analyst says
Southeast Asia
UK MPs reopen 2025 gambling inquiry as reform stalls
Regulation
1spin4win releases unique slot Don Catleone Hold and Win featuring gangster cats
Online Game
Kazakhstan plans to penalise online casino promotions
Regulation
PropellerAds Shared a New iGaming Case Study: 97,674 Installs and 12,701 Deposits in 3 Months
Marketing
GAT Expo Puerto Rico Will Pulse with the New Era of Gaming in the Caribbean
Marketing
SBC Summit Canada to Make Player Safety a Key Pillar of 2026 Agenda
Marketing
Indiana online casino bill stalls in House committee
Regulation
GAT CDMX 2025 Institutional Academy: Leaders and Experts Analyze the Present and Future of the Gaming Industry in Mexico and Lat
Sports Game
Are you ready to maximize your earnings? Try ProPush.me Constructor!
Marketing
Across 6 Cities: HUIDU Invites You to 8 World Cup Parties Redefining High-Value Social Networking
HUIDU Focus
Home
Game
Cooperation
Find
My