Skip to main content

Twitter says up to 8 accounts had all their data downloaded during its giant hack suggesting the hackers were after more than just Bitcoin

* Twitter gave an update late on Friday on its investigation into the highly visible hack of dozens of verified accounts on Wednesday. * Twitter said 130 accounts were targeted, of which 45 had their passwords reset and tweets sent by the hackers. * Up to eight accounts also had their data fully downloaded by the hackers. None were Verified accounts, the company said. * Visit Business Insider's homepage for more stories. The hackers who hijacked dozens of high-profile Twitter accounts this week may have had a second, less visible purpose. The hack took place on Wednesday when the hackers successfully gained access to accounts belonging to public figures, including Barack Obama, Joe Biden, Elon Musk, Bill Gates, and Kim Kardashian, as well as some company accounts like Apple and Uber. Hijacking these accounts, the hackers tweeted out a Bitcoin scam, asking followers to send Bitcoin to a specific wallet address and promising to send back double the amount. Twitter said on Friday that it believed 130 accounts were affected by the hack, and that only a "small subset" actually tweeted anything. Later that same day in a blog post, Twitter offered some more detail. "As of now, we know that they accessed tools only available to our internal support teams to target 130 Twitter accounts. For 45 of those accounts, the attackers were able to initiate a password reset, login to the account, and send Tweets," Twitter said. But sending tweets to a Bitcoin scam doesn't appear to have been the hackers' only objective. Out of the 130 compromised accounts, Twitter says up to eight had their data fully downloaded by the hackers using the "Your Twitter Data" tool, allowing users to download all the data relating to their account, including their private messages. Twitter said none of these eight accounts were verified, suggesting they may not have been any of the high-profile celebrity or company accounts that tweeted links to the Bitcoin scam. However, some of the hijacked accounts were popular but unverified accounts (e.g. the popular @TheTweetOfGod). Twitter gave no details on which accounts these were or what they might have in common. Numerous reports have linked the attack with a community of hackers obsessed with so-called "OG" accounts with super-short Twitter handles. Cybersecurity journalist Brian Krebs reported that hours before the Bitcoin links started being tweeted on Wednesday, a handful of OG accounts, including "@6," were also hijacked. How did they do it Twitter also provided more detail about how the hackers managed to crack into its systems. Twitter said the hackers had managed to gain access to an internal company tool using a "coordinated social engineering attack," on Wednesday. Social engineering is a term which means hackers manipulate, trick, or convince their target to hand over access to a system, rather than technically hacking. "The attackers successfully manipulated a small number of employees and used their credentials to access Twitter's internal systems, including getting through our two-factor protections," Twitter said in its Friday blog. It did not say how the employees were manipulated. On Thursday, Motherboard reported that a source who took part in the hack claimed the attackers paid a Twitter employee. In its blog, the company said it would be implementing extra training to guard against social engineering. Twitter says it is still investigating the attack and is working with law enforcement. The FBI is looking into the hack. The company said it is also restoring access to the account holders who were locked out while it sought to reestablish control of the situation. At least one affected account appears to have gone back to its owner, as Tesla's Elon Musk started tweeting again late on Friday. SEE ALSO: Twitter says 'social engineering' led to the massive hack that targeted high-profile accounts like Barack Obama and Jeff Bezos. Here's what the technique involves and how to avoid it. Join the conversation about this story » NOW WATCH: Why thoroughbred horse semen is the world's most expensive liquid
https://bit.ly/2WA6YQn

Popular posts from this blog

A full breakdown of what channels you get with every Sling TV package, plus all the add-ons

  * Sling is one of the most affordable cord-cutting services on the market, offering two packages —  Orange and Blue — with 30+ channels starting at $30 a month or combined for $45 a month. * Orange offers the Disney Channel and ESPN, while Blue offers a slate of Fox channels, NBC, Bravo, and Discovery. Both Orange and Blue offer CNN, TBS, Food Network, and BBC America. * You can also add on multi-channel packages, like Sports Extras, Kids Extras, or News Extras, starting at $5 a month. Premium add-ons, like Showtime, Starz, and Epix, are also available for an additional monthly charge.  * If you're new to Sling TV, you can receive a free 14-day trial for a limited time. * Here's a complete breakdown of the channels offered on each Sling package.    If you're hoping to get the most bang for your buck once you cut the cord with your cable subscription, Sling is one of the most affordable live streaming services on the market.  The service has two packages with ...

Here's an exclusive look at the pitch deck London fintech Lanistar used to raise $19 million at a $190 million valuation

* London-based fintech startup Lanistar has raised a £15 million ($19 million) funding round from Milaya Capital.  * Founded in 2019, Lanistar is building a personal financial management platform that will launch later in 2020.  * "We're expecting a huge amount of growth upon our launch and have already seen strong interest among our sign ups," Gurhan Kiziloz, founder and CEO of Lanistar, told Business Insider. * Visit Business Insider's homepage for more stories.  The coronavirus lockdown in the UK has brought the importance of managing money into sharp relief. A recent study from Money.com shows that 71% of UK households have saved cash during lockdown, and, with uncertainty about jobs and the economy looming, money management is now front of mind for many. Lanistar, a banking platform with a focus on personal finance, is one company offering tools for consumers to better manage their money. It has just raised a £15 million ($19 million) funding round from Mil...

Why an early exec quit unicorn food delivery startup Deliveroo to launch a food business in the middle of a pandemic

* A former Deliveroo exec has launched a market food hall startup in the middle of COVID-19. * Dan Warne was managing director of the unicorn startup until 2019, but has now launched Sessions Market as a community food hall concept to rejuvenate UK towns after the pandemic. * Warne says he hopes to bring his experience from Deliveroo, particularly about customer behavior, to the analogue world of food halls. * The first venue, Shelter Hall on Brighton seafront, launches July 4. * Visit Business Insider's homepage for more stories. On Saturday, the UK's bars, restaurants, and cinemas will fling their doors open to customers for the first time since a strict lockdown commenced in late March. Given continued public health concerns around the coronavirus pandemic, it might be unwise to open a new food business right now. But Dan Warne, a former high-level executive at British unicorn startup Deliveroo, has launched Sessions Market, a series of community-orientated food hal...