May 5, 2025
Trending News

More than five million Twitter users’ data was publicly available

  • November 30, 2022
  • 0

This data includes both public information and phone numbers with email addresses that should not be made public. The vulnerability that led to the leak already solved. It

This data includes both public information and phone numbers with email addresses that should not be made public. The vulnerability that led to the leak already solved. It allowed anyone to come up with a unique Twitter ID (almost equivalent to getting the account username) from a phone number/email address without any authentication, even if the user had this action disabled in their privacy settings.

what is known

The leak became known in August last year. At first, it offered the hacker an archive containing the collected data. 30,000 dollars (though two buyers were reported paying less than this amount), but even then, experts cautioned that the data will likely be released for free in the future. The predictions came true.

  • Breached, owner of the hacker forum known as the Pompompurin, told reporters this responsible for handling the error and creating a large data dump. users.
  • It also confirmed that this is the same data sold in August, which includes profile details. 5,485,635 Twitter users.
  • It was also revealed that in addition to this archive, information collected using another API about 1.4 million users blocked on Twitter was also offered for sale.
  • As a result, the total number of affected Twitter accounts containing personal information is already It’s approaching 7 million.
  • Pompompurin says the second litter is not openly sold, but given to only a few people.

The editors of Bleeping Computer reviewed a data sample from France containing 1,377,132 phone numbers. Journalists confirmed phone numbers are valid.

everything could be worse

Bleeping Computer warns that another, even larger data dump was created using the vulnerability in question. may contain information about tens of millions of profiles Twitter includes phone numbers (collected using the same API bug) and public information: verified status, account names, Twitter ID, bio, and display name.

Pompompurin said he does not know who created this new dump, which proves that the API vulnerability in question was exploited by other attackers.

Source: 24 Tv

Leave a Reply

Your email address will not be published. Required fields are marked *

Exit mobile version