fbpx
Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Penetration Testing

          Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

SIM Hijackers Arrested After Stealing Millions From US Celebrities

SIM Hijackers Arrested After Stealing Millions From US Celebrities

Ten men part of a criminal gang involved in series of SIM swapping attacks targeting high-profile victims in the United States were arrested in the UK, Malta, and Belgium.

SIM swap fraud (also known as SIM hijacking) allows scammers to take control of a target’s phone number either via social engineering or by bribing mobile operator employees to port it to a SIM controlled by the fraudster.

Subsequently, the attacker will be the one receiving all messages and calls delivered to the victim, which allows for easily bypassing SMS-based multi-factor authentication (MFA), stealing user credentials, and taking control of the victims’ online service accounts.

Afterward, criminals can log into their victims’ bank accounts to steal money and even change account passwords and locking the victims out of their own accounts.

Last year, Europol arrested suspects part of two other SIM swapping criminal gangs who stole millions from their victims, in collaboration with local law enforcement agencies from Spain, Austria, and Romania.

Also Read: The 5 Benefits Of Outsourcing Data Protection Officer Service

Network of SIM hijackers dismantled

Following successful SIM hijacking attacks, the eight men arrested in England and Scotland accessed the victims’ phone numbers and take control of their apps or accounts by changing the passwords. 

“This enabled them to steal money, cryptocurrencies and personal information, including contacts synced with online accounts,” Europol said.

“They also hijacked social media accounts to post content and send messages masquerading as the victim.”

They have been targeting “numerous victims throughout 2020, including well-known influencers, sports stars, musicians, and their families,” the UK National Crime Agency (NCA) added.

The SIM hijackers are believed to have stolen more than $100 million in cryptocurrency during 2020, from thousands of victims including sports stars, Internet influencers, musicians, and their families.

The criminal network uncovered after a year-long joint operation with agents from the UK NCA, the US Secret Service, Homeland Security Investigations, the FBI, and the Santa Clara California District Attorney’s Office.

Defending against SIM swapping attacks

Europol has also shared measures you can take to block SIM hijackers from stealing your credentials and locking you out of your accounts.

To stay ahead of any SIM swapping attempts, Europol recommends that you:

• Keep your devices’ software up to date
• Do not click on links or download attachments that come with unexpected emails
• Do not reply to suspicious emails or engage over the phone with callers that request your personal information 
• Limit the amount of personal data you share online 
• Try to use two-factor authentication for your online services, rather than having an authentication code sent over SMS
• When possible, do not associate your phone number with sensitive online accounts
• Set up your own PIN to restrict access to the SIM card. Do not share this PIN with anyone. 

You should also immediately contact your provider and the bank if you spot any suspicious activity on your bank account whenever you lose mobile connectivity where you normally have no issues.

Also Read: How To Prevent WhatsApp Hack: 7 Best Practices

Depending on what your provider and bank say, you might have to quickly change your online account passwords to avoid further compromise if scammers ported your number to an attacker-controlled device.

The FBI issued a SIM swapping alert with guidance on defending against such attacks following an increase in the number of SIM jacking attacks.

The FTC also provides info on how to keep personal information secure online and on how to secure personal information on your phone.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us