For dissidents around the globe,War Archives Twitter remains the tool of choice for speaking out against their repressive governments.
With that in mind, it's easy to see why today's announcement from the social media company is so troubling. Twitter, in a Monday blog post and corresponding statement, announced it had discovered that "bad actors" with possible state-sponsored connections had found a way to tie phone numbers to Twitter accounts en masse.
In other words, a hacker using this exploit could potentially reveal the identity of a person tweeting under a pseudonym who has their account tied to a phone number. Or, alternatively, it's worth remembering that determining the phone number connected to an account is often a crucial step in hacking it.
"On December 24, 2019 we became aware that someone was using a large network of fake accounts to exploit our API and match usernames to phone numbers," reads the Twitter blog post. "While we identified accounts located in a wide range of countries engaging in these behaviors, we observed a particularly high volume of requests coming from individual IP addresses located within Iran, Israel, and Malaysia."
With Saudi Arabia's documented real-world harassment of dissidents, for example, it's easy to see how such exploits could lead to real-world harm.
"It is possible that some of these IP addresses may have ties to state-sponsored actors," continued the blog post.
We've reached out to Twitter to determine how many users were affected and if the company planned to notify users whose phone numbers were tied to accounts in the manner described. We've received no immediate response at present.
Importantly, not everyone was vulnerable to this specific exploit. According to Twitter, the bad actors in question could only tie your account to a phone number ifyour account met two specific criteria.
SEE ALSO: Jeff Bezos tweets reminder that Saudi government murdered a journalist
First, you had to have added a phone number to your account. However, with many people doing that very thing to enable two-factor authentication, a lot of folks fall into that bucket. Secondly, and this should narrow things down a bit, you must have selected the "Let people who have your phone number find you on Twitter" option.
Now would be a good time to make sure you don'thave that setting enabled. It would also be a great time for Twitter to consider removing it altogether.
UPDATE: Feb. 3, 2020, 2:27 p.m. PST: A Twitter spokesperson responded to our request for comment with the following statement:
As explained in our Privacy Center blog, we recently became aware that someone was using a large network of fake accounts to exploit our API and match usernames to phone numbers. After our investigation, we immediately fixed the issue by making a number of changes to the specific API endpoint that was being exploited. We also suspended any account we believe to have been engaged in this behaviour. Protecting the privacy and safety of the people who use Twitter is a top priority and we remain focused on stopping any abuse of Twitter’s features as quickly as possible.
Topics Cybersecurity Privacy X/Twitter
10 best music docs on Prime Video, for when you need to let your hair downWordle today: Here's the August 1 Wordle answer and hints'The Sims 4' bug mistakenly enables incest10 best music docs on Prime Video, for when you need to let your hair down20 gifts for people who've been burned by 2018Beyoncé responds to album leak with heartfelt message to fansThe FTC is suing to stop Meta from acquiring Within, a VR fitness companyWordle today: Here's the July 27 Wordle answer and hintsWatch this poor iguana and his dinner fall off the damn counterGoogle Maps update improves cycling directions and location sharingWordle today: Here's the August 1 Wordle answer and hintsBig animals had a big weekScientists challenge researcher who edited the genes of baby girlsIn South Asian culture, being single over 30 is stigmatised. These women want to change that.Barack Obama's 2022 summer playlist has bangers aplentyLaura Loomer's IRL Twitter protest has become ... a Twitter meme‘He’s not your man’ meme will remind you he’s not your man, he’s Mr. BrightsideWill Smith apologizes for Oscars slap, says Chris Rock 'not ready to talk'Melania Trump defends her blood red Christmas treesWatch this poor iguana and his dinner fall off the damn counter Tesla cuts the starting price of Model S by $5,000 If you haven't seen 'Broadchurch' Season 3, you're missing out Marines are trying out a throwaway delivery drone Watch out, Ticketmaster: SeatGeek spends $56 million on TopTix Harry Styles correctly states that teen girls are the absolute best 'Walking Dead' just promoted three cast members, here's what it means for Season 8 Starbucks unicorn frappuccinos to grace Earth for a limited time This marathon VR binge 10 things we want to see in 'Fast 9' (or whatever it ends up being called) Did HBO's 'Girls' grow up? We predict where they'll be after the finale How photographers use iPhones to get gorgeous shots of a massive water festival Our eyes reveal when we're about to have an epiphany Facebook launches Spaces, a social VR experience Legendary sportsperson's response to fan letter wows Instagram 'River piracy' is the latest weird thing to come out of climate change 'Star Wars' director confirms the last Jedi's identity 'Leftovers' co Sea level rise could send U.S. 'climate migrants' fleeing to Austin, Atlanta Easter isn't over until you find the egg in this sea of tulips India's attempt to go cashless is turning food vouchers digital
1.7837s , 10132.625 kb
Copyright © 2025 Powered by 【War Archives】,Openness Information Network