- Twitter said late Wednesday that its investigation had uncovered an operation that targeted Twitter employees to gain access to internal systems and tools.
- The investigation comes after dozens of high-profile Twitter accounts, including that of Apple, Amazon CEO Jeff Bezos, Microsoft founder Bill Gates, Democratic presidential candidate Joe Biden and former President Barack Obama, were hacked on Wednesday and displayed tweets telling followers to send bitcoin to a specific address.
More than a dozen high-profile Twitter accounts, including the corporate account of Apple, Amazon CEO Jeff Bezos, Microsoft founder Bill Gates, Democratic presidential candidate Joe Biden and former President Barack Obama, were hacked on Wednesday and displayed tweets telling followers to send bitcoin to a specific address.
Tesla CEO Elon Musk was the first high-profile account to be hacked, posting a tweet early Wednesday afternoon promising to double any payments sent to the bitcoin address.
Twitter said late Wednesday that its investigation had uncovered an operation that targeted Twitter employees to gain access to internal systems and tools.
"We detected what we believe to be a coordinated social engineering attack by people who successfully targeted some of our employees with access to internal systems and tools," the company tweeted from a support account.
"We know they used this access to take control of many highly-visible (including verified) accounts and Tweet on their behalf."
Twitter CEO Jack Dorsey said that the company feels terrible about the hacked accounts.
Twitter shares were down more than 3% in extended trading.
Other accounts hacked included former New York City Mayor Mike Bloomberg, musicians Kanye West and Wiz Khalifa, Berkshire Hathaway Chairman Warren Buffett, reality TV star Kim Kardashian, the Cash App corporate account, and Uber's corporate account. The bitcoin-related tweet was Apple's first ever tweet, although the account had placed ads in the past.
Rachel Tobac, the CEO of cybersecurity firm SocialProof Security, told NBC News that the attack was likely the largest Twitter had ever seen. "We are lucky the attackers are going after bitcoin (money motivated) and not motivated by chaos and destruction."
Teresa Payton, a former White House chief information officer and current CEO of Fortalice Solutions, said that she expects Twitter to provide a full report detailing how and why these accounts were hacked. She also warned that information such as direct messages may have been stolen from the affected accounts and could be released or used in the future.
"They're going to need to apologize to the VIPs and to the individuals who were defrauded and fell for the scam," Payton told CNBC. "The next thing they're going to need to do is to conduct a thorough and transparent investigation, and they're going to need to share what they can about who the attackers were and how they pulled this off."
Mel Shakir, a managing director at DreamIt Ventures and a veteran of the IT security industry, said that high-profile users like those attacked on Wednesday should be using as many security options as possible, including biometric authentication like fingerprints, or using hardware keys instead of text messages for two-factor authentication. "Passwords are inherently insecure. But Twitter has provided all the security options that are available," Shakir said.
Earlier on Wednesday, several cryptocurrency accounts simultaneously linked to a phishing site called CryptoForHealth. Cameron Winklevoss, cofounder of Gemini, a cryptocurrency market, said in a tweet: "ALL MAJOR CRYPTO TWITTER ACCOUNTS HAVE BEEN COMPROMISED." In the past, one popular cryptocurrency scam on Twitter involved attackers changing their display name and avatar to match Elon Musk, then they would reply to his tweets pretending to be him asking for bitcoin. But on Wednesday, the accounts tweeting about bitcoin were real.
All hacked accounts on Wednesday were verified. The tweets on Wednesday appeared to have been sent through a web browser accessing Twitter.com, not an app or third-party software. Around 3:15 PT, Twitter blocked all verified accounts from tweeting in an attempt to regain control. They were reactivated at 5:41 PT.
Here's a sampling of the tweets. Many have been deleted.
NBC News reporter Kevin Collier and CNBC's Lora Kolodny contributed to this report.
Clarification: The Wendy's tweet, while similar to the false tweets, was not identical and appears to have been a joke issued by the account itself.
Source: Read Full Article