200 million Twitter customers’ personal info, together with their electronic mail addresses, was put on the market after a breach uncovered 400 million customers’ personal info within the final week of December 2022.
The hacker behind the December breach had earlier demanded $200,000 from Twitter in a bid to return the stolen knowledge and warned if the demand shouldn’t be fulfilled, the information will probably be launched free of charge. The most recent set of information posted on the hacker discussion board has been traced again to the identical breach from December 2022.
— Hudson Rock (@RockHudsonRock) January 3, 2023
Researchers at Privateness Affairs confirmed that the leaked knowledge set on the hacker discussion board is similar from December. The 200 million quantity, on this case, resulted from the removing of duplicates. The launched knowledge set doesn’t comprise cellphone numbers. The researchers warned that these knowledge units might be used to provoke social engineering or “doxing” campaigns.
The information set was initially 63GB, however after eradicating duplicates and compressing the information, the dimensions of the newest knowledge set was diminished to 4GB and free to obtain.
The hacker additionally famous that the evaluation of authentic file dates and account creation dates “strongly counsel” that this was collected from early November 2021 by December 14, 2021.
Associated: LastPass knowledge breach led to $53K in Bitcoin stolen, lawsuit alleges
Many customers on Twitter demanded that the social media platform appears into safety as these hacks put activists and whistleblowers in peril.
I went to vary my electronic mail deal with and Twitter is not working. This hack places activists and whistleblowers in peril. https://t.co/5SrSejgvO6
— Ian Linkletter (@Linkletter) January 5, 2023
A few of the common and identified names and entities embody Sundar Pichai, Donald Trump Jr., SpaceX, CBS Media, the NBA and the WHO. The information breach vulnerability has been patched now. However, tracing again to the hack, it appears the identical vulnerability was used for an additional exploit in July 2022.