Hacker claims to have 400 million Twitter accounts on the market

Hacker claims to have 400 million Twitter accounts on the market


YourNextApp could earn an affiliate fee on purchases made by means of hyperlinks on our web site.

A hacker has lately claimed to have the information of 400 million Twitter accounts and is providing it on the market, though safety corporations are working to confirm the information.

The info dump, posted on the Breached hacking discussion board by a person named “Ryushi,” allegedly comprises private and non-private information scraped in 2021 utilizing an API vulnerability that has since been mounted. They’re asking $200,000 for the trove.

Ryushi included pattern information within the submit for some public figures, together with Mark Cuban, Donald Trump Jr., Alexandria Ocasio-Cortez, and others. Electronic mail addresses, names, usernames, follower counts, and telephone numbers are among the many information contained within the person profiles.

The hacker's post in the Breached forum. Source: BleepingComputer
The hacker’s submit within the Breached discussion board. Supply: BleepingComputer

The hacker advised BleepingComputer that they wished to promote the information completely to at least one purchaser and would delete the information afterward. If a purchaser is not discovered, they may promote copies to a number of folks for $60,000 every. Ryushi stated they contacted Twitter however did not obtain a response, seemingly as a result of particular groups throughout the firm have been laid off.

Ryushi confirmed to BleepingComputer that they collected the information utilizing an API bug that Twitter mounted in January 2022. The identical vulnerability was beforehand related to a separate information breach in 2021.

The vulnerability lets an attacker insert lists of telephone numbers and e-mail addresses into the API and obtain related Twitter person IDs in response.

“I gained entry by similar exploit used for five.4m information leak already. Spoke with the vendor of it and he confirmed it was in twitter login circulation”, Ryushi stated. “So, within the verify for duplication, it leaked the userID which i transformed utilizing one other api to username and different data.”

In line with menace intelligence agency Hudson Rock, it is at the moment not doable to totally confirm that there are 400 million customers within the database. Nonetheless, they stated the information itself does look like official.

The right way to keep protected

For max safety, Twitter customers ought to change their account’s e-mail deal with, particularly by utilizing a service resembling Disguise My Electronic mail. It is also vital to not reuse passwords, and generate advanced ones utilizing a password supervisor resembling Bitwarden or iCloud Keychain.

Including an additional layer of safety with two-factor authentication ought to be the following transfer. It requires a particular one-time code to log into an account, along with the username and password. Twitter has directions on how to take action.

Customers also needs to concentrate on emails that look suspicious and keep away from clicking on hyperlinks or opening attachments. For instance, if an e-mail comprises a hyperlink to alter a Twitter password, folks ought to manually navigate Twitter’s web site as an alternative and alter login data in account settings as an alternative.

Related Posts

Closing day: get Apple’s M1 MacBook Air with 16GB RAM, 1TB SSD for $1,199

YourNextApp could earn an affiliate fee on purchases made via hyperlinks on our website. Cyber Monday pricing on Apple’s M1 MacBook Air has returned at B&H Picture,…

Apple halts replace to HomeKit’s new Residence structure

Article Hero Picture YourNextApp might earn an affiliate fee on purchases made via hyperlinks on our web site. Following a number of studies of issues with HomeKit’s…

Apple’s 16-inch MacBook Professional is again on sale for $1,999, plus $80 off AppleCare

YourNextApp might earn an affiliate fee on purchases made by means of hyperlinks on our website. Yr-end offers have launched on Apple’s MacBook Professional 16-inch, with costs…

Finest tech for bicyclists in your life

YourNextApp could earn an affiliate fee on purchases made via hyperlinks on our website. Bicycles do not need to be only a option to get from right…

Apple surging forward in India pill + PC market, with general contraction

YourNextApp could earn an affiliate fee on purchases made by means of hyperlinks on our website. The PC market in India has taken a downwards flip after…

Lowest worth ever: Apple M1 Max MacBook Professional 16-inch (32GB RAM, 1TB SSD) on sale for $2,999

YourNextApp could earn an affiliate fee on purchases made by way of hyperlinks on our website. An unique $500 low cost on Apple’s high-end MacBook Professional 16-inch…

Privacy Policy