Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Kara Pod makes drinking water from air and brews coffee too
    • The Trump Administration Is Turning ICE Raids and Protests Into Reality TV
    • US air traffic control still runs on Windows 95 and floppy disks
    • Warner Bros. Discovery Is Splitting Up: What It Means for You
    • Focused Ultrasound Stimulation: a New Way to Fight Inflammation
    • 9 AI Waifu Chat Generators No Restrictions
    • New ROG Xbox Ally handhelds gaming devices might be worth the wait
    • A Researcher Figured Out How to Reveal Any Phone Number Linked to a Google Account
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Monday, June 9
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»Technology»A Researcher Figured Out How to Reveal Any Phone Number Linked to a Google Account
    Technology

    A Researcher Figured Out How to Reveal Any Phone Number Linked to a Google Account

    Editor Times FeaturedBy Editor Times FeaturedJune 9, 2025No Comments4 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link


    A cybersecurity researcher was in a position to determine the cellphone quantity linked to any Google account, data that’s normally not public and is usually delicate, based on the researcher, Google, and 404 Media’s personal exams.

    The problem has since been fastened however on the time introduced a privateness situation through which even hackers with comparatively few assets may have brute pressured their strategy to peoples’ private data.

    “I feel this exploit is fairly dangerous because it’s mainly a gold mine for SIM swappers,” the impartial safety researcher who discovered the difficulty, who goes by the deal with brutecat, wrote in an electronic mail. SIM swappers are hackers who take over a target’s phone number in an effort to obtain their calls and texts, which in flip can allow them to break into all method of accounts.

    In mid-April, we offered brutecat with one in all our private Gmail addresses in an effort to take a look at the vulnerability. About six hours later, brutecat replied with the right and full cellphone quantity linked to that account.

    “Primarily, it is bruting the quantity,” brutecat mentioned of their course of. Brute forcing is when a hacker quickly tries completely different combos of digits or characters till discovering those they’re after. Usually that’s within the context of discovering somebody’s password, however right here brutecat is doing one thing just like decide a Google consumer’s cellphone quantity.

    Brutecat mentioned in an electronic mail the brute forcing takes round one hour for a U.S. quantity, or 8 minutes for a UK one. For different nations, it could actually take lower than a minute, they mentioned.

    In an accompanying video demonstrating the exploit, brutecat explains an attacker wants the goal’s Google show title. They discover this by first transferring possession of a doc from Google’s Looker Studio product to the goal, the video says. They are saying they modified the doc’s title to be thousands and thousands of characters, which finally ends up with the goal not being notified of the possession swap. Utilizing some customized code, which they detailed in their write up, brutecat then barrages Google with guesses of the cellphone quantity till getting successful.

    “The sufferer isn’t notified in any respect :)” a caption within the video reads.

    A Google spokesperson instructed 404 Media in an announcement “This situation has been fastened. We have all the time harassed the significance of working with the safety analysis group by way of our vulnerability rewards program and we wish to thank the researcher for flagging this situation. Researcher submissions like this are one of many some ways we’re capable of rapidly discover and repair points for the security of our customers.”

    Telephone numbers are a key piece of knowledge for SIM swappers. These kinds of hackers have been linked to numerous hacks of particular person folks in an effort to steal online usernames or cryptocurrency. However subtle SIM swappers have additionally escalated to focusing on huge firms. Some have worked directly with ransomware gangs from Jap Europe.

    Armed with the cellphone quantity, a SIM swapper could then impersonate the sufferer and persuade their telecom to reroute textual content messages to a SIM card the hacker controls. From there, the hacker can request password reset textual content messages, or multi-factor authentication codes, and log into the sufferer’s useful accounts. This might embrace accounts that retailer cryptocurrency, or much more damaging, their electronic mail, which in flip may grant entry to many different accounts.

    On its web site, the FBI recommends folks don’t publicly promote their cellphone quantity for that reason. “Defend your private and monetary data. Don’t promote your cellphone quantity, tackle, or monetary belongings, together with possession or funding of cryptocurrency, on social media websites,” the site reads.

    Of their write-up, brutecat mentioned Google awarded them $5,000 and a few swag for his or her findings. Initially, Google marked the vulnerability as having a low probability of exploitation. The corporate later upgraded that chance to medium, based on brutecat’s write-up.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    The Trump Administration Is Turning ICE Raids and Protests Into Reality TV

    June 9, 2025

    8 Best Gaming Laptops (2025), Tested and Reviewed

    June 9, 2025

    The Best Read-It-Later Apps for Curating Your Longreads

    June 9, 2025

    How to Buy a Bike Helmet (2025)

    June 9, 2025

    Best Treadmill for Home (2025), Tested and Reviewed

    June 8, 2025

    How to Advocate for Trans Rights in Your Community

    June 8, 2025
    Leave A Reply Cancel Reply

    Editors Picks

    Kara Pod makes drinking water from air and brews coffee too

    June 9, 2025

    The Trump Administration Is Turning ICE Raids and Protests Into Reality TV

    June 9, 2025

    US air traffic control still runs on Windows 95 and floppy disks

    June 9, 2025

    Warner Bros. Discovery Is Splitting Up: What It Means for You

    June 9, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    OpenAI launches Operator—an agent that can use a computer for you

    January 31, 2025

    Will Robots Replace Human Educators?

    August 15, 2024

    Google’s Data Science Agent: Can It Really Do Your Job?

    March 21, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.