Twitter accounts compromised


Recommended Posts

A number of Twitter accounts have been hacked, with users getting emails from the social media site that direct them to a password reset page.

Twitter hasn?t confirmed the scope of the breach, but said users who received emails should go to the link and reset their passwords.

While Carolyn Penner, a spokeswoman for Twitter, told Reuters there had not been a security breach, a number of users said they believe their accounts had been hacked.

Twitter also said that if users can?t log onto their accounts, they should go to the twitter.com site and click on "settings." The Android Twitter and iOS apps do not permit you to change passwords, so you must go to the website.

Many Twitter users got this message in their emails Thursday morning: ?Twitter believes that your account may have been compromised by a website or service not associated with Twitter. We?ve reset your password to prevent others from accessing your account.?

The message goes on to instruct the individual to change the password and cautions the user about what kind of passwords they should be using (i.e., not old ones).

Users are also asked to:

* Always check that your browser?s address bar is on an https://twitter.com website before entering your password. Phishing sites often look just like Twitter, so check the URL before entering your login information.

* Avoid using websites or services that promise to get you lots of followers. These sites have been known to send spam updates and damage user accounts.

* Review your approved connections on your applications page at https://twitter.com/settings/applications. If you see any applications that you don?t recognize, click the "revoke access" button.

Twitter acknowledges possible breaches

Because Twitter hasn?t posted any statements about the breach itself, many users were skeptical about the email message.

To clear up the confusion, Twitter posted this statement on its status page ? owning up to the fact that it believed accounts had been breached, and that it had gone ahead and created new passwords for users.

"We?re committed to keeping Twitter a safe and open community. As part of that commitment, in instances when we believe an account may have been compromised, we reset the password and send an email letting the account owner know this has happened along with information about creating a new password. This is a routine part of our processes to protect our users

"In this case, we unintentionally reset passwords of a larger number of accounts, beyond those that we believed to have been compromised. We apologize for any inconvenience or confusion this may have caused."

In other words, your account may or may not have been compromised, but the bottom line remains the same: Reset your password.

If you want to play it safe, don?t click on the link to the password page. Type it out yourself ? that way you can be sure you?re not being redirected to a fake page.

http://www.cbc.ca/news/technology/story/2012/11/08/twitter-passwords.html

Link to comment
https://www.neowin.net/forum/topic/1118265-twitter-accounts-compromised/
Share on other sites

What can 'they' do with a Twitter account ? :huh:

I don't even remember my password ...

Posting in your name sounds bad enough to me.

Wow that's surprising.

Nah, not really.

I don't expect any database somehow connected to the internet to be remotely safe anymore nowadays.

I've gone almost completely password manager as opposed to rememberable passwords.

If I can't log on somewhere else because I frankly don't know jacksh*t about my password, that's something I'm willing to "risk" in return for knowing my identity is quite a bit safer.

I have a password protected database on my iPhone that syncs with my Mac's keychain (all passwords I save either in programs or for websites and secure notes, built-into OS X).

Perfect solution.

Glassed Silver:mac

Mine was hacked, but I literally never use it (don't even know why I had it), so I reset the password then deleted the account...

I don't even remember my original password for it, pretty sure it was my least secure password though (the one I use on multiple places that I DGAF if someone hacks it).

