Skip to main content

Hackers breached 2FA accounts of some Authy users, Twilio confirms

Twilio, an online communications company, was the subject of a cyberattack earlier this month, but today the company has confirmed that the attack was bigger in scope than it initially announced. The announcement from early August said that 100 Twilio customers had their information accessed by outside sources as a result of Twilio employees being phished. Now the company has announced that 93 Authy app users have also had select information compromised.

What at Authy was breached

Authy is a two-factor authentication app owned by Twilio, so a breach can’t get much worse for consumers than having their security information compromised. Following an internal investigation, Twilio says that 93 accounts were accessed and had additional unauthorized devices added to them. The company confirmed that it had “identified and removed unauthorized devices” from all impacted accounts.

Authy logo against a black and white background.
Authy (logo)

The reason these devices were added was essentially to create devices capable of bypassing specific users’ two-factor authentication in order to gain even more information about their various other accounts that rely on Authy for security. Other than providing the number of accounts that were breached, Twilio didn’t give any specific details regarding what user information may have been accessed through Authy accounts.

Recommended Videos

The attack seems to be tied to the hacker group “Oktapus” which has laid claim to numerous company information breaches over the last six months, including a breach of DoorDash, which was reported earlier this week.

Please enable Javascript to view this content

How to know if your Authy account is affected

Twilio says that it has already reached out to all 93 account owners to let them know that were affected by the breach and that their information is at risk. If you didn’t hear from the company, you’re likely a part of the roughly 75 million Authy users that got through the breach unaffected. It’s still not a bad idea to check your Authy account information to make sure that nothing suspicious is going on there.

In addition to changing any passwords associated with your Authy account, Twilio recommends looking in your account settings to “review all devices tied to (your) Authy account” in order to make sure that only authorized devices are connected. The company also advises users to disable the “Allow Multi-Device” setting in their account to restrict the devices linked to it.

Peter Hunt Szpytek
Former Digital Trends Contributor
A podcast host and journalist, Peter covers mobile news with Digital Trends and gaming news, reviews, and guides for sites…
Samsung Galaxy Z Fold 6 & Flip 6 start getting One UI 7 beta update
Update banner for Samsung One UI 7 beta testing

Samsung has started the rollout of OneUI 7 Beta update for its latest foldable phones, the Galaxy Z Fold 6 and Z Flip 6. Multiple users have on X and Samsung’s community forum have reported receiving the enrolment message on their eligible Samsung phone.

A few days ago, the company promised that One UI 7 beta testing for its latest foldables will kick off for users in India, Korea, the US, and the UK. As per user posts in the Samsung forum, Galaxy Z Fold 6 and Z Flip 6 users in the US have started receiving the update.

Read more
Instagram might soon get even more chaotic with Community Chats
Early preview of Instagram Community Chats feature.

Meta is on a mission to turn its social apps into a hub of all kinds of content as well chatter. The next step towards that goal could be Community Chats on Instagram, which could open the doors for the same kind of group chatter as you would find across Telegram channels and Discord.

Code sleuth Alessandro Paluzzi has shared visual assets of the in-development feature sharing some details on how it might work. These chat groups will be able to host up to 250 people at once, and will be open to all users to join and share messages among the community.

Read more
Apple might have a way to boost battery life in the iPhone 17 Air
A rendered concept of what the iPhone 17 Air might look like.

Everyone is excited to learn about the ultra slim iPhone 17 Air that Apple is working on, but many people have expressed concerns about its potential battery life, given the small amount of space that will be available for a battery within the device. With a reported thickness of just 5.5mm, and apparently a large screen of up to 6.7 inches in size, the iPhone 17 Air seeks to cram a lot of functionality into a very slim form.

But with a thin device always comes a tricky problem: how to fit in a battery large enough to hold a reasonable amount of charge. According to industry analyst Ming-Chi Kuo, the iPhone 17 Air will solve this problem by making use of a high-density battery.

Read more