Fun

How Hackers Exploited Twitter’s VPN Problems, Obtained God Mode and Took Over Accounts

News Feed - 2020-10-26 04:10:54

How Hackers Exploited Twitter"s VPN Problems, Obtained God Mode and Took Over Accounts


An investigation by the New York State Department of Financial Services has revealed how the great Twitter hack in July happened. A total of 130 high-profile, celebrity accounts were compromised and many were used to tweet about a bitcoin giveaway scam. How Twitter Was Hacked


The New York State Department of Financial Services (NYDFS) released its Twitter investigation report last week. It explains how the massive Twitter hack on July 15 happened, resulting in many high-profile accounts being accessed and used to tweet about a bitcoin giveaway scam.


A NYSE-listed technology company with a market cap of $40 billion, Twitter has more than 330 million total monthly active users and over 186 million daily active users, including over 36 million (20%) in the U.S., the NYDFS detailed.


The hack began on July 14 when one or more hackers called several Twitter employees, claiming to be calling from the IT department’s help desk about Twitter’s VPN, which a number of employees reported having problems with. “Employees had frequent problems with the VPN connections to the network,” the report details.


Twitter’s VPN problem ballooned when the company shifted to remote working in March due to the Covid-19 outbreak, which put a strain on the company’s technology infrastructure, resulting in frequent VPN problems. “The hackers took advantage of these issues and pretended to be calling from Twitter’s IT department about a VPN problem,” the NYDFS stated, elaborating: The hackers’ claims were far more credible – and ultimately successful – because Twitter’s employees were all using VPN connections to work and routinely experiencing VPN problems that required IT’s assistance.


The hackers directed the employees to a phishing website that looked identical to the legitimate Twitter VPN website and was hosted by a similarly named domain. “As the employee entered their credentials into the phishing website, the hackers would simultaneously enter the information into the real Twitter website. This false log-in generated an MFA notification requesting that the employees authenticate themselves, which some of the employees did,” the NYDFS explained. “While some employees reported the calls to Twitter’s internal fraud monitoring team, at least one employee believed the hackers’ lies.”


The report details that Twitter maintains “internal account management tools” to manage a range of user account issues, which the hackers gained access to. A number of authorized Twitter employees have a username and password to access these internal account management tools. According to the report: Overall, 130 Twitter user accounts were compromised during the Twitter hack. Of those, 45 accounts were used to send tweets. Twitter believes that for up to 36 of the 130 targeted accounts, the hackers also accessed DM inboxes.




During its investigation, the NYDFS conducted a survey and learned that 15 cryptocurrency companies blocked transfers to the hackers’ addresses posted on Twitter, and seven did not. Four crypto companies actively blocked their users’ attempts to send BTC to the hackers’ bitcoin addresses. In particular, the NYDFS found: Coinbase blocked approximately 5,670 transfers, valued at approximately $1,294,000. Square blocked 358 transfers, valued at approximately $51,000. Gemini blocked two transfers, valued at approximately $1,800. Bitstamp blocked one transfer, valued at approximately $250.


What do you think about this Twitter hack? Let us know in the comments section below. Hash Watch: 73% of Bitcoin Cash Blocks Mined With BCHN, Poloniex Launches Fork Futures NEWS | 30 mins ago Billionaire Paul Tudor Jones Sees Massive Upside in Bitcoin, Like Investing in Apple or Google Early NEWS | 1 day ago Tags in this story hack twitter, how to hack twitter, twitter accounts hacked, twitter bitcoin, twitter celebrity accounts, twitter hack, twitter hacker, twitter investigation, twitter vpn problem


Image Credits: Shutterstock, Pixabay, Wiki Commons Use Bitcoin and Bitcoin Cash to play online casino games here. Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article. Read disclaimerShow comments

News Feed

Helen Partz21 minutes agoSouth Korean city to seize crypto from thousands of tax evaders: ReportCity authorities of Cheongju are looking to seize cryptocurrency from anyone who owes at least $750 in crypto taxes to the g
William Suberg9 hours agoBTC price hits 2-month high amid bet Bitcoin will break $32K ‘soon’Bitcoin consolidates below $30,000, with the BTC price weekly close of interest to market analysts.3881 Total views14 Total
Trump Admin Sanctions North Korean Hackers Behind Titanic Bitcoin Thefts
The Trump administration sanctioned North Korea"s Lazarus Group, which raked in $571 million from Bitcoin thefts. | Source: ShutterstockNorth Korea’s notorious state-sponsore
Trezor says phishing, not SIM swap, compromised X account
Amaka Nwaokocha13 hours agoTrezor says phishing, not SIM swap, compromised X accountSatoshiLabs revealed that it suspects the compromise to be a sophisticated and premeditated phishing attack planned by hackers over seve
Meme Token Economy Jumps Close to 10% Higher After Dogecoin Spike Fuels the Pack
Meme Token Economy Jumps Close to 10% Higher After Dogecoin Spike Fuels the Pack The top meme tokens by market capitalization saw a significant jump on Monday after being fueled by
Bitcoin-Friendly Portugal Welcomes Refugees From Ukraine’s Crypto Sector, Report Reveals
Bitcoin-Friendly Portugal Welcomes Refugees From Ukraine’s Crypto Sector, Report Reveals With a war raging in their homeland, thousands of Ukrainians, including many involved in
Bitcoin halving puts focus on crypto education initiatives
Shiraz Jagati9 hours agoBitcoin halving puts focus on crypto education initiativesWith Bitcoin gearing up for its next deflationary jolt, here are some initiatives aimed at fostering a deeper understanding of the digital
MEXC Global Now Exceeds 10 Million Users; The Meaning Behind the Upgrade Color to ‘Ocean Blue’
MEXC Global Now Exceeds 10 Million Users; The Meaning Behind the Upgrade Color to "Ocean Blue" press release PRESS RELEASE. As of September 2022, MEXC has finally reached a respecta
Robert Kiyosaki Says Real Estate, Stocks, Gold, Silver, Bitcoin Markets Are Crashing — ‘Millions Will Be Wiped Out’
Robert Kiyosaki Says Real Estate, Stocks, Gold, Silver, Bitcoin Markets Are Crashing — "Millions Will Be Wiped Out" The famous author of the best-selling book Rich Dad Poor Dad,
BTC price blasts through $70K — 5 things to know in Bitcoin this week
William Suberg1 hour agoBTC price blasts through $70K — 5 things to know in Bitcoin this weekBitcoin bulls waste no time attempting BTC price discovery after the highest weekly close in history.2572 Total views2 Total
William Suberg13 hours agoBitcoin price gets new $25K target as SEC decision day boosts GBTCBitcoin analysis flags liquidity waiting in the wings above and below the current BTC price range, while GBTC erases more of its
Zhiyuan Sun7 hours agoBitcoin Ordinals see resurgence from Binance listingThe ORDI token, which was not developed by the creator of Bitcoin Ordinals, has surged by 41% in the past 24 hours.2458 Total views12 Total shares