Signal Enhances Security After Targeted Phishing Attacks
In response to a series of phishing attacks targeting high-profile users, Signal has rolled out new in-app confirmations designed to protect its community from social engineering threats. The FBI and authorities in the Netherlands and Germany have reported that Russian state-sponsored hackers exploited Signal’s Linked Device feature, tricking victims into scanning QR codes or sharing verification codes.
These tactics allowed hackers to link their devices to victims’ accounts, compromising their chats and contacts. To combat this, Signal now alerts users with messages indicating unverified contacts and prompts them to confirm new requests while reinforcing that they will never ask for sensitive information.
The impact of these attacks underscores the need for vigilance. Signal users should be cautious of messages from unknown contacts and regularly check for unauthorized linked devices in their settings.
Risk Level: High.
Source: View Original Report
