Twitter's barn door has been fully, and aggressively closed — it just so happens to have slammed shut on a hell of a lot of people in the process.
Twitter confirmed Thursday that, amidst an ongoing compromise of internal systems that was out of control Wednesday, it took the unprecedented step of locking out all users that had changed — or had even attempted to change — their password in the last 30 days. And, unfortunately for that untold number of users, it's not exactly clear when they're going to get access to their accounts again.
"Out of an abundance of caution, and as part of our incident response yesterday to protect people's security, we took the step to lock any accounts that had attempted to change the account's password during the past 30 days," read a Thursday afternoon statement from Twitter's support account.
We reached out to Twitter in an effort to determine just how many accounts have been affected by this move, however, a Twitter spokesperson declined to provide a number. It's likely a lot, though. In addition to all of the people who normally change their password over the course of a month, a least some percentage of Twitter's over 300 million monthly users (Twitter now reports its user base as "monetizable Daily Active Usage," which is different) likely took the completely reasonable precaution of attempting to change their password Wednesday as the scale of Twitter's compromise became apparent.
This Tweet is currently unavailable. It might be loading or has been removed.
This affected at least one Mashable reporter, Senior Features Writer Rebecca Ruiz, who, as of this writing, is still locked out of her account.
That Twitter, in addition to preventing verified accounts from tweeting for several hours, felt the need to completely freeze account access for a huge swath of its users speaks to the severity of the hack.
Speaking of which, screenshots purporting to be of a Twitter backend admin tool began circulating on the internet yesterday. The possibility that outsiders gained access to an internal Twitter tool aligns with the company's recent public-facing statements on the incident.
"We detected what we believe to be a coordinated social engineering attack by people who successfully targeted some of our employees with access to internal systems and tools," the company announced late Wednesday.
When asked whether the screenshots are legitimate, and related to Wednesday's incident, an otherwise communicative Twitter spokesperson would not offer comment. Independent reporting by Motherboard, and by Krebs on Security, however, suggests the screenshots are of an actual backend Twitter panel that was involved in Wednesday's hack.
Dan Tentler, the executive founder of the security company Phobos Group, explained over email that, given what looks to be the severity of the breach, things could have been much worse — both for Twitter, its users, and everyone else.
"To have attackers gain access like this and use it to push a bitcoin scam? That telegraphs a lot about the nature of the attackers," he wrote. "If I was [James Bondvillain] Mr. Blofeld in this role-play, and I got this kind of access? Let's just say 'scamming people out of bitcoin' wouldn't even be on the same planet in terms of a list of what to do."
"If I was [James Bond villain] Mr. Blofeld in this role-play, and I got this kind of access? Let's just say 'scamming people out of bitcoin' wouldn't even be on the same planet in terms of a list of what to do."
Twitter, for its part, wants all those users who are now locked out of their accounts to know that it hasn't forgotten about them.
SEE ALSO: Obama and Biden's Twitter accounts were compromised. It could have been way worse.
"We're working to help people regain access to their accounts ASAP if they were proactively locked," the company announced Thursday afternoon. "This may take additional time since we're taking extra steps to confirm that we're granting access to the rightful owner."
And, hey, while incredibly frustrating, being temporarily locked out of an account is better than having it lost to, or abused by, hackers. But still, it would have been nice if Twitter had managed to close that barn door just a tad bit sooner.
Copyright © 2023 Powered by
Twitter's panicked response to the bitcoin scam locked out many users-啜英咀华网
sitemap
文章
4715
浏览
9
获赞
61648
Normalize sending audio messages instead of text messages
Sometimes when life gets you down you just need to record an audio message of yourself screaming intPride may be over, but here's how to celebrate LGBTQ Wrath month
Hope everyone had fun during LGBTQ Pride month! Please be advised that happiness is now over. QueerHands on with the Google Pixel 3 and Pixel 3 XL
It’s one thing to soak up every leak about Google’s new Pixel 3 and Pixel 3 XL Android pDisney remixer Pogo under fire for homophobic rant on YouTube
Famed for his Disney-themed remixes, YouTuber Pogo has recently been under fire for making homophobiEstimating CPU Performance Using Amdahl's Law
If you are in the market for a new computer, or thinking of upgrading your current system, choosingNetflix consumes 15 percent of the world’s internet traffic, report says
Video is taking over the internet, but it's never been more obvious than when you look at who's hoggGood news: The raccoon that scaled a building was released back into the wild
Few things bring the internet together like lost animals. A raccoon captured all of our hearts on TuLyft acquires Blue Vision Labs to help develop self
Uber may have stalled out with self-driving cars, but Lyft is just picking up speed.The ride-hailingNo, this doesn't mean that Joe Biden owns antifa.com
Supporters of President Donald Trump went nuts online Wednesday after they discovered that the domaiWhat you need to know about the creepy 'the 1975..com' Google bug
Need further proof that the technology is watching your every move in order to know its enemy beforeThe most memorable moments of Elon Musk so far in 2018.
Few people have had a wide-ranging -- and weird -- 2018 as SpaceX and Telsa head Elon Musk. He's maYouTube lets you watch a video and browse the site at the same time
From the "why the hell did this take so long" department: YouTube has launched a new "Miniplayer" feGoogle buys Fitbit for $2.1 billion
Apple Watch needs to watch out.Well, that remains to be seen, but the competition is about to get aMan buys massive photo of a bridge that's right outside his window
Impulse purchases are almost never a good idea -- especially when there are drinks involved. StuartHow will the Measure app affect dick pics? An investigation.
What, did you not think people were going to use the iPhone's new Measure app to measure their dicks