chinese imessage ha...
 

  You don't need to be an 'investor' to invest in Singletrack: 6 days left: 95% of target - Find out more

[Closed] chinese imessage hack,

12 Posts
7 Users
0 Reactions
104 Views
Posts: 23277
Free Member
Topic starter
 

anyone else?

phone pinged last night to tell me my imessage details had been used to login into another device.

in the 2-3 mins it took me to change my password and kick out all logged in devices about 30 spam messages had been sent to chinese mobile numbers.

glad it didn't happen in the middle of the night.


 
Posted : 21/10/2016 8:42 am
Posts: 0
Full Member
 

No, but thanks for the info..


 
Posted : 21/10/2016 8:42 am
Posts: 23277
Free Member
Topic starter
 

meant to add, turn on two step authentication. I've got it turned on for everything else, I didn't realise Apple had added for icloud accounts.


 
Posted : 21/10/2016 8:47 am
Posts: 12865
Free Member
 

what sort of password did you have btw? uber-complicated one, or something simple that could be guessed/brute forced?


 
Posted : 21/10/2016 11:54 am
Posts: 23277
Free Member
Topic starter
 

not uber complicated but on its own reasonably secure

having done a bit of reading, may have been the same email/password as my linkedin login who suffered a major hack last year.


 
Posted : 21/10/2016 11:58 am
Posts: 0
Free Member
 

This site is pretty useful https://haveibeenpwned.com/ will tell you if any of your accounts you have been hacked if the data has been published.


 
Posted : 21/10/2016 12:07 pm
Posts: 23277
Free Member
Topic starter
 

useful. looks like it might have been from a defunct last.fm account.


 
Posted : 21/10/2016 12:12 pm
Posts: 12865
Free Member
 

I always use Safari/iCloud to select & manage a different totally random password for each website now. I used to have the same password for everything but when you think about it that's a terrible idea given how many hacks there are these days!


 
Posted : 21/10/2016 12:31 pm
Posts: 0
Free Member
 

Sophos have released some info on this, seems to be weak passwords or re-used passwords from previous hacks.


 
Posted : 21/10/2016 1:31 pm
Posts: 13594
Free Member
 

meant to add, turn on two step authentication.

Good reminder, just done it...


 
Posted : 21/10/2016 1:53 pm
Posts: 23277
Free Member
Topic starter
 

just to add to this, I just got my monthly bill from O2.

Despite them not actually showing on my phone, 104 messages got sent to chinese mobile numbers in the 4 minutes it took me to kick out any logged in devices and change my password.

O2 have credited the £30 of charges accumulated back to my account.


 
Posted : 24/10/2016 10:11 am
Posts: 1130
Free Member
 

If it was iMessage, why were there O2 charges? iMessages go over a data connection, and even 104 would be a negligible amount of data.

I use Giffgaff which is effectively O2 and never see any messaging charge for iMessage.


 
Posted : 24/10/2016 1:17 pm
Posts: 23277
Free Member
Topic starter
 

they came up as SMS charges. I guess once I killed iMessage, my phone tried to send them as SMS.

but there were maybe 9-10 messages showing on my phone with one showing as a failed text message, not 104.

O2 didn't argue about it at all, so I'm guessing they must be aware of it.


 
Posted : 24/10/2016 1:20 pm

6 DAYS LEFT
We are currently at 95% of our target!