{"id":6982,"date":"2017-03-15T06:30:48","date_gmt":"2017-03-15T14:30:48","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2017\/03\/15\/news-773\/"},"modified":"2017-03-15T06:30:48","modified_gmt":"2017-03-15T14:30:48","slug":"news-773","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2017\/03\/15\/news-773\/","title":{"rendered":"Twitter Counter hacked: Hundreds of high-profile Twitter accounts hijacked"},"content":{"rendered":"<p><img decoding=\"async\" src=\"http:\/\/zapt0.staticworld.net\/images\/article\/2017\/03\/twitter_counter_hacked-100713558-large.3x2.jpg\"\/><\/p>\n<p><strong>Credit to Author: Darlene Storm| Date: Wed, 15 Mar 2017 06:16:00 -0700<\/strong><\/p>\n<p>Twitter seemed to temporarily be overtaken by tweets featuring swastikas, Turkish flags and Nazi references after third-party analytics app <a href=\"http:\/\/twittercounter.com\/\" target=\"_blank\">Twitter Counter<\/a> was hacked.<\/p>\n<p>It\u2019s unclear how many Twitter accounts were affected \u2013 hundreds or thousands \u2013 considering Twitter Counter claims to have more than two million users who linked their Twitter accounts to its service for the purpose of providing statistics and tracking responses to tweets.<\/p>\n<p>Infosec journalist <a href=\"https:\/\/twitter.com\/gcluley\/status\/841938707603161088\" target=\"_blank\">Graham Cluley<\/a> apologized \u201cfor the Nazi spam\u201d after his account was hijacked. There was a rush of people scrubbing their accounts as <a href=\"https:\/\/twitter.com\/amnesty\/status\/841943805892935680\" target=\"_blank\">Amnesty International<\/a>, <a href=\"https:\/\/twitter.com\/MikaelThalen\/status\/841924288533921793\/photo\/1\" target=\"_blank\">Duke University<\/a>, <a href=\"https:\/\/twitter.com\/russellwiley\/status\/841923211394715648\" target=\"_blank\">Forbes<\/a>, Reuters Japan, <a href=\"https:\/\/twitter.com\/BBCNorthAmerica\/status\/841916861432381440\" target=\"_blank\">BBC North America<\/a>, UNICEF USA, the <a href=\"http:\/\/www.reuters.com\/article\/us-newsnow-15mar-idUSKBN16M1HK\" target=\"_blank\">UK Department of Health, the CEO of Sprint<\/a>, bitcoin wallet <a href=\"https:\/\/twitter.com\/blockchain\/status\/841933247449821184\" target=\"_blank\">Blockchain<\/a>, the <a href=\"http:\/\/www.marketwatch.com\/story\/hackers-hijack-high-profile-twitter-accounts-to-make-anti-dutch-nazi-slurs-2017-03-15\" target=\"_blank\">Atlanta Police Department, Starbucks Argentina<\/a>, the <a href=\"http:\/\/www.bbc.com\/news\/world-39277950\" target=\"_blank\">European Parliament, Nike Spain<\/a>, sports stars, celebrities and many others were compromised and also spewed Nazi spam.<\/p>\n<p>\u201cWe&#8217;re aware that our service was hacked and have started an investigation into the matter. We&#8217;ve already taken measures to contain such abuse,\u201d Twitter Counter <a href=\"https:\/\/twitter.com\/thecounter\/status\/841935867925139458\" target=\"_blank\">tweeted<\/a>. \u201cAssuming this abuse is indeed done using our system, we\u2019ve blocked all ability to post tweets and changed our Twitter app key,\u201d it <a href=\"https:\/\/twitter.com\/thecounter\/status\/841941624238284800\" target=\"_blank\">added<\/a>.<\/p>\n<p>An hour later, the company <a href=\"https:\/\/twitter.com\/thecounter\/status\/841962176722083840\" target=\"_blank\">tweeted<\/a>, \u201cThe Twitter Counter application is blocked on Twitter. If this activity continues, then we strongly believe it&#8217;s not just through us.\u201d<\/p>\n<p>Although Twitter Counter attempted to reassure users, <a href=\"https:\/\/twitter.com\/thecounter\/status\/841936613752094721\" target=\"_blank\">saying<\/a> that it does not store Twitter account credentials or credit card information, Twitter also issued a statement, confirming that it had removed permissions for the third-party app and advised users to follow <a href=\"https:\/\/support.twitter.com\/articles\/76036\" target=\"_blank\">Twitter security tips<\/a>.<\/p>\n<p>This was not the first time Twitter Counter was <a href=\"https:\/\/twitter.com\/thecounter\/status\/799992721792331776\" target=\"_blank\">hacked<\/a>; in November 2016, the hack <a href=\"https:\/\/www.engadget.com\/2016\/11\/19\/spammers-compromised-twitter-accounts-for-playstation-and-other\/\" target=\"_blank\">resulted<\/a> in Twitter accounts belonging to \u201c@PlayStation, @Viacom, @XboxSupport, @NTSB, @TheNewYorker, @TheNextWeb, the Red Cross (@ICRC) and @Money\u201d aggressively tweeting \u201cways to help you obtain more followers for free.\u201d At the time, the company <a href=\"https:\/\/twitter.com\/thecounter\/status\/799995192589721600\" target=\"_blank\">promised<\/a>, \u201cAs of now, the hackers CANNOT post on our users&#8217; behalf anymore.