Security News > 2021 > May > Twitter Tip Jar may expose PayPal address, sparks privacy concerns

Twitter Tip Jar may expose PayPal address, sparks privacy concerns
2021-05-07 13:11

Twitter 'Tip Jar' may expose your PayPal shipping address.

"For now, a limited group of people around the world who use Twitter in English can add Tip Jar to their profile and accept tips."

Put simply, because "Tipping" counts as a transaction on Twitter, much like a buyer paying a seller when shopping online, PayPal may expose the money sender's shipping address to the person who is receiving tips.

What happens when someone tips a Twitter user using the Tip Jar and later files a "Dispute" concerning the payment?

It is unclear what policies PayPal and Twitter will introduce to prevent malicious actors from abusing the Tip Jar feature which has just been rolled out.

Twitter profiles with Tip Jar enabled will show a "Tip Jar" icon next to the "Follow(ing)" button on their profile, as shown in the GIF illustration above.


News URL

https://www.bleepingcomputer.com/news/security/twitter-tip-jar-may-expose-paypal-address-sparks-privacy-concerns/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Paypal 19 3 20 0 1 24
Twitter 6 1 7 1 0 9