• Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
Tech News, Magazine & Review WordPress Theme 2017
  • Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
No Result
View All Result
  • Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
No Result
View All Result
Blog - Creative Collaboration
No Result
View All Result
Home Android

Another data breach hits AT&T, this time leaking millions of call records

July 12, 2024
Share on FacebookShare on Twitter

Summary

  • A new SEC filing indicates that AT&T has suffered a data breach, and the carrier is pointing fingers at a third-party cloud platform.
  • Hackers stole AT&T customers’ call records, including those of MVNOs, but no personal information was breached.
  • AT&T’s breach impacts potentially millions. Customers should stay vigilant & protect against SIM-Swap attacks.




2024 hasn’t been faring so well for carrier security. T-Mobile suffered a data breach in June 2024, where the threat actors ran off with its source code, t-mobile.com certifications, and other sensitive information. The carrier straight out denied the breach of its systems, pointing its finger at an unnamed third-party vendor.

AT&T did something similar after a data breach that it suffered back in 2021, claiming that the hacker did not access sensitive information from its systems while pointing fingers at third parties, before coming to grips with it and acknowledging the breach earlier this year. At the time, everything from AT&T customers’ social security numbers to email addresses might have made its way onto the dark web, and now, it appears to be happening again.


Related

AT&T finally acknowledges the 2021 data breach it originally said wasn’t its fault

Data from 2019 and earlier may have been compromised

As revealed after a recent internal AT&T investigation, millions of its customers’ call and text records were reportedly stolen by hackers, as shared by the carrier in a new SEC filing, with the carrier again pointing its finger at a third-party cloud platform that the hackers were able to “unlawfully access (via NBC News). According to the carrier, the threat actors acted between April 14 and April 25, stealing call record data ranging between May 1 and October 31, 2022, as well as on January 2, 2023, stealing six months worth of call and text records. Additionally, the breach included call and text records of all of AT&T’s MVNOs, which include Black Wireless, Cricket, H20 Wireless, Jolt Mobile, and many more.


AT&T logo surrounded by TracFone and Cricket wordmarks, and Boost Infinite and Good2Go logos, over a field of AP logos

Related

Complete list of AT&T MVNO carriers

Reach out and touch someone with one of these MVNOs

AT&T says that the content of the records was not compromised, and no personal customer information could be breached, except phone numbers. “The data does not contain the content of calls or texts, personal information such as Social Security numbers, dates of birth, or other personally identifiable information,” wrote AT&T. However, in addition to the AT&T customers’ phone numbers, the record also gives threat actors access to the phone numbers of people that the compromised customers interacted with, the frequency of interactions, and an “aggregate call duration for a day or month.” AT&T also acknowledges that while no customer names were leaked as part of the breach, the threat actors can link names to phone numbers, “using publicly available online tools.”



Notifications are going out, and there’ll likely be a lot

A graphic showing AT&T wireless subscribers and connections during the time period of the breach.

Source: Statista

In 2022, AT&T serviced anywhere between 200 million and 217 million wireless subscribers and connections, with a roughly 30 percent market share, potentially making this one of the biggest carrier breaches of all time. The carrier is currently notifying those impacted, and has reportedly made one arrest in connection with the breach. It has also taken measures to seal off the threat actors’ entry points.

As customers who’ve potentially had their information leaked, here are some steps you can take to ensure your digital safety. As cliché as it may sound, be vigilant against suspicious SMS messages, and change passwords for any accounts where you might have used the same password as your AT&T account. At the moment, there is no indication of customer credentials being breached, but you’d better be safer than sorry. It would also be prudcent to enable 2FA authentication on all your accounts, not just sensitive ones, instead of using text message authentication.


Elsewhere, you can lock your SIM card behind a passcode that you must enter every time you restart your device, or lock your phone number directly via your service provider to prevent SIM Swap attacks.

A SIM card attached to a fishing hook.

Related

How to protect yourself from a SIM-swap attack

The risks are never zero but you can minimize them

Next Post

Early Prime Day deal: Up to 50% off luggage

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

No Result
View All Result

Recent Posts

  • Nintendo takes the U.S. government to court over tariffs
  • These free Android apps are so good that I’m ready to pay for them
  • Sony may be experimenting with dynamic pricing for its PlayStation Store
  • Hope for a Fallout: New Vegas remaster emerges yet again
  • I used the TCL NXTPAPER 70 Pro’s e-paper display, and I can’t wait for the US launch next month

Recent Comments

    No Result
    View All Result

    Categories

    • Android
    • Cars
    • Gadgets
    • Gaming
    • Internet
    • Mobile
    • Sci-Fi
    • Home
    • Shop
    • Privacy Policy
    • Terms and Conditions

    © CC Startup, Powered by Creative Collaboration. © 2020 Creative Collaboration, LLC. All Rights Reserved.

    No Result
    View All Result
    • Home
    • Blog
    • Android
    • Cars
    • Gadgets
    • Gaming
    • Internet
    • Mobile
    • Sci-Fi

    © CC Startup, Powered by Creative Collaboration. © 2020 Creative Collaboration, LLC. All Rights Reserved.

    Get more stuff like this
    in your inbox

    Subscribe to our mailing list and get interesting stuff and updates to your email inbox.

    Thank you for subscribing.

    Something went wrong.

    We respect your privacy and take protecting it seriously