Categories: Article

Hacker leaks phone numbers and email addresses of 5.4 million Twitter accounts

An unknown hacker or hacker group has put a database online containing the email addresses and phone numbers associated with 5.4 million Twitter accounts. The attacker was able to retrieve the data through a bug that has since been fixed.

The database is provided on Breach Forums and was discovered by Restore Privacy. The attackers want “at least $30,000” for the database. The database contains no passwords, but does contain the email addresses or phone numbers or both of a total of 5,485,636 Twitter users. The attacker says the data breach contains accounts of celebrities and companies. Restore Privacy was able to determine that the leak is authentic, but not whether the claim that famous names were in it.

The attacker accessed the vulnerability through a known vulnerability that has since been fixed. The vulnerability was presented on January 1st on bug bounty platform HackerOne by a security researcher. It was a bug in the Android client that required an attacker to make a POST request to Twitter’s onboarding API. The security researcher describes the issue in detail on HackerOne. Twitter picked up the vulnerability and fixed it on January 13. Details were published on February 11, and the researcher was awarded a $5040 reward. It is not known how the attacker who now offers the database obtained the information to carry out the hack.

Max Reisler

Greetings! I'm Max, part of our malware removal team. Our mission is to stay vigilant against evolving malware threats. Through our blog, we keep you updated on the latest malware and computer virus dangers, equipping you with the tools to safeguard your devices. Your support in spreading this valuable information across social media is invaluable in our collective effort to protect others.

Recent Posts

Remove VEPI ransomware (Decrypt VEPI files)

Every passing day makes ransomware attacks more normal. They create havoc and demand a monetary…

8 hours ago

Remove VEHU ransomware (Decrypt VEHU files)

Every passing day makes ransomware attacks more normal. They create havoc and demand a monetary…

8 hours ago

Remove PAAA ransomware (Decrypt PAAA files)

Every passing day makes ransomware attacks more normal. They create havoc and demand a monetary…

8 hours ago

Remove Tylophes.xyz (virus removal guide)

Many individuals report facing issue­s with a website called Tylophes.xyz. This we­bsite tricks users into…

1 day ago

Remove Sadre.co.in (virus removal guide)

Many individuals report facing issue­s with a website called Sadre.co.in. This we­bsite tricks users into…

1 day ago

Remove Search.rainmealslow.live browser hijacker virus

Upon closer inspection, Search.rainmealslow.live is more than just a browser tool. It's actually a browser…

1 day ago