Skip to content
Saturday, May 24, 2025
Latest:
  • The US Is Building a One-Stop Shop for Buying Your Data
  • Oops: DanaBot Malware Devs Infected Their Own PCs
  • Feds Charge 16 Russians Allegedly Tied to Botnets Used in Ransomware, Cyberattacks, and Spying
  • Why 3D-Printing an Untraceable Ghost Gun Is Easier Than Ever
  • Mysterious Database of 184 Million Records Exposes Vast Array of Login Credentials

    Computer Security Articles

    RSS Reader for Computer Security Articles

    • Home
      • Fortinet
      • MalwareBytes
      • Sophos
      • TrendMicro
      • Kaspersky
      • QuickHeal
    • Independent
      • Krebs
      • Securiteam
      • ComputerWorld
    • ScadaICS
      • Schneider
    • Security Videos
    • ThreatMap Fortinet
    MalwareBytesSecurity

    Beware Twitter Messages claiming “Your blue badge Twitter account has been reviewed as spam”

    April 29, 2022 admin

    Credit to Author: Jovi Umawing| Date: Fri, 29 Apr 2022 15:48:45 +0000

    Twitter verification is a two-edged sword. According to Twitter, it’s supposed to let people know “that an account of public interest is authentic.” That’s great, so long as the account is authentic, but what if, one day, it suddenly isn’t?

    An attacker that can wrestle a verified account from its owner can cloak themselves in the real owner’s authenticity. And they can use that authenticity to pull off what NBC News reporter Kevin Collier described as “the best DM phishing attempt I think I’ve ever seen.” The attack, seen by Collier and attempted against author Miles Klee, used a compromised blue tick account to try to scam Klee out of his own verified account.

    This, sent to @MilesKlee from a compromised verified account, is the best DM phishing attempt I think I've ever seen. Don't fall for it! pic.twitter.com/cCCLDUUj7y

    — Kevin Collier (@kevincollier) April 28, 2022

    According to the compromised account’s bio, he is…

    Support Team Officer Patrick Lyons. You will be informed of an important development regarding your account via this channel.

    The account sends the intended victim a Direct Message that reads:

    Hello, dear Twitter user!  Your blue badge Twitter account has been reviewed as spam by our Twitter team.  We understand how valuable the blue badge is to you.  Please appeal using the form below, otherwise your blue badge may be deleted.  {redacted URL}  Thanks Twitter Team

    The phishing site

    The URL uses a realistic-looking domain (registered in November 2021), that displays a realistic login screen that uses the appropriate Twitter fonts and styling.

    Fake Twitter login screen
    The fake Twitter login screen

    Entering a user name and clicking the “Log in” button takes the user to a realistic-looking fake password reset page.

    Fake Twitter password reset screen
    The fake password reset page.

    This page asks users to reset their passwords, by entering both old and new. Entering your old password gives your password straight to the scammers, who already have your username. And whether you enter a valid password or not, you see the same message:

    You entered your old password incorrectly, please check and try again. If you do not know your password, you can renew your password from your Twitter account.

    At this point, your password is in the hands of the scammers, but the site does not ask for a second authentication factor. The “burner” account we tested the site with had two-factor authentication (2FA) enabled and it looks as if that is enough to blunt this attack.

    Don’t risk giving scammers your authority

    Messages sent from verified accounts appear more authentic, which is why they are such a prize for scammers. Right now, hijacked verified profiles are enormously popular for hawking NFT scams, for example. Verified account owners can give their security a huge boost, just by enabling 2FA.

    Better yet, Twitter could give every verified account a huge security boost by making 2FA mandatory.

    Remain vigilant, and stay safe!

    The post Beware Twitter Messages claiming “Your blue badge Twitter account has been reviewed as spam” appeared first on Malwarebytes Labs.

    https://blog.malwarebytes.com/feed/

    • Beware scammers disguised as fraud busters
    • Transatlantic Cable Podcast, episode 248 | Kaspersky official blog

    Connect with:

    Recent Posts

    • The US Is Building a One-Stop Shop for Buying Your Data
    • Oops: DanaBot Malware Devs Infected Their Own PCs
    • Feds Charge 16 Russians Allegedly Tied to Botnets Used in Ransomware, Cyberattacks, and Spying
    • Why 3D-Printing an Untraceable Ghost Gun Is Easier Than Ever
    • Mysterious Database of 184 Million Records Exposes Vast Array of Login Credentials

    Categories

    • ComputerWorld (1,732)
    • Fortinet (648)
    • Independent (3,629)
    • Kaspersky (1,498)
    • Krebs (821)
    • Magazine (81)
    • MalwareBytes (3,204)
    • Microsoft (872)
    • MotherBoard (849)
    • QuickHeal (455)
    • ScadaICS (2,845)
    • Schneider (2,845)
    • Securiteam (217)
    • Security (13,994)
    • Sophos (1,618)
    • TrendMicro (1,367)
    • VirusBulletin (81)
    • Wired (3,392)
      Copyright © 2025 Computer Security Articles. All rights reserved.
      Theme: ColorMag by ThemeGrill. Powered by WordPress.