Security News > 2020 > October > Security much? Twitter should have had a CISO to prevent Bitcoin hack, says US state financial body

American financial regulators in New York have demanded Twitter be subject to harsher rules following the July hacks of prominent users' accounts - as CEO Jack Dorsey furiously backpedals after his website censored a news article from a US newspaper.
The New York State Department of Financial Services demanded that Twitter be subject to more "Cybersecurity protections", controlled and overseen, naturally, by itself.
DFS blamed Twitter's lack of a chief information security officer for the hack as well as the platform's shift to homeworking.
It identified the attack vector as "Vishing" - voice-enabled phishing - where the hackers made phonecalls to Twitter posing as legitimate staffers and claiming to be struggling with corporate VPN access: "Armed with these personal details, the Hackers successfully convinced several Twitter employees that they were from Twitter's IT department and stole their credentials," said DFS. Twitter censorship kerfuffle.
Separately, Twitter CEO Jack Dorsey was forced into a very public reverse ferret after Twitter staffers blocked a problematic New York Post article from being shared on the platform because it had been labelled as "Potentially harmful."
News URL
Related news
- How CISOs can balance security and business agility in the cloud (source)
- A PostgreSQL zero-day was also exploited in US Treasury hack (CVE-2025-1094) (source)
- Trump’s DoD CISO pick previously faced security clearance suspension (source)
- Week in review: PostgreSQL 0-day exploited in US Treasury hack, top OSINT books to learn from (source)
- Russia warns financial sector of major IT service provider hack (source)
- CISO vs. CIO: Where security and IT leadership clash (and how to fix it) (source)
- The CISO’s bookshelf: 10 must-reads for security leaders (source)
- How healthcare CISOs can balance security and accessibility without compromising care (source)
- Ex-NSA boss: Election security focus helped dissuade increase in Russian meddling with US (source)
- US defense contractor cops to sloppy security, settles after infosec lead blows whistle (source)