Post #609108
2026-03-09 16:16 UTC
Replies (6)
-
@signalapp@mastodon.world 2026-03-09 16:16
These attacks, like all phishing, rely on social engineering. Attackers impersonate trusted contacts or services (such as the non-existent “Signal Support Bot”) to trick victims into handing over their login credentials or other information. To help prevent this, remember that your Signal SMS verification code is only ever needed when you are first signing up for the Signal app.
-
@cmthiede@social.vivaldi.net 2026-03-09 16:20
@signalapp@mastodon.world time to re-up their cyber awareness campaigns
-
@patricus@gts.posix.live 2026-03-09 16:21
@signalapp@mastodon.world how to move signal account from a phone to an other? just a question.
-
@scathach@stereophonic.space 2026-03-09 17:32
@signalapp@mastodon.world These attacks wouldn't be possible if you stopped requiring phone numbers
-
@ariarhythmic@ohai.social 2026-03-09 17:51
@signalapp@mastodon.world "SMS codes" sounds like a you problem, though.
-
@adulau@infosec.exchange 2026-03-09 17:52
@signalapp@mastodon.world Since Signal always asks for a PIN code for backups, it seems logical that threat actors are exploiting this behavior to trick users.