Defending against iCloud takeover if your phone is stolen

24 Oct 2023 21:02 | iOS | iphone | security

Another security issue that's been rising in recent years is the advent of organised criminals shoulder-surfing iPhone passcodes in order to then later steal the phone and take over the iCloud account.

Unfortunate victims are then locked out of their account forever, losing precious iCloud data such as photos of their kids.

There are some steps you can take to protect yourself, such as using a longer/more complex passcode and being very careful where you type it to ensure nobody can see over your shoulder.

[read more...]

Defending against sim swap attacks

24 Oct 2023 20:46 | security

Although for most people it's pretty unlikely, the thought of getting sim-swapped is pretty scary.

This is where an attacker manages to convince your mobile carrier to transfer your number to a new sim card that they control. When this happens your original sim card will lose service and they will obtain your number - and any SMS OTP codes it's configured to receive.

Unfortunately despite many improvements in online security there are still several providers who either rely on SMS OTP or make it a mandatory fallback option if your primary OTP mechanism doesn't work. You're only secure as the weakest link and nothing will stop an attacker from using the fallback mechanisms if they can't bypass your primary one.

[read more...]