T-Mobile confirms data breach was caused by SIM-swapping attack

Data breach targeted “small number” of T-Mobile customers

When you purchase through links on our site, we may earn an affiliate commission.Here’s how it works.

A “very small group” ofT-Mobilecustomers in the United States fell victim to a SIM-swapping attack, the telecoms operator has confirmed.

In a statement, the company said affected customers were notified of the attack, and the company acted quickly to mitigate the threat.

“We informed a very small number of customers that the SIM card assigned to a mobile number on their account may have been illegally reassigned or limited account information was viewed,” T-Mobile toldBleepingComputer.

Big telecoms targeted

Big telecoms targeted

“Unauthorized SIM swaps are unfortunately a common industry-wide occurrence, however this issue was quickly corrected by our team, using our in-place safeguards, and we proactively took additional protective measures on their behalf.”

“We are not providing any additional information at this time. Thank you!”, the statement concluded.

A SIM swap attack is a fraudulent activity in which the telecommunications operator is tricked into assigning a mobile phone number to a different SIM card. It’s a popular, and very dangerous attack, given that many people use SMS fortwo-factor authentication.

By redirecting SMS messages to the attacker’s mobile device, they’re often able to log into banking services, clear out the funds, or steal their identities for other purposes.

Are you a pro? Subscribe to our newsletter

Are you a pro? Subscribe to our newsletter

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

As a major telecoms provider, T-Mobile is often the target ofidentity theftand similar fraudulent activities. Customers are advised to be extra careful when getting SMS messages, or emails, claiming to be from T-Mobile. Also, they should be careful not to open any links in those messages, before confirming the authenticity of the sender.

Account takeover is such a widespread thing that T-Mobile has an entiresupport pagedevoted to it.

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

This new malware utilizes a rare programming language to evade traditional detection methods

A new form of macOS malware is being used by devious North Korean hackers

I’ve been covering Apple Watch deals for years – This is the one model most people should buy on Black Friday