feedzop-word-mark-logo
searchLogin
Feedzop
homeFor YouIndiaIndia
You
bookmarksYour BookmarkshashtagYour Topics
Trending
Terms of UsePrivacy PolicyAboutJobsPartner With Us

© 2026 Advergame Technologies Pvt. Ltd. ("ATPL"). Gamezop ® & Quizzop ® are registered trademarks of ATPL.

Gamezop is a plug-and-play gaming platform that any app or website can integrate to bring casual gaming for its users. Gamezop also operates Quizzop, a quizzing platform, that digital products can add as a trivia section.

Over 5,000 products from more than 70 countries have integrated Gamezop and Quizzop. These include Amazon, Samsung Internet, Snap, Tata Play, AccuWeather, Paytm, Gulf News, and Branch.

Games and trivia increase user engagement significantly within all kinds of apps and websites, besides opening a new stream of advertising revenue. Gamezop and Quizzop take 30 minutes to integrate and can be used for free: both by the products integrating them and end users

Increase ad revenue and engagement on your app / website with games, quizzes, astrology, and cricket content. Visit: business.gamezop.com

Property Code: 5571

Home / Technology / Convenient SMS Logins Leave Accounts Vulnerable

Convenient SMS Logins Leave Accounts Vulnerable

28 Jan

•

Summary

  • SMS sign-in links are insecure, exposing personal data.
  • Weak tokens allow attackers to guess valid links.
  • Many services ignore reported security weaknesses.
Convenient SMS Logins Leave Accounts Vulnerable

Online services increasingly rely on SMS sign-in links for easier account access, bypassing traditional passwords. However, this convenience comes at a significant security cost. SMS messages are transmitted unencrypted, making them vulnerable to interception and exposure.

A recent technical review examined millions of SMS messages linked to hundreds of digital services. It found that authentication systems treating SMS-delivered URLs as sufficient proof of identity allow unauthorized access to private user information. Some services also used weak tokens, enabling attackers to guess valid links and access accounts.

Furthermore, the review noted that some links remained active for extended periods, increasing the risk window. Mismatches in data requests also led to overfetching personal information. Despite contact from researchers, most providers failed to acknowledge or fix these widespread weaknesses, leaving millions of users exposed.

Disclaimer: This story has been auto-aggregated and auto-summarised by a computer program. This story has not been edited or created by the Feedzop team.
SMS sign-in links are delivered via unencrypted text messages, making them vulnerable to interception. Authentication systems that accept these links as sufficient proof of identity can allow unauthorized access to sensitive personal information.
Yes, some services use weak tokens in their SMS links, which attackers can exploit to guess valid URLs and gain access to other users' accounts.
Many online services have not adequately addressed reported SMS security weaknesses, with most offering no public response or corrective actions, despite significant user data exposure risks.

Read more news on

Technologyside-arrow
trending

Padma Awards: Unsung heroes honoured

trending

Mumbai Metro Line 11

trending

Border 2 box office success

trending

Australian Open Heat Suspends Play

trending

MPESB Police Answer Key 2026

trending

Arne Slot on Mo Salah

trending

BBL 2026 Qualifier prediction

trending

Man wins £79,000 Range Rover

trending

Samsung Galaxy S26 Ultra

You may also like

Apple Eyes E2EE for iPhone-Android Chats

16 Jan • 69 reads

article image

Aadhaar Now Rules Indian Railways Ticket Bookings

13 Jan • 76 reads

article image

India Considers New Smartphone Security Rules

12 Jan • 84 reads

article image

Solver: Haptic Buttons for Smartphones

5 Jan • 108 reads

article image

Millions Affected in Massive Aflac Data Breach

24 Dec, 2025 • 157 reads

article image