AT&T store employee caught facilitating phone number hijacks against customers

AT&T store worker gets 16 months inside for SIM-swap side hustle

Can’t trust anyone these days…

:open_mouth:

That’s why 2FA should never be done as OTP codes sent as text messages. SIM-swap attacks are also carried out in other ways i.e. other than a dodgy insider. It’s just a risky and insecure way of doing 2FA.