Company
Date Published
Author
Twilio
Word count
379
Language
English
Hacker News points
None

Summary

Twilio became aware of an incident regarding Voxox, a wholesale SMS provider, in which an unsecured database was accessible to the internet and exposed details of SMS messages and the companies that sent them. The vulnerability was uncovered by security researcher Sébastien Kaul. Trust is a top priority for Twilio, and upon learning of this incident, they triggered their incident response process to examine its impact on customers. The investigation found that the Twilio API had no direct connection to Voxox and that no messages submitted via the Twilio API were routed directly through Voxox. However, due to downstream SMS routing, it cannot be guaranteed that no customer's SMS message did not traverse the Voxox service. Twilio considers trust a top company priority and invests significant effort in ensuring their infrastructure and SMS vendors are secure and reliable. The incident is part of their commitment to transparency, and they encourage customers with questions or concerns to contact them.