City
Epaper

5.4 mn users' data exposed online as Musk reveals Twitter 2.0

By IANS | Updated: November 28, 2022 15:35 IST

New Delhi, Nov 28 As Elon Musk goes gaga over Twitter 2.0 which will be the 'Everything App', ...

Open in App

New Delhi, Nov 28 As Elon Musk goes gaga over Twitter 2.0 which will be the 'Everything App', at least 5.4 million Twitter user records, stolen via an internal bug, have been leaked online on a hacker forum.

In addition to the 5.4 million records for sale online, there were an additional 1.4 million Twitter profiles collected using a different Twitter application programming interface (API) that have reportedly been shared privately among a few people.

The massive data consists of scraped public information as well as private phone numbers and email addresses that are not meant to be public, reports Bleeping Computer.

The data expose came at a time as Musk revealed his Twitter 2.0 The Everything App, saying that the new user signups are at an all-time high and the company is now actively recruiting.

Security expert Chad Loder first broke the news on Twitter and was suspended soon from the platform.

"I have just received evidence of a massive Twitter data breach affecting millions of Twitter accounts in the EU and the US. I have contacted a sample of the affected accounts and they confirmed that the breached data is accurate. This breach occurred no earlier than 2021," Loder had posted on Twitter.

The data containing non-public information was stolen using a Twitter API vulnerability fix in January this year.

This data was collected in December 2021 using a Twitter API vulnerability disclosed in the HackerOne bug bounty programme, the report said on Sunday.

Most of the data consisted of public information, such as Twitter IDs, names, login names, locations, and verified status.

It also included private information, such as phone numbers and email addresses.

Musk or Twitter were yet to comment on the report.

Pompompurin, the owner of the Breached hacking forum, told BleepingComputer that "they were responsible for exploiting the bug and creating the massive dump of Twitter user records after another threat actor known as 'Devil' shared the vulnerability with them," the report mentioned.

As hackers released 5.4 million records online, an even larger data dump has allegedly been created using the same vulnerability, according to the report.

"We were told that it consists of over 17 million records but could not independently confirm this," said the report.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Tags: Bleeping ComputerChad loderusNew DelhiTwitterThe new delhi municipal councilTwitter twitterTwitter sevaDelhi south-westTwitter cmoTwitter inc.
Open in App

Related Stories

CricketVirat Kohli Spotted at Delhi Airport Ahead of India's Tour of Australia, Video Goes Viral

InternationalUS Government Shutdown: US Embassy in India’s X Account to Pause Regular Updates Until Full Operations Resume

MaharashtraMaharashtra Dy CM Eknath Shinde’s X Account Hacked Amid India-Pakistan Asia Cup, Pakistani and Turkish Flags Posted

CricketIND-W vs AUS-W, 3rd ODI: Australia Women Win Toss, Opt to Bat Against India in Series Decider; Check Playing XIs

CricketWhy Is India Women’s Cricket Team Wearing a Pink Jersey in IND-W vs AUS-W 3rd ODI 2025 Match?

Technology Realted Stories

TechnologyDark chocolate, berries may help boost memory and relieve stress: Study  

TechnologyUIDAI rolls out fully digital Aadhaar update system with new fees, digital KYC and more

TechnologyCovid during pregnancy may raise autism, motor disorder risk in kids by age 3

TechnologyMahindra Auto records highest-ever SUV sales in Oct, overall sales up 26 pc

TechnologyGST 2.0 booster: UPI sees 20.70 billion transactions in Oct worth Rs 27.28 lakh crore