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • A coalition of publishers sued OpenAI and Microsoft over scraping content without consent by Hamid Ganji Image via Depositphotos.com AI companies often rely on readily available internet content to train their chatbots and provide users with instant answers. This method of AI training is fast and relatively inexpensive, but using a website’s content without permission or compensation is not something publishers like to see, and this is exactly why Microsoft and OpenAI are now being sued. As reported by Bloomberg, a group of publishers that collectively own nearly 400 newspapers has filed a lawsuit against OpenAI and Microsoft. The coalition argues that the two companies scraped their content to build AI chatbots like ChatGPT and Copilot without paying any compensation. The complaint, filed in the U.S. District Court for the Southern District of New York, argues that while AI products have generated billions of dollars in market value using publishers’ work, none of that value has been shared with the publishers. The plaintiffs are seeking statutory damages and injunctive relief for alleged copyright infringement and violations of the Digital Millennium Copyright Act. “Defendants systematically and secretly crawled the Publishers’ websites—including content behind paywalls and other access restrictions—and copied the Publishers’ articles, stories, and other original works onto their own servers without authorization,” the complaint states. The publishers also described the AI boom as a “death knell for local journalism” if AI companies that scrape content for free are not held accountable. Former New Jersey Attorney General Matthew Platkin and his law firm, Platkin LLP, are representing the publishers. “Our models empower innovation, are trained on publicly available data, and are grounded in fair use,” OpenAI spokesperson Drew Pusateri told Bloomberg. This is not the first lawsuit involving the unauthorized use of publishers’ content by AI firms, but it is one of the largest coalitions ever formed against the free use of content by AI chatbots. In 2024, OpenAI and Microsoft also faced a similar lawsuit from eight newspapers that claimed AI products were benefiting from their content without permission.
    • Rufus alternative Ventoy now supports Windows 11's mandatory update, fixes major boot bug by Sayan Sen While Microsoft has its own official Media Creation Tool used for making bootable USB media, there are some popular third-party utilities as well which offer additional options like bypassing system requirements, Microsoft Account creation, and more. One of these is Ventoy, and the software has received its latest update today. In fact, the app actually got a slew of updates over the last couple of days, three version releases in total, to be specific. The first release, version 1.1.13, was pulled as there was some unspecified error in the update, and as such, the corrected version 1.1.14 was pushed out. Following that on very short notice, 1.1.15 was published as well. For those unfamiliar, Ventoy is an open-source utility that lets users create a bootable USB drive once and then simply copy ISO, WIM, IMG, VHD, or EFI files onto it without repeatedly formatting the drive. It supports both legacy BIOS and UEFI boot modes, Secure Boot, and a wide range of operating systems, making it one of the most versatile tools in the category. The biggest change in version 1.1.14 is an updated Secure Boot shim file aimed at resolving the UEFI CA 2023 issue, which is basically a compatibility problem that has affected Secure Boot environments on some systems. If you recall, we reported about severe boot issues on HP devices following the release of updated Secure Boot 2023 keys. For anyone who may not be aware, back in early 2024, Microsoft announced that it was updating Secure Boot keys as they were going to become 15 years old in 2026, which is also when they are set to expire. As such, the new 2023 certificates have been rolling out with the newest Windows 11 updates. Updated boot manager and Secure Boot certificates are crucial for protection against malware like bootkits. These are mandatory updates. Alongside that, the VentoyPlugson graphical plugin configurator was updated in sync with the release. The update also introduces a new VTOY_SECURE_BOOT_POLICY option within the Global Control plugin, giving users more flexibility in managing Secure Boot behavior. Ventoy has also received a fix for a startup issue when Secure Boot was disabled. Microsoft does officially allow users to boot systems without Secure Boot as long as the PC is Secure Boot capable. The full changelog is given below: Update secure boot shim file to solve the UEFI CA 2023 issue. The new release use a new CA, so you need to enroll the new key for the first boot time. VentoyPlugson update synchronously. Global control plugin add a VTOY_SECURE_BOOT_POLICY option. Fix the boot issue when Secure Boot is disabled in the UEFI firmware. You can download the latest version of the app here on Ventoy's official GitHub repo or from Neowin software stories.
    • Windows 11 is fine, no issues on any of the machines I've run it on since release. The stricter security requirements are a good thing, sometimes the baseline needs to change and people will winge, but it is what it is. Happened with the move from 9x to NT - broke compatability Happened with XP SP2 when security started to become a serious consideration Certainly happend with Vista that brought in UAC, the concept of not running as admin (something that has been the norm in Linux/Unix from pretty much the start) and a completely new driver stack. Windows 11 will probably get looked back at as the point where even consumer and SMB IT was dragged kicking and screaming into a somewhat secure by default configuration.
    • Bluestacks has been emulating Android on Windows for fifteen years. It's janky and riddled with ads though, so WSA looked like it was going to be a huge improvement over the emulator experience. Too bad Microsoft dropped the ball on that.
    • Classic. China would be nothing without Western, Japanese, and South Korean technology.
  • Recent Achievements

    • Rookie
      krychek57 went up a rank
      Rookie
    • Grand Master
      Jaybonaut went up a rank
      Grand Master
    • One Year In
      Philsl earned a badge
      One Year In
    • Dedicated
      Scoobystu earned a badge
      Dedicated
    • First Post
      Tom Schmidt earned a badge
      First Post
  • Popular Contributors

    1. 1
      +primortal
      441
    2. 2
      +Edouard
      172
    3. 3
      PsYcHoKiLLa
      134
    4. 4
      Michael Scrip
      78
    5. 5
      Xenon
      77
  • Tell a friend

    Love Neowin? Tell a friend!