Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
8 résultats taggé Twilio  ✕
Twilio denies breach following leak of alleged Steam 2FA codes https://www.bleepingcomputer.com/news/security/twilio-denies-breach-following-leak-of-alleged-steam-2fa-codes/
18/05/2025 12:16:51
QRCode
archive.org
thumbnail

Twilio has denied in a statement for BleepingComputer that it was breached after a threat actor claimed to be holding over 89 million Steam user records with one-time access codes.

The threat actor, using the alias Machine1337 (also known as EnergyWeaponsUser), advertised a trove of data allegedly pulled from Steam, offering to sell it for $5,000.

When examining the leaked files, which contained 3,000 records, BleepingComputer found historic SMS text messages with one-time passcodes for Steam, including the recipient's phone number.

Owned by Valve Corporation, Steam is the world's largest digital distribution platform for PC games, with over 120 million monthly active users.

Valve did not respond to our requests for a comment on the threat actor's claims.

Independent games journalist MellolwOnline1, who is also the creator of the SteamSentinels community group that monitors abuse and fraud in the Steam ecosystem, suggests that the incident is a supply-chain compromise involving Twilio.

MellowOnline1 pointed to technical evidence in the leaked data that indicates real-time SMS log entries from Twilio's backend systems, hypothesizing a compromised admin account or abuse of API keys.

bleepingcomputer EN 2025 Sale SMS Steam Supply-Chain Supply-Chain-Attack Third-Party-Data-Breach Twilio denied
Twilio says hackers identified cell phone numbers of two-factor app Authy users https://techcrunch.com/2024/07/03/twilio-says-hackers-identified-cell-phone-numbers-of-two-factor-app-authy-users/
04/07/2024 07:19:36
QRCode
archive.org
thumbnail

Twilio says "threat actors were able to identify" phone numbers of people who use the two-factor app Authy.

techcrunch EN 2024 Twilio phone numbers Authy data-leak
Incident Report: Employee and Customer Account Compromise https://www.twilio.com/blog/august-2022-social-engineering-attack
28/10/2022 09:02:19
QRCode
archive.org
thumbnail

On August 4, 2022, Twilio identified accounts of employees who were compromised by a social engineering attack. The attacker then gained access to data for a limited number of customers.

Twilio EN 2022 compromised postmortem
Detecting Scatter Swine: Insights into a relentless phishing campaign https://sec.okta.com/scatterswine
29/08/2022 10:25:04
QRCode
archive.org

Twilio recently identified unauthorized access to information related to 163 Twilio customers, including Okta.

okta 2022 EN unauthorized access Twilio phishing
Twilio Incident: What Signal Users Need to Know https://support.signal.org/hc/en-us/articles/4850133017242
17/08/2022 12:59:14
QRCode
archive.org

Recently Twilio, the company that provides Signal with phone number verification services, suffered a phishing attack. Here's what our users need to know:

All users can rest assured that their message history, contact lists, profile information, whom they'd blocked, and other personal data remain private and secure and were not affected.
For about 1,900 users, an attacker could have attempted to re-register their number to another device or learned that their number was registered to Signal. This attack has since been shut down by Twilio. 1,900 users is a very small percentage of Signal’s total users, meaning that most were not affected.

signal EN 2002 Twilio hack
DigitalOcean says customer email addresses were exposed after latest Mailchimp breach – TechCrunch https://techcrunch.com/2022/08/16/digitalocean-emails-mailchimp-breach/
17/08/2022 12:45:34
QRCode
archive.org
thumbnail

Cloud giant DigitalOcean says that some customers’ email addresses were exposed because of a recent “security incident” at email marketing company Mailchimp. In a scant blog post dated August 12, just two days after the company’s co-founder and long-time CEO Ben Chestnut stepped down, Mailchimp said a recent but undated attack saw threat actors targeting […]

techcrunch EN 2022 digitalocean mailchimp password phishing sms twilio
Phishers who breached Twilio and targeted Cloudflare could easily get you, too https://arstechnica.com/information-technology/2022/08/phishers-breach-twilio-and-target-cloudflare-using-workers-home-numbers/
14/08/2022 21:37:56
QRCode
archive.org
thumbnail

Unusually resourced threat actor has targeted multiple companies in recent days.

arstechnica EN 2022 Twilio cloudflare phishing threat
The mechanics of a sophisticated phishing scam and how we stopped it https://blog.cloudflare.com/2022-07-sms-phishing-attacks/
14/08/2022 21:36:00
QRCode
archive.org

Yesterday, August 8, 2022, Twilio shared that they’d been compromised by a targeted phishing attack. Around the same time as Twilio was attacked, we saw an attack with very similar characteristics also targeting Cloudflare’s employees. While individual employees did fall for the phishing messages, we were able to thwart the attack through our own use of Cloudflare One products, and physical security keys issued to every employee that are required to access all our applications.

cloudflare EN 2022 phishing scam Twilio okra
4623 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio