Skip to main content

Time to change your Twitter password: 32 million accounts may have been hacked

Mark Zuckerberg, Katy Perry, Keith Richards, Tame Impala, Drake, Tenacious D, oh, and Twitter founder Evan Williams. What do they have in common? They’ve all had their Twitter accounts compromised in recent days, that’s what.

And late Thursday it emerged the apparent hack could be serious. Like 32-million-accounts serious.

The login credentials for what would be more than 10 percent of the microblogging site’s active user base were most likely collected via malware rather than a hack on Twitter’s own servers, according to LeakedSource, a site that holds information on data leaks. It suggested the computers of “tens of millions of people” have been infected by malware that “sent every saved username and password from browsers like Chrome and Firefox back to the hackers.”

Michael Coates, Twitter’s trust and information security officer, insisted its own systems are secure and so any stolen data could not have come from a direct hack.

He added that the company securely stores all passwords and has contacted LeakedSource as part of its investigation into the matter.

LeakedSource said the cache of Twitter data was being traded on the dark web by a hacker for 10 Bitcoins (currently around $5,800).

“Tessa88,” the supposed name of the hacker, presented LeakedSource with Twitter data that includes usernames, email addresses, and visible passwords. Interestingly, the site noted that the details of Mark Zuckerberg, whose Twitter account was recently hacked, were not in the data set, adding that more than likely “the malware was spread to Russians.”

You may not be Russian and you may not be a celebrity, but considering how many Twitter passwords appear to be knocking around out there just now, evidenced by this latest report and the flurry of account hacks in recent days, you’d do well to change yours now.

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
Hackers have found a way to log into your Microsoft email account
A depiction of a hacker breaking into a system via the use of code.

Account holders for Microsoft email services are being targeted in a phishing campaign, according to security researchers from Zscaler's ThreatLabz group.

The objective behind the threat actors’ efforts is believed to be the breaching of corporate accounts in order to perform business email compromise (BEC) attacks.

Read more
Destructive hacking group REvil could be back from the dead
Person typing on a computer keyboard.

There was a period in 2021 when the computing world was gripped by fear of a dizzyingly effective hacking group fittingly named REvil -- until its website was seized by the FBI and its members arrested by Russia’s security services, that is. Yet like a malevolent curse that just can’t be dispelled, it now seems the group’s websites are back online. Has the group returned to spread discord and wreak havoc once again?

In case you missed them the first time around, REvil came to global attention by hacking into various high-profile targets, pilfering secret documents, then threatening their release unless a ransom was paid. In a notable case, the group stole and published files from Apple supplier Quanta Computer, including some that spilled the beans on unreleased product designs.

Read more
Are you using one of these passwords? If so, it’s time for a change
Passwords locked on Mac.

The most common passwords used in 2021 have been revealed, and to call them an embarrassment would be an understatement to say the least.

According to a new report from NordPass, a service that provides a password manager program, a worrying amount of users still rely on extremely weak passwords.

Read more