03.01.2022 Views

Cyber Defense eMagazine January Edition for 2022

Cyber Defense eMagazine January Edition for 2022 CDMG is fully owned and operated by team Miliefsky in our 10th anniversary. We believe the letter Q stands for 'Q'uestion. Are you Questioning your InfoSec posture right now? The cybercriminals are not resting. They are asking themselves this very Q.uestion... Will you stay one step ahead of Cyber Father Time this year? Learn new ways to protect your family, job, company & data. December Cyber Defense eMagazine: Cyber Deception Month is behind us...Identity Defense Protection month has arrived. Defeat Cyber Father Time! Cyber Defense Magazine January Edition for 2022 in online format #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, US Editor-in-Chief, Pieruligi Paganini, International Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES RSA Conference 2022 has moved to June 6-9, 2022 so we have something awesome in store planned to bridge Q1/Q2 See you at RSA Conference 2022 - Our 10th Year Anniversary - Our 10th Year @RSAC #RSACONFERENCE #USA - Thank you so much!!! - Team CDMG CDMG is a Carbon Negative and Inclusive Media Group.

Cyber Defense eMagazine January Edition for 2022

CDMG is fully owned and operated by team Miliefsky in our 10th anniversary. We believe the letter Q stands for 'Q'uestion. Are you Questioning your InfoSec posture right now? The cybercriminals are not resting. They are asking themselves this very Q.uestion...

Will you stay one step ahead of Cyber Father Time this year? Learn new ways to protect your family, job, company & data. December Cyber Defense eMagazine: Cyber Deception Month is behind us...Identity Defense Protection month has arrived. Defeat Cyber Father Time!

Cyber Defense Magazine January Edition for 2022 in online format #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, US Editor-in-Chief, Pieruligi Paganini, International Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

RSA Conference 2022 has moved to June 6-9, 2022 so we have something awesome in store planned to bridge Q1/Q2

See you at RSA Conference 2022 - Our 10th Year Anniversary - Our 10th Year @RSAC #RSACONFERENCE #USA - Thank you so much!!! - Team CDMG

CDMG is a Carbon Negative and Inclusive Media Group.

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Know your customer<br />

As spam and phishing messages are on the rise messaging service providers need to ensure more than<br />

ever that its business customers are complying to rules and regulations. This includes communicating<br />

compliance rules to brands, ensuring the legitimacy of businesses, understanding the use cases and go<br />

through proper approval processes <strong>for</strong> new service offerings.<br />

These compliance ef<strong>for</strong>ts have been underway <strong>for</strong> several years now in the US when it comes to Short<br />

Code services (5-or 6-digit numbers that are used <strong>for</strong> sending messages). This year mobile operators<br />

have launched additional compliance requirements <strong>for</strong> message traffic that is sent on long numbers<br />

(standard 10-digit phone numbers). Those type of message traffic has been flowing largely unregulated<br />

in the US <strong>for</strong> the last 10 years and has been subjected to spamming and phishing attacks by bad actors.<br />

Not anymore, as now every entity who seeks to send SMS text traffic in the US is required to register its<br />

brand and campaign be<strong>for</strong>e being able to obtain a long number and send message traffic. The new<br />

regulatory regime is called 10DLC (10 Digit long code). It is the responsibility of SMS providers like<br />

Clickatell to en<strong>for</strong>ce those rules and make sure its customers are fully compliant.<br />

Similar to how compliance is managed in the SMS world messaging service providers as well as the<br />

large chat app providers such as WhatsApp or Apple are also en<strong>for</strong>cing strict registration and verification<br />

rules. Messaging service provider are required to help qualify and register campaigns and services <strong>for</strong><br />

its business customers on channels such as WhatsApp or Apple. In addition, they provide end to end<br />

service security via message encryption and manage authentication, verification and other security<br />

related services <strong>for</strong> its business customers.<br />

Spotting a Fraudulent Text Message<br />

The first step in identifying a fraudulent message is understanding the different types of phone numbers<br />

used to deploy messages. Most legitimate text messages are sent via short code numbers that contain<br />

5-6 digits and are primarily used only by large enterprise companies due to high costs. As mentioned,<br />

short code numbers have been strictly regulated <strong>for</strong> many years making it extremely rare to receive<br />

a spam text or phishing attack from a short code number.<br />

On the other hand, if you receive a message from a normal 10-digit phone number claiming to be your<br />

bank, network provider, or retailer you’ve engaged with, you need to be cautious. The message could<br />

still come from a non-compliant long number that was obtained be<strong>for</strong>e the introduction of stringent<br />

registration requirements allowing only established brands to send messages via 10DLC regulation. If<br />

the message is coming from an 1800 number, it will have also have gone through a verification process<br />

and can be considered relatively safe.<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>January</strong> <strong>2022</strong> <strong>Edition</strong> 57<br />

Copyright © <strong>2022</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!