• Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
Tech News, Magazine & Review WordPress Theme 2017
  • Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
No Result
View All Result
  • Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
No Result
View All Result
Blog - Creative Collaboration
No Result
View All Result
Home Internet

Cryptocurrency scammers attack Twitter in insider breach

July 16, 2020
Share on FacebookShare on Twitter

High-profile Twitter accounts including those of tech billionaires Jeff Bezos, Bill Gates and Elon Musk, politicians Joe Biden and Barack Obama, rapper Kanye West and reality star Kim Kardashian are among many “blue tick” verified accounts hacked in a major breach of the social media platform’s systems, and hijacked to promote a cryptocurrency scam.

Messages posted to the compromised accounts promised people they’d receive double their money back if they paid into a Bitcoin wallet, which rapidly swelled to a total dollar value of over $100,000 as the scam entrapped its victims.

Although the malicious tweets were swiftly removed, Twitter took several hours to bring the situation under control, at one point suspending the ability of every verified account on its books to use the platform.

As of approximately 4am UK time on 16 July, Twitter appeared to have restored normal access to its service. In a series of tweets, a spokesperson said the accounts had likely been compromised through what is known as an insider breach.

“We detected what we believe to be a coordinated social engineering attack by people who successfully targeted some of our employees with access to internal systems and tools,” it said.

This appeared to confirm claims made by sources with alleged links to the hack, who said they had paid an insider at Twitter for access to an internal administration tool, as per Vice’s Motherboard.

Screenshots posted widely of this tool appear to show its legitimate use is to allow Twitter to take control of accounts, alter their details, and even suspend them, presumably as a moderation feature to combat abuse on the platform.

Malicious activity

Twitter said: “We know they used this access to take control of many highly visible (including verified) accounts and Tweet on their behalf. We’re looking into what other malicious activity they may have conducted or information they may have accessed and will share more here as we have it.

“Once we became aware of the incident, we immediately locked down the affected accounts and removed Tweets posted by the attackers.

“We also limited functionality for a much larger group of accounts, like all verified accounts (even those with no evidence of being compromised), while we continue to fully investigate this.

“This was disruptive, but it was an important step to reduce risk. Most functionality has been restored but we may take further actions and will update you if we do,” said the spokesperson.

“We have locked accounts that were compromised and will restore access to the original account owner only when we are certain we can do so securely.

“Internally, we’ve taken significant steps to limit access to internal systems and tools while our investigation is ongoing. More updates to come as our investigation continues,” said Twitter.

The scam deployed by the hackers is a relatively commonplace one; cryptocurrencies such as Bitcoin are frequently used by cyber criminals at least in part because they use encryption to secure the transaction process, which is conducted through anonymous hash codes over a peer-to-peer network.

However, the breach does raise questions for Twitter over the wider security and public safety implications – particularly in light of US president Donald Trump’s use and abuse of the platform.

In an open letter to Twitter head Jack Dorsey, US senator Josh Hawley, a Republican who represents the state of Missouri in Washington DC, wrote: “I am concerned that this event may represent not merely a coordinated set of separate hacking incidents but rather a successful attack on the security of Twitter itself.

“As you know, millions of your users rely on your service not just to tweet publicly but also to communicate privately through your direct message service. A successful attack on your system’s servers represents a threat to all of your users’ privacy and data security.”

California congressman John Garamendi, a Democrat, expressed similar concerns, writing on Twitter: “I don’t have any Bitcoin to offer you but I do have grave concerns about what today’s hack of Twitter means for the safety of our elections and other critical infrastructure from hostile actors. Now more than ever we have to strengthen our nation’s cyber security.”

Next Post

Best aptX Low Latency Headphones in 2020

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

No Result
View All Result

Recent Posts

  • The US just pulled the plug on ALL foreign-made Wi-Fi routers
  • Samsung scrapped plans for a new S Pen for the Galaxy S27 Ultra
  • Tecno taps OpenClaw to supercharge its Ella AI assistant with new automation features
  • This Android brand will soon use OpenClaw to mimic one of Pixel 10’s most-hyped features
  • Clean, restock, refresh — all with one $15 Sam’s Club membership

Recent Comments

    No Result
    View All Result

    Categories

    • Android
    • Cars
    • Gadgets
    • Gaming
    • Internet
    • Mobile
    • Sci-Fi
    • Home
    • Shop
    • Privacy Policy
    • Terms and Conditions

    © CC Startup, Powered by Creative Collaboration. © 2020 Creative Collaboration, LLC. All Rights Reserved.

    No Result
    View All Result
    • Home
    • Blog
    • Android
    • Cars
    • Gadgets
    • Gaming
    • Internet
    • Mobile
    • Sci-Fi

    © CC Startup, Powered by Creative Collaboration. © 2020 Creative Collaboration, LLC. All Rights Reserved.

    Get more stuff like this
    in your inbox

    Subscribe to our mailing list and get interesting stuff and updates to your email inbox.

    Thank you for subscribing.

    Something went wrong.

    We respect your privacy and take protecting it seriously