BSG utilizes HTTP cookies (and similar or complementary technologies) to 1) make this website safe, functional, and accessible (through the use of mandatory cookies) and 2) understand how you use our website (through the use of optional cookies) in order to improve your experience and to provide you with personalized content.

The information in the cookie text files may be related to your personal preferences or your device and is intended to make the site operate according to your expectations. The information contained in cookies does not usually identify your identity directly but is helpful in providing you with a more personalized user experience.

In accordance with the requirements of the General Data Protection Regulation (GDPR) privacy and security law that governs how the personal data of individuals in the EU may be processed and transferred, we provide you the possibility to prohibit the use of certain types of cookies when you use our website.

Read our Cookie Notice and the Privacy Policy for detailed information on how BGS collects and uses cookies. Please note that prohibiting the use of certain types of cookies may affect your interaction with the website and limit the accessibility of services we offer you. Choose the appropriate category below to learn more and to disable cookies.

Accept All cookies*
*Recommended for comfortable use of the site
Accept only necessary cookies
Accept only selected cookies
Necessary cookies
Social media
Analytics
Marketing

SS7 (Signaling System 7)

What is SS7 (Signaling System 7)?

SS7 (Signaling System 7) is the telephony signaling protocol used by carriers worldwide to route calls and SMS between networks; its known vulnerabilities allow attackers with SS7 access to intercept or reroute SMS traffic.

Designed in the 1970s for a closed circle of trusted operators, SS7 has no built-in authentication between networks. An attacker who buys or rents SS7 access can instruct a carrier to forward a subscriber’s incoming SMS to another number — silently. The best-documented abuse came in 2017, when criminals rerouted German bank customers’ SMS transaction codes via the network of O2 Telefónica and drained accounts. SMS rerouting over SS7 is cheap and invisible to the victim; redirecting a live voice call is far more complex and conspicuous, which is one reason voice OTP is more resistant to signaling-level interception. Businesses cannot patch SS7 themselves, but they can route high-risk codes around it. Example: a bank moves payment confirmations from SMS to voice OTP so a signaling-level SMS redirect yields nothing.

Related terms

Related BSG products

Interested in a special offer?

Ready to reach further?
Let’s talk

I agree to BSG privacy policy
Submit

Useful Materials

Bulk SMS Marketing in 2026: Why Campaigns Now Run on WhatsApp API + SMS Cascade

Bulk SMS alone leaks budget. Verify the list, then run WhatsApp-first with SMS fallback.

One Voice Calls (OVC): Voice OTP vs SMS OTP — Which Is More Secure

SIM swaps jumped 1,055% in a year. Voice OTP takes your riskiest codes off the SMS rail.

Telegram OTP: How Businesses Use Telegram for One-Time Passwords (and When to Upgrade)

Telegram OTP is free — until it silently fails. Know the limits and when to add fallback.