• About
  • Team
  • Contact
  • Core Values
  • Editorial Standards
  • Terms of Service
  • Privacy Policy
  • Affiliate Disclosure
Resist the Mainstream
No Result
View All Result
STORE
  • Politics
  • US
  • COVID
  • Media Watch
  • World
  • Story of Hope
  • Opinion
NEWSLETTER
Get Ad-Free Login Manage Account
  • Politics
  • US
  • COVID
  • Media Watch
  • World
  • Story of Hope
  • Opinion
No Result
View All Result
Resist the Mainstream
No Result
View All Result

Twitter Announces Security Flaw After 5.4 Million Accounts Reportedly Exposed

RTM Staff by RTM Staff
August 6, 2022
0
Twitter Announces Security Flaw After 5.4 Million Accounts Reportedly Exposed

Solen Feyissa, CC BY-SA 2.0 , via Wikimedia Commons

RELATED

FBI Would Not Let Trump Attorneys in Rooms as Agents Raided Mar-A-Lago, Warrant Focused on NARA: Source

Andrew Cuomo: ‘DOJ Must Immediately Explain the Reason for Its Raid’

Twitter announced on Aug. 5 that it found a security flaw in its system that enabled a threat actor to learn about whether a phone number or an email address was associated with an existing Twitter account, after 5.4 million Twitter accounts were reportedly exposed by a threat actor.

ADVERTISEMENTS
ON
OFF

In a security advisory, Twitter said that in January 2022, it received a report about a vulnerability that enabled a person to submit an email address or phone number to Twitter’s systems and learn about any existing Twitter account that was associated with the provided data.

Advertisements

The report was submitted by a user named “zhirinovskiy” on HackerOne, a vulnerability coordination and bug bounty platform. The user described the vulnerability issue and how it could be exploited. Five days later, Twitter acknowledged the matter and rewarded zhirinovskiy with a $5,040 bounty for the report.

“This bug resulted from an update to our code in June 2021,” Twitter said on Aug. 5 of the security flaw. “When we learned about this, we immediately investigated and fixed it. At that time, we had no evidence to suggest someone had taken advantage of the vulnerability.”

The announcement continued: “In July 2022, we learned through a press report that someone had potentially leveraged this and was offering to sell the information they had compiled. After reviewing a sample of the available data for sale, we confirmed that a bad actor had taken advantage of the issue before it was addressed.”

RestorePrivacy, a digital privacy group, reported in late July that a person who used the alias “devil” said on a hacking forum called “Breached Forums” that they were selling data gathered from some 5.4 million Twitter users. The person said the data involves the Twitter accounts of celebrities, companies, and others.

Advertisements

Bleeping Computer said in July it spoke to the person, who said they used a vulnerability to gather the data in December 2021. The data was on sale for $30,000 and that there were interested buyers. It is unclear whether the data has been sold.

Twitter said it will be “directly notifying” Twitter account owners that were confirmed to have been affected.

“We are publishing this update because we aren’t able to confirm every account that was potentially impacted, and are particularly mindful of people with pseudonymous accounts who can be targeted by state or other actors,” the company said.

Read the full story here.

Scroll down to leave a comment and share your thoughts.

TRENDING TODAY

Original Fox News Channel Anchor Uma Pemmaraju Dies at 64
Media Watch

Original Fox News Channel Anchor Uma Pemmaraju Dies at 64

by Gary Ray
August 9, 2022
Trump Tells 2022 CPAC He’ll ‘Never Ever Stop Fighting For You’
Politics

Details Emerge About What FBI Agents Were Searching for in Raid on Trump Home, Report Says

by John Symank
August 8, 2022 - Updated On August 9, 2022

This is an excerpt from The Epoch Times.

© 2022 Resist the Mainstream
Get Ad-Free Login Manage Account
No Result
View All Result
  • Newsletter
  • Store
  • Politics
  • US
  • COVID
  • Media Watch
  • World
  • Story of Hope
  • Opinion
  • About
  • Team
  • Contact
  • Core Values
  • Editorial Standards
  • Terms of Service
  • Privacy Policy
  • Affiliate Disclosure

© 2022 Resist the Mainstream

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?