An Empirical Study of Wireless Carrier Authentication for SIM Swaps¶
Lee, K. (2020). An Empirical Study of Wireless Carrier Authentication for SIM Swaps. Sixteenth Symposium on Usable Privacy and Security (SOUPS 2020).
Cited by¶
1 citation across 1 artifact.
Each citation links to the sentence it supports in the citing article.
Domain-specific¶
- Authentication Failure
- SIM-swap fraud is the same failure deployed against SMS-based two-factor authentication at scale, and has drained many high-value accounts (notably cryptocurrency holdings)
This sourceEmpirical study finding that all five US prepaid carriers used authentication challenges that could be subverted for SIM swaps, and that SIM swaps are widely used to steal cryptocurrency and break into bank accounts.
Supported in partVerified against the work's full text
“We found that all five carriers used insecure authentication challenges that could be easily subverted by attackers.”
- SIM-swap fraud is the same failure deployed against SMS-based two-factor authentication at scale, and has drained many high-value accounts (notably cryptocurrency holdings)
Verification¶
Does it exist? Not checked yet. This entry carries no identifier to resolve. It was extracted from the citation as written in the article, normalized, and deduplicated against the rest of the registry.
Does it back the claim? Read against the text for 1 of 1 citation: 1 supported in part. Each verdict is shown under its citation below, with what in the work backs the sentence.
Support is checked per citation rather than per work — the same source can be cited soundly in one article and wrongly in another. Per-citation recording began recently, so a citation with no recorded check is a gap in the record rather than evidence it went unchecked.
See how references were verified.
Registry ID ref:884ec11cda27 · see in the full table