Skip to main content

Twitter offers more details on how hackers cracked its internal systems

Twitter has shared another update on its investigation into the major hack that targeted numerous high-profile accounts on its platform on July 15.

In a blog post and series of tweets, the company said the perpetrators began by targeting a small number of employees through a phone spear phishing attack. This involves a hacker calling a target and pretending to be a trusted person to extract specific information that ultimately enables them to gain entry to an internal computer system.

“A successful attack required the attackers to obtain access to both our internal network as well as specific employee credentials that granted them access to our internal support tools,” Twitter said in its blog post. “Not all of the employees that were initially targeted had permissions to use account management tools, but the attackers used their credentials to access our internal systems and gain information about our processes.”

It said that this knowledge “then enabled them to target additional employees who did have access to our account support tools. Using the credentials of employees with access to these tools, the attackers targeted 130 Twitter accounts, ultimately Tweeting from 45, accessing the DM inbox of 36, and downloading the Twitter Data of 7.”

Targeted accounts included those of prominent political figures such as former President Barack Obama and former Vice President Joe Biden, as well as the likes of Tesla and SpaceX CEO Elon Musk, Microsoft co-founder Bill Gates, and celebrity Kanye West.

The company said that although its internal tools, controls, and processes are constantly being updated and improved, it’s now “taking a hard look” at how it can make them more secure.

Mindful of the concern the attack has caused among the Twitter community, the company insisted, “Everyone at Twitter is committed to keeping your information safe. We recognize the trust you place in us, and are committing to earning it by continued open, honest and timely updates anytime an incident like this happens.”

The scam involved a fake tweet that appeared on the targeted accounts that encouraged followers to send payments to a Bitcoin wallet, with hundreds of people doing just that. When Twitter spotted the attack, it locked down the affected accounts and removed the bogus tweets.

Last week the incident took a darker turn when it emerged that the hackers had been able to download data linked to some of the accounts, and also managed to obtain access to the direct messages of others.

Twitter has promised to provide a more detailed report on the incident once law enforcement has made more progress with its investigation and after the company has completed work to further safeguard the microblogging service.

Editors' Recommendations

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
More Twitter users will soon see fact-check notes on tweets
The Twitter app on the Sony XPeria 5 II.

Birdwatch, Twitter's community fact-checking pilot program, is expanding and getting a few updates. And for users in the U.S. that means more of them will be seeing a few tweets in their timelines that feature notes which add context to the tweets themselves.

On Wednesday, the official Twitter account for the bird app's Birdwatch program posted a series of tweets announcing its expansion.

Read more
Twitter says it’s fixed Monday night’s service outage
A stylized composite of the Twitter logo.

UPDATE: Twitter says it's resolved the issue that impacted its web-based service for around three hours on Monday evening. Many users around the world were unable to access the platform during the outage, though the mobile apps appeared to continue working without any issues. In a tweet posted at about 10:15 p.m. ET, the company said: "We've fixed this and Twitter for web should now be back to normal."

https://twitter.com/TwitterSupport/status/1564435516409483266

Read more
Breaking down the Twitter whistleblower allegations and how it affects the Musk takeover
Jack Dorsey sits in front of a Twitter logo.

On Tuesday, The Washington Post published an extensive report about a Twitter whistleblower who alleges that the social media company's executives have misled, well, just about everyone (but especially federal regulators and Twitter's own board of directors), about its own security issues. The whistleblower complaint details quite a few alleged serious problems at Twitter, including security issues and a lack of resources to fully address disinformation. Notably, the complaint also mentions Twitter's spam and bot issues. If you've been following along with the Elon Musk Twitter takeover saga, you know that ascertaining the true number of bots on the bird app has been a particular roadblock for Twitter's acquisition.

In July, the complaint was filed with two agencies (the Securities and Exchange Commission (SEC) and the Federal Trade Commission (FTC), as well as the Department of Justice. And the complaint wasn't filed by just anybody. The whistleblower was none other than Twitter's former head of security, Peiter Zatko. Zatko is also a well-respected hacker himself, also known as "Mudge."

Read more