Friend.tech Upgrades Security Amid SIM-Swap Assaults

Friend.tech Upgrades Security Amid SIM-swap Assaults

In an effort to stop an influx of SIM-swap attacks targeting its users, the team behind the decentralized social media network Friend.tech has incorporated a new security feature.

“You can now add a 2FA password to your Friend.tech account for additional protection if your cell carrier or email service becomes compromised,” the team wrote on X (previously Twitter) on October 9.

Users of Friend.tech will be prompted to add a second password when logging into new devices.

Friend.tech added, “Neither the friendtech nor Privy teams can reset these passwords, so please use care when using this feature.”

Since September, there have been multiple SIM-swap assaults against Friend.tech users.

Froggie.eth was among the first Friend.tech users compromised by a SIM-swap attack on September 30, prompting others to remain vigilant.

Within a week, more Friend.tech users had an estimated 109 Ether (ETH) worth approximately $172,000 taken from them. Just days later, another four individuals were targeted over 24 hours, and another $385,000 worth of Ether was stolen.

On October 4, Friend.tech made a security upgrade that allowed users to add or remove different login methods to reduce the danger of SIM-swap attacks.

Multiple observers criticized Friend.tech for delaying the implementation of the solution.

One user said, “Finally,” while another said, “took you long enough.”

0xCaptainLevi, a prominent creator on Friend.tech, was more optimistic, emphasizing that 2FA is a “big deal” and can help drive the social media platform to unprecedented heights:

Jason Yanowitz, founder of Blockworks, disclosed one of the SIM-swap attack methods in an X thread on October 8. The process entails sending a text message to the user with a number change request, to which the user can reply “YES” to approve the change or “NO” to reject it.

If the user responds “NO,” Friend.tech sends the user an actual verification code and prompts them to transmit it to the scammer’s number.

“If we do not hear a response within 2 hours,  the change will proceed as requested,” a follow-up message shows.

“In reality, if I sent the code, my account would get wiped,” he said.

According to DefiLlama, the total value locked on Friend.tech is presently $43.9 million, down 15.5% from its all-time high of $52 million on October 2.

Friend.tech Upgrades Security Amid SIM-swap Assaults
Change in total value locked on Friend.tech since Aug. 10. Source: DefiLlama.

Read Previous

3Commas Faces Crypto Bot Security Breach

Read Next

Fraud Texts Cost Hong Kong Binance Users $450K