Sounds fun, right!
Swinnen found that all the three biggies use 2FA (Two-Factor Authentication).
To deploy the 2FA, these tech companies send short codes via SMS to their users.
The number would register an incoming call and bill these companies.
Neat way to swindle the tech cos!
Swinnen has already reported the flaw to Microsoft, Google, and Facebook.
you’re able to read the full PoCon his blog.
source: www.techworm.net