{"id":10230,"date":"2023-08-04T18:40:40","date_gmt":"2023-08-04T18:40:40","guid":{"rendered":"https:\/\/nft.runfyers.com\/index.php\/2023\/08\/04\/understanding-sim-swap-attacks-and-how-to-safeguard-yourself\/"},"modified":"2023-08-04T18:40:40","modified_gmt":"2023-08-04T18:40:40","slug":"understanding-sim-swap-attacks-and-how-to-safeguard-yourself","status":"publish","type":"post","link":"https:\/\/nft.runfyers.com\/index.php\/2023\/08\/04\/understanding-sim-swap-attacks-and-how-to-safeguard-yourself\/","title":{"rendered":"Understanding SIM Swap Attacks and How to Safeguard Yourself"},"content":{"rendered":"<p><\/p>\n<div>\n<p class=\"has-drop-cap\">In a proactive move to safeguard consumers from emerging digital threats, the U.S. Federal Communications Commission (FCC) has proposed new regulations aimed at curbing the rise of \u201cSIM swap\u201d and \u201cport-out scams.\u201d <\/p>\n<p>These malicious activities have been on the rise, with fraudsters exploiting vulnerabilities in mobile communication systems to gain unauthorized access to victims\u2019 personal and financial information.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-what-is-a-sim-swap-attack\">What is a \u201cSIM Swap\u201d attack?<\/h2>\n<p>SIM swapping occurs when scammers or a bad faith actor happens to get their hands on either your phone number or your phone\u2019s SIM card, allowing them to access your accounts or \u201creroute\u201d that now stolen SIM card to a phone that is now in that scammer\u2019s hands (port-out scam).<\/p>\n<p>Once your phone number has been rerouted to that hacker\u2019s phone, this allows them to now take advantage of a weakness in your \u201ctwo-factor authentication\u201d (2FA) and verification by using your phone number to access your accounts \u2013 ranging from your social media accounts and banking accounts to your crypto accounts\/wallets, any other online website or platform that requires you to enter a username and password.<\/p>\n<h2 class=\"wp-block-heading\">Notable examples<\/h2>\n<p>Over the course of the past few years, SIM swap attacks have witnessed a monumental surge, most notably in 2018 when crypto investor <a href=\"https:\/\/cointelegraph.com\/news\/crypto-investor-sues-new-york-teen-for-714-million-in-sim-swap-saga\" target=\"_blank\" rel=\"noopener\">Michael Terpin fell victim to a $23.8 million SIM swap attack<\/a> that was perpetrated by an 18-year-old living in New York named Ellis Pinsky.\u00a0<\/p>\n<p>Terpin is also the co-founder of the blockchain public relations firm Transform Group, as well as the crypto investor network BitAngels.<\/p>\n<p>Through his legal counsel, Terpin filed a lawsuit against his phone carrier, AT&amp;T, alleging that the telecom giant had failed to conduct their due diligence and helped facilitate the SIM swap scheme that resulted in him losing close to $2 million in various crypto assets through negligence, breach of contract, and violation of the Communications Act.<\/p>\n<p>However, a <a href=\"https:\/\/blockworks.co\/news\/att-crypto-sim-swap-lawsuit\" target=\"_blank\" rel=\"noopener\">California judge just ruled in favor of AT&amp;T<\/a> after six years of pending litigation back in April, determining that there was no evidence to support Terpin\u2019s claims.\u00a0<\/p>\n<p>British hacker Joseph O\u2019Connor, known as \u201cPlugwalkJoe,\u201d was sentenced to five years in U.S. prison after stealing $794,000 in cryptocurrency through a SIM swap attack in 2019. Arrested in Spain in 2021 and later extradited to the U.S., O\u2019Connor pleaded guilty to multiple charges, including conspiracy to commit computer intrusions, wire fraud, and money laundering.<\/p>\n<p>Quite a few brands and <a href=\"https:\/\/cointelegraph.com\/news\/over-765k-worth-of-nfts-stolen-after-sim-swap-attack-on-guttercatgang\" target=\"_blank\" rel=\"noopener\">individual accounts<\/a> across the Crypto and NFT space have fallen victims to these attacks over the past year as well. <\/p>\n<div class=\"wp-block-columns is-layout-flex wp-container-3\">\n<div class=\"wp-block-column is-layout-flow\">\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\">\n<div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">And\u2026 we&#8217;re back in. This was basically my life for the past 24 hours. Luckily we saw hack immediately and the battle began <a href=\"https:\/\/t.co\/pjrkMfQ2vT\" target=\"_blank\">pic.twitter.com\/pjrkMfQ2vT<\/a><\/p>\n<p>\u2014 Bryan Pellegrino (@PrimordialAA) <a href=\"https:\/\/twitter.com\/PrimordialAA\/status\/1676726399955251202?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">July 5, 2023<\/a><\/p><\/blockquote>\n<\/div>\n<\/figure>\n<\/div>\n<div class=\"wp-block-column is-layout-flow\">\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\">\n<div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Our Twitter has been compromised please do not interact with any links<\/p>\n<p>\u2014 Gutter Mitch (@GutterMitch) <a href=\"https:\/\/twitter.com\/GutterMitch\/status\/1677409871543562241?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">July 7, 2023<\/a><\/p><\/blockquote>\n<\/div>\n<\/figure>\n<\/div>\n<\/div>\n<h2 class=\"wp-block-heading\">Congress and the FCC<\/h2>\n<p>Congress and the FCC have spent a long time working on how to best minimize and prevent SIM swap attacks. On July 11, the FCC announced its commitment in protecting consumers from what it termed as \u201c<a href=\"https:\/\/nftnow.com\/guides\/blockchain-51-attacks-what-to-know-to-stay-safe\/\" target=\"_blank\" rel=\"noreferrer noopener\">ugly new frauds<\/a>.