Hackers: We Stole Data From 3,615 Trump Mobile Customers | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #hacker


A new hacking group claims to have stolen data on over 3,000 Trump Mobile customers by infecting an employee at a related company with malware. 

Straight Arrow News first reported on the alleged hack, for which a group called BYOD has claimed responsibility. Last week, the gang’s site on the dark web published a file claiming to contain the personal data of 3,615 customers. “Trump Mobile was informed they had been breached, they then replied with ‘We have no team to handle this’ and that anyone who hacks them [is] a terrorist,” BYOD alleged on their website. 

There are signs that the breach is real. Three people in the leaked file confirmed to PCMag that they had interacted with Trump Mobile in the past. We were able to reach out to them because the leaked file contained their name, phone number, email address, and physical address. One customer was also surprised that the leaked file accurately showed they had canceled their Trump Mobile service for the “30 Day Unlimited Talk Text Data” plan. 

(Credit: BYOD)

BYOD told PCMag that they “ratted a Liberty Mobile employee,” a Florida-based MVNO known to power Trump Mobile. Ratting refers to installing a Remote Access Trojan on the target’s device, creating a way for a hacker to remotely hijack their computer. 

The infection gave the cybercrime gang “no permissions except to look up prepaid numbers, so we pivoted to subdomains, which Trump Mobile was exposed, and decided to exfil that,” BYOD said in an email. “We only stole 3,615 customers due to the fact that’s all they have using their MVNO (different from the prepaid phone orders, these are people using the carrier),” BYOD added. The group also says it has “live access to the dashboard,” apparently TrumpMobile.com.

The gang says the stolen data shows “people who are currently or were previously using the MVNO as their cellular network.” But one affected customer told us she never successfully signed up for Trump Mobile or for a preorder for the long-delayed Trump-branded phone, even though her information appears to be in the file. 

“They wouldn’t sell me the phone because my email was already in their system,” the customer said, who added that Trump Mobile’s customer service “sucked.” Still, she did give the company her email address and phone number, which would explain how her information ended up in BYOD’s leaked file. A Trump Mobile customer support rep also called her using the same number.

Recommended by Our Editors

So far, neither Trump Mobile nor Liberty Mobile has responded to a request for comment. But it’s not the first time Trump Mobile has faced a security issue. In May, two YouTubers sounded the alarm about an exploitable software flaw on TrumpMobile.com that could be used to leak customer information, including names, phone numbers, and physical addresses. Trump Mobile later fixed the issue, saying it found no evidence its systems were ever compromised. 

Still, there’s some speculation that BYOD —which has only been active for a week— may have stolen the data using the same exploit. Last month, another hacking group, Endzone, claimed to have stolen data from 4,000 Trump Mobile users.

In response, a rep for BYOD said: “No, we have no affiliation; a member from our group just knows a few people behind Endzone, so there could’ve been a hiccup regarding Trump Mobile & Eteam, although we have published both first… However, we wish them the best, of course.”

About Our Expert





Source link

...........