Albany Times Union

Celebritie­s have Twitter accounts hacked

Hackers send fake tweets promising doubled Bitcoin

- By Sheera Frenkel, Nathaniel Popper, Kate Conger and David E. Sanger The New York Times

It was about 4 in the afternoon Wednesday on the East Coast when chaos struck online. Dozens of the biggest names in America — including Joe Biden, Barack Obama, Kanye West, Bill Gates and Elon Musk — posted similar messages on Twitter: Send Bitcoin and the famous people would send back double your money. It was all a scam.

A first wave of attacks hit the Twitter accounts of prominent cryptocurr­ency leaders and companies. But soon after, the list of victims broadened to include a Who’s Who of Americans in politics, entertainm­ent and tech, in a major show of force by the hackers.

Twitter quickly removed many of the messages, but in some cases similar tweets were sent again from the same accounts, suggesting that Twitter was powerless to take back control of the accounts.

The company eventually disabled broad swaths of its service, including the ability of verified users to tweet, as it scrambled to prevent the scam from spreading further. The company sent a tweet saying that it was investigat­ing the problem and looking for a fix. “You may be unable to Tweet or reset your password while we review and address this incident,” the company said in a second tweet.

The hackers did not use their access to take aim at any important institutio­ns or infrastruc­ture — instead just asking for Bitcoin. But the attack was concerning to security experts because it suggested that the hackers could have easily caused much more havoc.

It was the nature of the attack — “effective, but also amateurish” in the words of one senior American intelligen­ce official — that led U.S. intelligen­ce agencies to an initial assessment that this was most likely the work of an individual hacker, not a state. Had it been Russia, China, North Korea or Iran, said the official, who would not speak on the record because they were not authorized to discuss an intelligen­ce investigat­ion, the effort would have probably focused on trying to trigger stock market havoc or perhaps the issuance of political pronouncem­ents in the name of Biden or other targets.

Officials also noted that the breach did not affect the account of one of the most watched and powerful users of Twitter: President Donald Trump. Trump’s account is under a special kind of lock and key after past incidents, the official noted.

Security experts said that the wide-ranging attacks hinted that the problem was caused by a security flaw in Twitter’s service, not by lax security measures used by the people who were targeted. Alex Stamos, director of the Stanford Internet Observator­y and the former chief security officer at Facebook, said one of the leading theories among researcher­s was that the hacker, or hackers, had obtained the encryption keys to the system, which enabled them to essentiall­y imitate or steal the “tokens” that grant access to individual accounts.

There were a range of other theories, he said, but all suggested that the attackers got inside Twitter’s system, rather than stealing the passwords of individual users. One American official called that a “scary possibilit­y” in a world where national leaders, sometimes imitating Trump’s techniques, have adopted Twitter as a primary source of unfiltered communicat­ions.

“It could have been much worse. We got lucky that this is what they decided to do with their power,” Stamos said.

The hacker or hackers made some rookie errors. Stamos said that because the attackers had sent identical messages from the compromise­d accounts, they were easy to detect and delete. The decision to ask for money through bitcoin, he added, showed that the attackers were most likely unable or unwilling to launder money or use their access for a more sophistica­ted scam.

The messages were a version of a long-running scam in which hackers pose as public figures on Twitter, and promise to match or even triple any funds that are sent to their Bitcoin wallets. But the attacks Wednesday were the first time that the real accounts of public figures were used in such a scam.

Bitcoin is a popular vehicle for this type of scam because once a victim sends money, the design of Bitcoin, with no institutio­n in charge, makes it essentiall­y impossible to recover the money.

By Wednesday evening, the Bitcoin wallets promoted in the tweets had received over 300 transactio­ns and held Bitcoin worth over $100,000, according to websites that track Bitcoin’s public ledger of transactio­ns, which is known as the blockchain.

Twitter initially handled the attacks by taking down the offending tweets. A spokesman for the Biden campaign said that Twitter had removed the tweet promoting the scam and locked down Biden’s account.

But the hackers kept control of many of the accounts, such as those of Musk and West, and sent out new messages as soon as the old ones were taken down.

Twitter has fallen victim to breaches before. In August, hackers compromise­d the account of

Twitter’s chief executive, Jack Dorsey, and posted racist messages and bomb threats. Dorsey’s account was taken over after hackers transferre­d his phone number to a new SIM card, which stores a phone’s number. The practice, known as Sim-swapping, allowed hackers to tweet from Dorsey’s account.

On Wednesday evening, Sen. Josh Hawley, R-MO., wrote a letter to Dorsey asking for informatio­n on the attack, including how many users were compromise­d.

Shares in the social media company fell 3 percent in after-hours trading.

 ?? Photos by Ludovic Marin, Olivier Douliery, Brendan Smialowski, Mandel Ngan via Getty Images ?? This combinatio­n of file photos shows, left to right top to bottom, Microsoft founder Bill Gates, Democratic presidenti­al candidate Joe Biden, Spacex founder Elon Musk, and Amazon’s Jeff Bezos. The official Twitter accounts of Gates, Biden, Musk, Bezos and other highprofil­e accounts were hijacked on Wednesday by scammers trying to dupe people into sending cryptocurr­ency bitcoin in the hope of doubling their money.
Photos by Ludovic Marin, Olivier Douliery, Brendan Smialowski, Mandel Ngan via Getty Images This combinatio­n of file photos shows, left to right top to bottom, Microsoft founder Bill Gates, Democratic presidenti­al candidate Joe Biden, Spacex founder Elon Musk, and Amazon’s Jeff Bezos. The official Twitter accounts of Gates, Biden, Musk, Bezos and other highprofil­e accounts were hijacked on Wednesday by scammers trying to dupe people into sending cryptocurr­ency bitcoin in the hope of doubling their money.
 ?? Alastair Pike / Getty Images ?? The official Twitter accounts of Apple, Elon Musk, Jeff Bezos and others were hijacked on Wednesday by scammers trying to dupe people into sending cryptocurr­ency bitcoin in the hope of doubling their money.
Alastair Pike / Getty Images The official Twitter accounts of Apple, Elon Musk, Jeff Bezos and others were hijacked on Wednesday by scammers trying to dupe people into sending cryptocurr­ency bitcoin in the hope of doubling their money.

Newspapers in English

Newspapers from United States