\u201d\u00a0<\/p>\n<p>The proposed rules are designed to make it increasingly challenging for malicious actors to execute these scams, thereby enhancing the security of mobile users across the country.<\/p>\n<p>Differentiating SIM swap scams, the FCC also called attention to \u201cPort-out scams,\u201d which involve the unauthorized transfer of a victim\u2019s phone number to a different carrier, again giving the scammer potential access to sensitive accounts.<\/p>\n<p>The rise of these scams has been a cause for concern, with numerous reports highlighting the significant financial and emotional toll they have taken on victims. The FCC\u2019s proposed regulations are a response to this growing threat, signaling the agency\u2019s recognition of the need for robust preventive measures.<\/p>\n<p>While the specifics of the proposed rules were not detailed in the FCC announcement, it is anticipated that they will involve stricter verification processes for SIM swaps and port-outs. This could include mandatory multi-factor authentication, tighter security questions, and enhanced communication between mobile carriers and their customers regarding any changes to their accounts.<\/p>\n<p>The FCC\u2019s move is in line with a broader trend of regulatory bodies worldwide taking steps to address the challenges posed by the digital age, including the SEC and CFTC in the U.S., and the EU with respect to cryptocurrency regulation, to name a few.<\/p>\n<h2 class=\"wp-block-heading\">How To Safeguard Yourself <\/h2>\n<p>Warning signs of a <a href=\"https:\/\/us.norton.com\/blog\/mobile\/sim-swap-fraud\" target=\"_blank\" rel=\"noopener\">SIM swap <\/a>include inability to make calls or send texts, notifications of activity on a different device, inability to access accounts, and unfamiliar transactions on your financial statements. Spotting these signs early can help mitigate potential harm. Fortunately there are steps you can take to further protect yourself:<\/p>\n<ul>\n<li>Preventing SIM swap fraud requires vigilant online behavior and robust account security. This includes avoiding clicking on unknown email links, using strong, unique passwords, and setting up additional passcodes or PINs with your phone carrier, if possible.<\/li>\n<\/ul>\n<ul>\n<li>Consider using authentication apps like Google Authenticator that tie two-factor authentication to your device rather than your phone number. Cooperate with your banks and mobile carrier for shared knowledge on SIM swap activity and setting up user alerts. Some organizations offer call-back services to verify identity, adding an extra layer of security.<\/li>\n<li>Don\u2019t rely solely on your phone number for security and identity authentication. Leverage hardware security keys such as YubiKey for additional protection against SIM swap attacks, as they provide physical, two-factor authentication tied to the device, not the phone number.<\/li>\n<\/ul>\n<h2 class=\"wp-block-heading\">What\u2019s next?<\/h2>\n<p>It remains to be seen how the mobile carrier industry will respond to the FCC\u2019s proposed rules. Collaboration between regulatory bodies and industry stakeholders will be essential to ensure that the measures are both effective and practical. The ultimate goal is to strike a balance between user convenience and security, ensuring that consumers can enjoy the benefits of mobile communication without constantly fearing potential scams.<\/p>\n<p>The FCC\u2019s announcement has been met with widespread approval from consumer protection advocates, who have long called for stricter regulations to combat SIM swap and port-out scams. As the proposal moves through the regulatory process, it will be crucial for all stakeholders to engage in constructive dialogue, ensuring that the final rules are both robust and implementable.<\/p>\n<\/p><\/div>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><br \/>\n<br \/><a href=\"https:\/\/nftnow.com\/news\/sim-swap-attacks-rising-in-web3\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>In a proactive move to safeguard consumers from emerging digital threats, the U.S. Federal Communications Commission (FCC) has proposed new regulations aimed at curbing the rise of \u201cSIM swap\u201d and \u201cport-out scams.\u201d These malicious activities have been on the rise, with fraudsters exploiting vulnerabilities in mobile communication systems to gain unauthorized access to victims\u2019 personal [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":10231,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_publicize_message":"","jetpack_is_tweetstorm":false,"jetpack_publicize_feature_enabled":true},"categories":[10],"tags":[],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"https:\/\/nftnow.com\/wp-content\/uploads\/2023\/08\/jpg-3.jpg","jetpack_sharing_enabled":true,"jetpack_likes_enabled":true,"_links":{"self":[{"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/10230"}],"collection":[{"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=10230"}],"version-history":[{"count":0,"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/10230\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/10231"}],"wp:attachment":[{"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=10230"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=10230"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nft.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=10230"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}