Twitter recently confirmed that its systems suffered a security breach that primarily affected “pseudonymous accounts.” The exploit, first found last January, reportedly allowed the hacker to figure out if an email address or phone number is linked to a Twitter account.
Twitter hack may have targeted secret accounts
The said security vulnerability was reported through Twitter’s bug bounty program last January, the social media company said in a blog post last week. Twitter then updated its code last June in response to address the security issue but noted that it found “no evidence” at the time that the vulnerability was exploited.
That changed, however, when a “press report” revealed that a hacker possibly exploited the vulnerability. Twitter was likely referring to Bleeping Computer’s report last July 22 that revealed a hacker known as “devil” was selling the data collected through the exploit for $30,000.
In devil’s original post, the hacker claimed it collected data from a total of 5,485,636 Twitter users, including “Celebrities, to Companies, randoms, OGs, etc.” Bleeping Computer said in its July report that it was able to verify the accuracy of a “small sample of data” that the hacker presented. It had no way of knowing, though, if the rest of the claimed data from 5.4 million users are all real.
In Twitter’s statement last week, the company implied that the security impacted only “some accounts.” But it emphasized the incident's potential effect's on users with “pseudonymous accounts” or secret accounts. This corroborated what the hacker previously told Bleeping Computer, claiming that they were able to input email addresses and phone numbers to figure out if it is linked to a Twitter account and to identify its Twitter ID.
Twitter’s advice to keep accounts protected
Due to how the exploit worked, Twitter advised users with pseudonymous accounts to avoid using public email addresses and phone numbers. The company said there was no password exposed in the incident, but it still encouraged users to enable two-factor authentication.
Twitter will directly notify affected users. But the social media company added, “We are publishing this update because we aren’t able to confirm every account that was potentially impacted, and are particularly mindful of people with pseudonymous accounts who can be targeted by state or other actors.”
Photo by Akshar Dave on Unsplash


SoftBank Eyes Switch Inc as It Pushes Deeper Into AI Data Center Expansion
Intel’s Testing of China-Linked Chipmaking Tools Raises U.S. National Security Concerns
Adobe Strengthens AI Strategy Ahead of Q4 Earnings, Says Stifel
JD.com Pledges 22 Billion Yuan Housing Support for Couriers as China’s Instant Retail Competition Heats Up
SK Hynix Considers U.S. ADR Listing to Boost Shareholder Value Amid Rising AI Chip Demand
EU Court Cuts Intel Antitrust Fine to €237 Million Amid Long-Running AMD Dispute
Trello Outage Disrupts Users as Access Issues Hit Atlassian’s Work Management Platform
SpaceX Insider Share Sale Values Company Near $800 Billion Amid IPO Speculation
Mizuho Raises Broadcom Price Target to $450 on Surging AI Chip Demand
Microsoft Unveils Massive Global AI Investments, Prioritizing India’s Rapidly Growing Digital Market
Coca-Cola’s Costa Coffee Sale Faces Uncertainty as Talks With TDR Capital Hit Snag
China Adds Domestic AI Chips to Government Procurement List as U.S. Considers Easing Nvidia Export Curbs
Nvidia Develops New Location-Verification Technology for AI Chips
Gulf Sovereign Funds Unite in Paramount–Skydance Bid for Warner Bros Discovery
EssilorLuxottica Bets on AI-Powered Smart Glasses as Competition Intensifies
IBM Nears $11 Billion Deal to Acquire Confluent in Major AI and Data Push
SpaceX Edges Toward Landmark IPO as Elon Musk Confirms Plans 



