SMS Vulnerability in Twitter, Facebook and Venmo · Jonathan Rudenberg
Twitter users with SMS enabled are vulnerable to an attack that allows anyone to post to their account. The attacker only needs knowledge of the mobile number associated with a target’s Twitter account. Messages can then be sent to Twitter with the source number spoofed.Like email, the originating address of a SMS cannot be trusted. Many SMS gateways allow the originating address of a message to be set to an arbitrary identifier, including someone else’s number.Facebook and Venmo were also vulnerable to the same spoofing attack, but the issues were resolved after disclosing to their
What the influencers are saying
-
BrianHonan
RT @mikko: Vulnerability allows others to Tweet as you by spoofing your phone: http://t.co/aHVTsYpP You can delete the number at https:/ ...
-
Mikko Hypponen
Vulnerability allows others to Tweet as you by spoofing your phone: http://t.co/aHVTsYpP You can delete the number at https://t.co/Sj90SgXa
-
dragosr
SMS Origin Spoofing Vulnerability in Twitter, Facebook, Venmo - now fixed. interesting. http://t.co/lX5KVffO
-
news.yc Popular
SMS Vulnerability in Twitter, Facebook, and Venmo http://t.co/wBSC4wIC
-
Kimberly
RT @securityshell: SMS Vulnerability in @Twitter, @facebook and Venmo http://t.co/5yufn6G4
-
Team Cymru
Twitter users with SMS enabled are vulnerable to an attack http://t.co/4CAR2ZMu
-
wintr
RT @mikko: Vulnerability allows others to Tweet as you by spoofing your phone: http://t.co/aHVTsYpP You can delete the number at https:/ ...
-
Chris Wysopal
SMS Vulnerability in Twitter, Facebook and Venmo via SMS spoofing. Wow, payments via SMS? not cool. http://t.co/NQTicXZD
-
Sam Bowne
SMS Vulnerability in Twitter, Facebook and Venmo http://t.co/jcT7NNT6
-
grecs
RT @WebBreacher: SMS Vuln in Twitter, Facebook, Venmo allows others to post as you: http://t.co/vNneQb0Q //Nice.
-
Chris Boyd
RT @MarioVilas: SMS Vulnerability in Twitter, Facebook and Venmo http://t.co/B69sppOQ
-
Avram Marius (d3v1l)
SMS Vulnerability in @Twitter, @facebook and Venmo http://t.co/5yufn6G4
Related Reading
| To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy. |













