Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

SIM jacking is pretty easy. In Australia if you know someone’s mobile number and date of birth you can port a prepaid mobile. For postpaid accounts all you need is a bill.

The barrier is higher than random automated port scans but the value of being able to get access to financial accounts is high enough to justify the investment.

I use Authenticator apps wherever I can. Where I can’t, I use a completely private number for 2fa (I run a virtual number product that is like Google voice for Australians to do so http://www.benkophone.com)



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: