Skip to main content
  1. Home
  2. Social Media
  3. News

Hackers who hijacked Twitter CEO Jack Dorsey’s account claim another victim

Add as a preferred source on Google

The hacker group that took over Twitter CEO Jack Dorsey’s account has seemingly claimed another victim: this time, they’ve stolen actress Chloe Grace Moretz’s account. 

The hackers who accessed her account posted about a dozen tweets under her name on Wednesday morning, according to Gizmodo. One tweet contained the hashtag #chucklingSquad, which is the same hashtag that was tweeted from Dorsey’s account when it was hacked on Friday — and the name of the group that took credit for the hack.

Recommended Videos

Moretz, who is a 22-year-old actress best known for her roles in the Kick-Ass movies, has 3.1 million followers on Twitter. The hackers tweeted out expletives and nonsensical phrases, as well as two phone numbers and what they claimed was Dorsey’s social security number.

When Dorsey’s account was hacked last week, the hackers tweeted racial slurs and supposed “intel” about a bomb threat at Twitter’s headquarters. The Chuckling Squad also invited people to join its Discord chat server, which had since been taken down.

Dorsey has 4.2 million followers on Twitter and his account had previously been hacked in 2016.

Even though both accounts had the #chucklingSquad hashtag, it is unknown if the hacks came from the same entity or if someone was copying Dorsey’s hack. The hacked tweets from Moretz and Dorsey have since been deleted. 

The method the hackers used is known as SIM swapping, which convinces carriers to assign a phone number to a new phone that is in the hands of the attackers. In response to the hacks, Twitter said Wednesday afternoon that it was temporarily disabling the ability to tweet via text message.

We’re temporarily turning off the ability to Tweet via SMS, or text message, to protect people’s accounts.

— Support (@Support) September 4, 2019

Reports say that both instances of hacked tweets were sent using Cloudhopper, which was an MMS company that Twitter acquired in 2010. Digital Trends reached out to Twitter to see if the Cloudhopper vulnerability was used to access both Dorsey’s and Moretz’s account, but a spokesperson declined to comment.

Twitter’s official communications account confirmed Dorsey’s hack in a series of tweets on August 30, adding that none of Twitter’s systems were compromised and that the account was secure. 

https://twitter.com/TwitterComms/status/1167591003143847936?s=20

While both of these hacks tweeted mostly nonsense, it’s still troubling that these high-profile Twitter hacks keep happening — especially when some Twitter can use the platform to announce world-changing police.

Update 9/4: Added details about Twitter removing text-to-tweet support.

Allison Matyus
Former Digital Trends Contributor
Allison Matyus is a general news reporter at Digital Trends. She covers any and all tech news, including issues around social…
Instagram is finally giving your old posts a soundtrack do-over
Instagram lets creators refresh old posts without nuking their engagement
Opening settings in Instagram

Instagram is rolling out a Replace Audio feature that lets users change the in-app music attached to feed posts and carousels after they have already been published. The original post stays live throughout the process, preserving its likes, comments, and shares.

Your post keeps all its engagement

Read more
X finally rebuilt its neglected Android app, and it only took a year
X’s Android app was so rough, the company rebuilt the whole thing
X Android app gets a complete overhaul

Android users have spent years receiving the rougher version of X. Now, the company has finally decided that patching the old app was no longer enough. X has released a completely rebuilt Android app following nearly a year of development. Existing users can access it by installing the latest update through the Google Play Store, so there is no separate replacement app to download.

X tore the old foundation out

Read more
New X phishing scam uses fake login alerts to steal your account
Scammers have copied X's own security emails almost pixel for pixel, and people are falling for it.
X app store listing on iPhone

You open your inbox and see an alert claiming someone just logged into your X account from an unfamiliar device. Your first instinct is to click through and lock things down immediately. That instinct is exactly what a new phishing scam is counting on.

As reported by The Guardian, a wave of fake X security emails is currently doing the rounds. They claim a new device has logged into your account and urge you to click a link to reset your password or review app access. 

Read more