Watch out for this insanely easy, non-technical way someone could take control of your email
Jun 19, 2015, 21:51 IST
Many people think hacking requires years of technical learning. But sometimes the most destructive kind of malicious digital behavior takes no coding skill whatsoever.Take this method for gaining access to someone's email address, recently posted on Symantec's blog. It describes a way to easily reset an unknowing victim's email password. And all that is needed is the email address in question and its owner's cell phone number.Here's how it works:
- An attacker can try to log in to a victim's email address. The attacker can then say he or she forgot the password and, if two-step authentication is in place, ask the email provider to text a code to the cell phone to reset the password.
- Once this is done, the attacker can then send the victim another text asking for the code. The attacker's text would look something like this: "This is Google. There has been unauthorized activity on your account. Please reply with your verification code."
- If the victim unknowingly replies to the attacker's text with the code, the email address is forfeited.