Insinia Security hacks celebrity Twitter accounts to expose flaws

Image
IANS London
Last Updated : Dec 28 2018 | 5:10 PM IST

In a bid to highlight security flaws in Twitter, Britain-based Insinia Security temporarily hijacked several celebrity and journalist accounts active on the micro-blogging site.

According to a report in The Telegraph, messages appeared on several celebrity and journalist accounts on Thursday with the words: "This account has been temporarily hijacked by INSINIA SECURITY."

To take control of the accounts, the researchers at the company used fake SMS verification that made it appear as if they belonged to the account owners, said the report.

Insinia said it successfully hijacked the accounts of a number of celebrities, including Eamonn Holmes, Louis Theroux, Simon Calder and Saira Khan among others.

A simple method allowed it to send tweets, direct messages, retweet and like tweets, follow and unfollow people, according to the company which warned that the vulnerability could be easily exploited by nation states, hackers and organised crime groups.

The vulnerability could be used to "spread fake news and disinformation via influential celebrities and journalists", Insinia warned in a blog post.

While Twitter has not yet officially reacted to the threat, Insinia recommended that users should meanwhile remove their phone number from the Twitter account.

"Twitter should completely remove this functionality (SMS verification) as users rely on their phone added to account for two-factor authentication," Insinia said.

--IANS

gb/bg

Disclaimer: No Business Standard Journalist was involved in creation of this content

*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

First Published: Dec 28 2018 | 5:00 PM IST

Next Story