Twitter says no evidence new user data leaks were obtained via system bug

Twitter said the data of 5.4 million of the accounts had been compromised by a bug it discovered early last year, which it previously fixed and disclosed over the summer

January 12, 2023 02:27 am | Updated 09:05 pm IST

Twitter said the data of 5.4 million of the accounts had been compromised by a bug.

Twitter said the data of 5.4 million of the accounts had been compromised by a bug. | Photo Credit: Reuters

Twitter Inc said on Wednesday that there was no evidence that data recently being sold online was obtained by exploiting a vulnerability in the company's systems.

Twitter said the data of 5.4 million of the accounts had been compromised by a bug it discovered early last year, which it previously fixed and disclosed over the summer.

Another 600 million pieces of user data "could not be correlated with the previously reported incident, nor with any new incident," Twitter said in a blog post.

"There is no evidence that the data being sold online was obtained by exploiting a vulnerability of Twitter systems. The data is likely a collection of data already publicly available online through different sources," it said.

The social media company told users in August last year that a system vulnerability revealed Twitter accounts of users by submitting their email address or phone number, after the company learnt about it through a bug bounty program months earlier.

In December, media reports claimed that someone could gain access to over 400 million Twitter-associated user emails and phone numbers, and that the data had been exposed through the same vulnerability discovered in January 2022.

0 / 0
Sign in to unlock member-only benefits!
  • Access 10 free stories every month
  • Save stories to read later
  • Access to comment on every story
  • Sign-up/manage your newsletter subscriptions with a single click
  • Get notified by email for early access to discounts & offers on our products
Sign in

Comments

Comments have to be in English, and in full sentences. They cannot be abusive or personal. Please abide by our community guidelines for posting your comments.

We have migrated to a new commenting platform. If you are already a registered user of The Hindu and logged in, you may continue to engage with our articles. If you do not have an account please register and login to post comments. Users can access their older comments by logging into their accounts on Vuukle.