Business CircleBusiness Circle
  • Home
  • AI News
  • Startups
  • Markets
  • Finances
  • Technology
  • More
    • Human Resource
    • Marketing & Sales
    • SMEs
    • Lifestyle
    • Trading & Stock Market
What's Hot

Bill Maher on how the left turned higher education into worthless indoctrination centers. Joe Rogan warns Democrats they must admit how woke policies failed

August 23, 2026

Treasury’s recent moves in the bond and currency markets add up to ‘soft-form financial repression’

August 23, 2026

MacBook Neo, Air and Pro at Their Lowest Prices

August 23, 2026
Facebook Twitter Instagram
Monday, August 24
  • Advertise with us
  • Submit Articles
  • About us
  • Contact us
Business CircleBusiness Circle
  • Home
  • AI News
  • Startups
  • Markets
  • Finances
  • Technology
  • More
    • Human Resource
    • Marketing & Sales
    • SMEs
    • Lifestyle
    • Trading & Stock Market
Subscribe
Business CircleBusiness Circle
Home » Twitter shut down a major security flaw but not before a hacker exposed 5.4 million users
Technology

Twitter shut down a major security flaw but not before a hacker exposed 5.4 million users

Business Circle TeamBy Business Circle TeamAugust 8, 2022Updated:August 21, 2025No Comments4 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Twitter shut down a major security flaw but not before a hacker exposed 5.4 million users
Share
Facebook Twitter LinkedIn Pinterest Email


TL;DR: Twitter acknowledged a knowledge breach which will have unmasked pseudonymous person accounts. Whereas it did not float any precise numbers, earlier studies indicated a vulnerability uncovered greater than 5.4 million Twitter IDs and related telephone numbers and electronic mail addresses. Twitter patched the safety gap in January, however a “dangerous actor” claims he used it the month earlier than to scrape the info.

Final week, Twitter confirmed that hackers had compromised some accounts on its platform. Builders created the flaw with a June 2021 replace for its Android shopper, that allowed a nasty actor to affiliate person accounts with electronic mail addresses and telephone numbers. Twitter discovered of the vulnerability by means of its bug bounty program in January 2022 and patched it instantly pondering that no person had been affected.

Nevertheless, final month BleepingComputer reported it had discovered a database on a hacker discussion board containing the telephone numbers and electronic mail addresses related to over 5.4 million Twitter accounts.

“Hiya, at this time I current you information collected on a number of customers who use Twitter by way of a vulnerability. (5485636 customers to be actual),” the hacker who calls himself “satan” stated in his put up. “These customers vary from Celebrities, to Corporations, randoms, OGs, and many others [sic].”

Restore Privateness notes that satan needs to get not less than $30,000 for the stolen information and stated that he’d already had some bites from events.

A safety researcher and bug bounty hunter going by “zhirinovskiy” says the flaw lets anybody receive the Twitter ID of any person by submitting a telephone quantity/electronic mail. The exploit works even when a person’s account is ready to be undiscoverable within the settings. It additionally requires no authentication — only a handful of code.

“The bug exists because of the proccess of authorization used within the Android Consumer of Twitter,” zhirinovskiy stated, who reported the flaw by means of HackerOne. “Particularly within the procces of checking the duplication of a Twitter account [sic].”

Basically, satan would feed the system telephone numbers or emails and it might return whether or not these had been related to Twitter IDs. From there it is a pretty easy matter to create a profile from publicly obtainable posts and different info.

Zhirinovskiy reported the flaw to Twitter on January 1, and builders issued a repair on January 13. Nevertheless, satan claims he collected the info in December 2021 earlier than it was patched. Some have instructed that satan and zhirinovskiy are the identical individual and that he’s attempting to money out on each ends. Satan denies these allegations with virtually an excessive amount of vigor — as if he has one thing to cover.

“I do not wish to white hat in hassle who reported it on H1 [sic],” he instructed BleepingComputer. “I suppose lots of people try to attach him to me, I’d be pissed if I used to be him. So I cant stress this sufficient I’ve nothing to do w him nor H1.”

Twitter’s affirmation doesn’t point out the variety of compromised person accounts, however it’s fairly clear we’re coping with the identical vulnerability that zhirinovskiy reported and satan exploited. The corporate stated that it might notify affected customers, presumably by means of their now uncovered electronic mail tackle. It significantly famous nameless accounts.

“When you function a pseudonymous Twitter account, we perceive the dangers an incident like this may introduce and deeply remorse that this occurred. To maintain your identification as veiled as doable, we advocate not including a publicly identified telephone quantity or electronic mail tackle to your Twitter account.”

Though passwords weren’t compromised, Twitter advises any customers with considerations to make use of two-factor authentication apps or {hardware} safety keys to guard their accounts.

Picture credit score: Discussion board Submit by BleepingComputer, Satan Chat by Restore Privateness





Source link

exposed flaw Hacker major Million Security shut Twitter users
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Business Circle Team
Business Circle Team
  • Website

Related Posts

MacBook Neo, Air and Pro at Their Lowest Prices

August 23, 2026

Own Microsoft Office 2019 on one PC for $19.97 (reg. $229)

August 23, 2026

Pixel Camera 11 gets new Quick access dials and Launch mode

August 23, 2026

Doodle generative compositions in your browser with Musical Spirograph

August 23, 2026
LATEST UPDATES

Bill Maher on how the left turned higher education into worthless indoctrination centers. Joe Rogan warns Democrats they must admit how woke policies failed

August 23, 2026

Treasury’s recent moves in the bond and currency markets add up to ‘soft-form financial repression’

August 23, 2026

MacBook Neo, Air and Pro at Their Lowest Prices

August 23, 2026

State Fairs – America Under the Big Top

August 23, 2026

Can You Buy a Rental Property With Only $5,000? (Rookie Reply)

August 23, 2026

One of the most counterintuitive findings from the first wave of AI productivity research is that the biggest gains often go to the people who were weakest to begin with — one study found productivity jumped 34% for novice workers while experienced employees barely improved, suggesting AI may compress skill advantages that once took years to build.

August 23, 2026

Subscribe to Updates

Get the latest sports news from SportsSite about soccer, football and tennis.

Business, Finance and Market Growth News Site

Important Pages
  • Advertise with us
  • Submit Articles
  • About us
  • Contact us
Recent Posts
  • Bill Maher on how the left turned higher education into worthless indoctrination centers. Joe Rogan warns Democrats they must admit how woke policies failed
  • Treasury’s recent moves in the bond and currency markets add up to ‘soft-form financial repression’
  • MacBook Neo, Air and Pro at Their Lowest Prices
© 2026 BusinessCircle.co
  • Privacy Policy
  • Terms and Conditions
  • Cookie Privacy Policy
  • Disclaimer
  • DMCA

Type above and press Enter to search. Press Esc to cancel.