Menu

> Ross Wintle

Creativity, curiosity, and code

The Hackers are After your Phone!

Posted on October 23, 2014October 23, 2014 by magicroundabout
By: Matthieu Aubry. – CC BY-NC-SA 2.0

What might Twitter’s new “Digits” login system mean for security, hackers, operators, and all of US?!

Twitter’s “Digits” mobile phone login system was announced to the world yesterday. Attempting to capture the interest of app developers, and to cater for people the world over – including those in developing countries that have phones but not necessarily email addresses, is interesting. Is it good idea?

My initial reaction was “well hold on, my phone now is the key to all my online stuff”. And, truth is, with 2-factor authentication (ask me in the comments if you don’t know what that is) our phones, and our phone numbers, are increasingly becoming the key to important systems that we use.

I was pondering the implications of this. I’m sure it’s way more complicated than I’ll make out here, but a few things seem obvious to me:

  • Mobile phones will increasingly become targets for theft as they start to not only be of physical value, but contain increasingly valuable data.
  • Mobile phone numbers and operator accounts will increasingly become targets for theft, social engineering, spoofing, etc. How secure is the PAC code process for transferring numbers? How secure are mobile operator’s online portals?  Will operators need to tighten up security on number ownership somehow?
  • Hackers (and hacks!) will start needing to get hold of phones and phone numbers to initiate attacks.

Overall, a simple, one-time, phone-locked login system seems like a good idea, and as I’ve read in several places, a huge improvement over the existing username-and-password systems that so many places use and which are so easy to exploit.

But I do wonder what the future holds if Digits takes off.

Posted in Techie, ThoughtsTagged digits, internet, login, mobile, operators, security, twitter, web

Post navigation

Yosemite Dog
What’s your hereditary title name?

Settings/Theme

Search

Menu

  • Home
  • About me
  • Projects
  • Supports…
  • Uses…
  • My Work
  • Contact Me

Follow me

  • @ross@fosstodon.org
  • rm.omg.lol
  • RSS
  • Twitter

Latest

  • Eeek! What does Gutenberg Phase 3 mean for Turbo Admin
  • Oh gosh. I’m actually writing a post about AI.
  • Keyboard Shortcuts – A 5 Minute Window
  • Let’s Clean Up PHPStorm Part 2 – A 5 Minute Window
  • Let’s Clean Up PHPStorm Part 1 – A 5 Minute Window

Maker log

Things I'm making and doing

  • Did a firework party for the kids with hot dogs, a fire pit and smores!
  • Updated my website to reference fosstodon.org and tidied widgets.
  • Sent email to clients about new working arrangements
  • Fix CSS issue on Oikos website
  • Finally finished editing blog post about live streaming!

Week notes

  • The Weeks: 28th October and 4th November
  • The Weeks: 14th and 21st October
  • The Weeks: 30th September and 7th October
  • The Week: 23rd September 2019
  • The Week: 16th September 2019

Weird Wide Webring

This site is a proud member of the Weird Wide Webring. Be inspired - click a link:

  • Previous site
  • Next site
  • Random site
  • List all sites
  • Join the ring
All content © Ross Wintle | @magicroundabout | This site uses no cookies and does not track you