CDS Crypto News The Fortress Hack Attributed to Vulnerabilities in Google Authenticator’s Cloud Sync Function
Crypto News

The Fortress Hack Attributed to Vulnerabilities in Google Authenticator’s Cloud Sync Function

Software firm Retool disclosed a recent cyberattack on August 27, 2023, compromising 27 crypto customer accounts and causing substantial financial losses. The breach exposed a significant vulnerability related to Google Authenticator.

596
The Fortress Hack Attributed To Vulnerabilities In Google Authenticator'S Cloud Sync Function

Crypto News– Retool has recently revealed critical details regarding a recent hacking incident that impacted 27 cryptocurrency accounts. In this breach, a staggering $15 million worth of cryptocurrency was stolen from Fortress Trust. The attacker successfully gained control by exploiting a vulnerability in the Google Authenticator cloud sync function. The initial breach occurred when the hacker gained access to the victim’s Google account, subsequently compromising the data stored within Google Authenticator.

The Fortress Hack Attributed to Vulnerabilities in Google Authenticator’s Cloud Sync Function

The software development company, Retool, which is headquartered in San Francisco, has disclosed a concerning security breach affecting 27 of its cloud customers. This breach was the result of a targeted SMS-based social engineering attack, raising significant alarm within the cybersecurity community.

The Fortress Hack Attributed To Vulnerabilities In Google Authenticator'S Cloud Sync Function

Retool’s Head of Engineering, Snir Kodesh, has attributed part of the issue to a Google Account cloud synchronization feature introduced in April 2023, referring to it as a “dark pattern” that exacerbated the situation. According to Kodesh, the synchronization of Google Authenticator to the cloud unexpectedly emerged as a novel attack vector, catching them off guard.

This occurred despite their initial implementation of multi-factor authentication, which, unbeknownst to administrators, had silently transformed into single-factor authentication due to a Google update.

The Fortress Hack Attributed To Vulnerabilities In Google Authenticator's Cloud Sync Function
Sources:coingapecoincu
Written by
sevval

Şevval has been actively writing since 2022 and is a third-year mathematics student at Ankara University. Her interest in writing is shaped particularly around innovative technologies such as Web3, artificial intelligence, and blockchain. She closely follows developments in these fields and aims to convey complex topics to readers in a clear and engaging manner. She enjoys combining her mathematical knowledge with technology to create content and strives to raise awareness about the digital world of the future.

Leave a comment

Leave a Reply

Related Articles

India CBI Raids 60+ Locations in Connection with $75.8M Bitcoin Ponzi Scheme

India CBI Raids 60+ Locations in Connection with $75.8M Bitcoin Ponzi Scheme

Circle CEO Calls for Mandatory US Registration for Stablecoin Issuers

Circle CEO Calls for Mandatory US Registration for Stablecoin Issuers

Bitcoin Price Dips and Panic Selling Rises: Largest BTC Sell-Off of the Year

Bitcoin sees major sell-off as short-term holders move 80,000 BTC to exchanges...

Crypto Whales Pour Millions into Hyperliquid (HYPE) Token as Market Uncertainty Persists!

Crypto Whales Pour Millions into Hyperliquid (HYPE) Token as Market Uncertainty Persists!