Security News > 2020 > July > Twitter Employees Targeted With Phone Spear-Phishing in Recent Attack

Twitter Employees Targeted With Phone Spear-Phishing in Recent Attack
2020-07-31 13:04

Twitter on Thursday revealed that several employees were targeted with phone spear-phishing in a social engineering attack leading to the recent security incident.

A total of 130 accounts were targeted in the incident, with hackers abusing internal Twitter systems and tools to reset the passwords for 45 of them.

On Thursday, Twitter confirmed that the hackers targeted several of its employees to gain access to internal systems and gather information on which employees might have access to the tools needed to reset passwords and take over accounts.

"Not all of the employees that were initially targeted had permissions to use account management tools, but the attackers used their credentials to access our internal systems and gain information about our processes. This knowledge then enabled them to target additional employees who did have access to our account support tools," the social media platform revealed.

Twitter also notes that it plans on intensifying employee training and to accelerate improvements to its tools to ensure better security and more efficient detection and prevention of inappropriate access to accounts.


News URL

http://feedproxy.google.com/~r/Securityweek/~3/wlEBq755dQA/twitter-employees-targeted-phone-spear-phishing-recent-attack

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Twitter 6 1 7 1 0 9