Hacker News new | ask | show | jobs
by spenvo 17 days ago
This old post of mine may be of interest, where I point out: "After a bit of threat modeling, it becomes apparent that future spearphishing robocalls may not directly con you, but rather “farm” your voice data by asking you benign questions, and use that to train a voice model to penetrate more deeply into your network." A lot of this writing has been on the wall forever and many (I'm sure otherwise smart people in) mission critical industries like banking, ISPs, and more refused to even acknowledge the risks.

2021 - "Despite the prevalence of deepfake audio tech, banks and ISPs rush ahead with “voice print” authentication" https://keydiscussions.com/2021/12/07/despite-the-prevalence... ends with a section called "The next crisis: robocalls that spoof the voices of victims at scale"

1 comments

Do not answer calls from random numbers. When has that ever been a benefit?
Telcos need to implement STIR/SHAKEN in a binding way and it needs to be fully integrated into iOS/Android's UI. Spammers call from spoofed numbers, even numbers of, say, local schools (or from other people in your business) - so, if you get a call from a school and you've got kids, would you pick up? A couple of years ago I got a text that was "sent" from my boss (he didn't send it), etc.. The numbers aren't random.