AIRLINK 73.00 Decreased By ▼ -2.16 (-2.87%)
BOP 5.35 Decreased By ▼ -0.10 (-1.83%)
CNERGY 4.31 Decreased By ▼ -0.08 (-1.82%)
DFML 28.55 Increased By ▲ 0.91 (3.29%)
DGKC 74.29 Increased By ▲ 2.29 (3.18%)
FCCL 20.35 Increased By ▲ 0.06 (0.3%)
FFBL 30.90 Decreased By ▼ -0.15 (-0.48%)
FFL 10.06 Increased By ▲ 0.09 (0.9%)
GGL 10.39 Increased By ▲ 0.12 (1.17%)
HBL 115.97 Increased By ▲ 0.97 (0.84%)
HUBC 132.20 Increased By ▲ 0.75 (0.57%)
HUMNL 6.68 Decreased By ▼ -0.19 (-2.77%)
KEL 4.03 Decreased By ▼ -0.17 (-4.05%)
KOSM 4.60 Decreased By ▼ -0.17 (-3.56%)
MLCF 38.54 Increased By ▲ 1.46 (3.94%)
OGDC 133.85 Decreased By ▼ -1.60 (-1.18%)
PAEL 23.83 Increased By ▲ 0.43 (1.84%)
PIAA 27.13 Decreased By ▼ -0.18 (-0.66%)
PIBTL 6.76 Increased By ▲ 0.16 (2.42%)
PPL 112.80 Decreased By ▼ -0.36 (-0.32%)
PRL 28.16 Decreased By ▼ -0.59 (-2.05%)
PTC 14.89 Decreased By ▼ -0.61 (-3.94%)
SEARL 56.42 Decreased By ▼ -0.91 (-1.59%)
SNGP 65.80 Decreased By ▼ -1.19 (-1.78%)
SSGC 11.01 Decreased By ▼ -0.16 (-1.43%)
TELE 9.02 Decreased By ▼ -0.12 (-1.31%)
TPLP 11.90 Decreased By ▼ -0.15 (-1.24%)
TRG 69.10 Decreased By ▼ -1.29 (-1.83%)
UNITY 23.71 Increased By ▲ 0.06 (0.25%)
WTL 1.33 Decreased By ▼ -0.01 (-0.75%)
BR100 7,434 Decreased By -20.9 (-0.28%)
BR30 24,206 Decreased By -44.4 (-0.18%)
KSE100 71,359 Decreased By -74.1 (-0.1%)
KSE30 23,567 Increased By 0.5 (0%)
Markets

Before hack tore through Twitter, online forum offered accounts for sale

  • For $250 in digital currency, the seller promised they’d reveal the email linked to a Twitter account. And for $2,500, the buyer would get the account itself - satisfaction guaranteed.
Published July 17, 2020

Before a hacking campaign tore through Twitter and compromised some of its most high-profile users, an ad went up on a gray market site that facilitates the trade of user accounts for many popular websites including Twitter.

For $250 in digital currency, the seller promised they’d reveal the email linked to a Twitter account. And for $2,500, the buyer would get the account itself - satisfaction guaranteed.

“You will be given a full refund if for any reason you aren’t given the email/@,” the poster said, describing the Twitter account with an @ sign.

The ad, a screenshot of which was provided to Reuters by Hudson Rock, an Israeli company that monitors online forums for stolen credentials and breached data, was an early indication that all was not well at Twitter, a company which is still reeling from the hijacking of a slew of VIP accounts, including those belonging to reality TV star Kim Kardashian, Amazon.com founder Jeff Bezos, and Microsoft co-founder Bill Gates.

Although the details are still coming into focus - and Twitter and the FBI are still investigating - the fact that early word of the hack spread on a forum popular with gamers and Instagram account swappers suggests the incident likely had a nexus with low-level cybercrime rather than nation state-level subterfuge.

“This doesn’t look like a particularly sophisticated hacking group,” said Roi Carthy, the chief executive of Hudson Rock.

An administrator at OGUsers, the account trading forum, confirmed the screenshot was authentic, telling Reuters the user selling the ad - named “chaewon” - was suspended once those that ran the site realized what was happening.

He said his site - whose users particularly treasure accounts with one- or two-character handles, dubbed “OGs” - explicitly bans trafficking in hacked credentials.

In theory, social media companies like Twitter and Instagram ban the sale of accounts no matter how they are acquired, but the administrator said internet firms “pick and choose when to enforce that rule” and the practice was widely tolerated.

Other researchers saw similar chatter about access to a Twitter tool for changing account settings, and they noted the earliest reported hacks Wednesday were of short Twitter handles, like @6.

Only afterward were accounts for bitcoin exchanges and celebrities hacked, said Allison Nixon, chief research officer at security consultancy Unit 221B.

“When you have these less professional criminal groups, you see chaotic outcomes,” said Nixon, who tracked down and preserved private chats in the Twitter hack. “One member might stumble across a powerful hack, and it spirals out of control. That’s probably what happened here.”

Comments

Comments are closed.