\u201d<\/p>\n<p>Twitter Counter CEO Omer Ginor <a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2017-03-15\/dozens-of-twitter-accounts-post-swastikas-pro-erdogan-content\" target=\"_blank\">told<\/a> Bloomberg that the company had a \u201c95 percent certainty\u201d that it had fixed the problem after the November hack. But after the latest hack, it was unsure if \u201ca hacker was \u2018still lurking in the shadows, just waiting for the opportunity\u2019.\u201d<\/p>\n<p>Ginor <a href=\"http:\/\/www.reuters.com\/article\/us-cyber-turkey-idUSKBN16M11J\" target=\"_blank\">told<\/a> Reuters, \u201cBoth attacks (had) similar effects and seemingly (the) same country of origin, as the November attackers were indeed operating from Turkey and the actions taken were benefiting Turkish properties and people.\u201d<\/p>\n<p>The tweets, according to Bloomberg,\u201d included a swastika and described the attack as a \u2018little Ottoman slap.\u2019 \u2018See you on April 16,\u2019 they read, referring to the date of Turkey\u2019s referendum to grant more powers\u201d to Turkish President Recep Tayyip Erdogan, \u201cand finish with: \u2018What did I write? Learn Turkish.\u2019 A four-minute video attached to the tweets begins with an Erdogan speech in which he says: \u2018If we\u2019re going to die, let\u2019s die like men.\u2019 It then features scenes from various Erdogan speeches.\u201d<\/p>\n<p>FireEye senior intelligence analyst Jens Monrad <a href=\"https:\/\/www.theregister.co.uk\/2017\/03\/15\/twitter_app_hack\/\" target=\"_blank\">said<\/a>, \u201cOn the 11th of March, shortly after the Dutch authorities prevented [Turkish] foreign minister Mevlut Cavusoglu from flying to Rotterdam, we observed disruption attacks carried out against Rotterdam The Hauge Airport&#8217;s website. The DDoS attack was most likely carried out by a Turkish hacktivist group that appears to be motivated by Turkish nationalism.\u201d<\/p>\n<p>After the Twitter Counter hack, Michael Patterson, CEO of <a href=\"https:\/\/www.plixer.com\/\" target=\"_blank\">Plixer International<\/a> said, \u201cGiven the political nature of the tweets, it\u2019s not unreasonable to assume this was a state sponsored hack. The message delivered through this hack has received global attention that would likely not have been possible through any other method. This massive exposure becomes an incentive for others to use cyber-attacks as a means of gaining global attention to their cause.\u201d<\/p>\n<p>\u201cThis highlights the expanded threat surface created when third party applications are granted access to social media platforms and the applications we use every day,\u201d Patterson added. \u201cIt is common for consumer applications to request access to social media platforms, and most people will allow that access. Every time you link another application to your social media platforms, you are providing hackers with another possible point of entry.\u201d<\/p>\n<p><a href=\"http:\/\/www.computerworld.com\/article\/3180976\/security\/twitter-counter-hacked-hundreds-of-high-profile-twitter-accounts-hijacked.html#tk.rss_security\" target=\"bwo\" >http:\/\/www.computerworld.com\/category\/security\/index.rss<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"http:\/\/zapt0.staticworld.net\/images\/article\/2017\/03\/twitter_counter_hacked-100713558-large.3x2.jpg\"\/><\/p>\n<p><strong>Credit to Author: Darlene Storm| Date: Wed, 15 Mar 2017 06:16:00 -0700<\/strong><\/p>\n<article>\n<section class=\"page\">\n<p>Twitter seemed to temporarily be overtaken by tweets featuring swastikas, Turkish flags and Nazi references after third-party analytics app <a href=\"http:\/\/twittercounter.com\/\" target=\"_blank\">Twitter Counter<\/a> was hacked.<\/p>\n<p>It\u2019s unclear how many Twitter accounts were affected \u2013 hundreds or thousands \u2013 considering Twitter Counter claims to have more than two million users who linked their Twitter accounts to its service for the purpose of providing statistics and tracking responses to tweets.<\/p>\n<p>Infosec journalist <a href=\"https:\/\/twitter.com\/gcluley\/status\/841938707603161088\" target=\"_blank\">Graham Cluley<\/a> apologized \u201cfor the Nazi spam\u201d after his account was hijacked. There was a rush of people scrubbing their accounts as <a href=\"https:\/\/twitter.com\/amnesty\/status\/841943805892935680\" target=\"_blank\">Amnesty International<\/a>, <a href=\"https:\/\/twitter.com\/MikaelThalen\/status\/841924288533921793\/photo\/1\" target=\"_blank\">Duke University<\/a>, <a href=\"https:\/\/twitter.com\/russellwiley\/status\/841923211394715648\" target=\"_blank\">Forbes<\/a>, Reuters Japan, <a href=\"https:\/\/twitter.com\/BBCNorthAmerica\/status\/841916861432381440\" target=\"_blank\">BBC North America<\/a>, UNICEF USA, the <a href=\"http:\/\/www.reuters.com\/article\/us-newsnow-15mar-idUSKBN16M1HK\" target=\"_blank\">UK Department of Health, the CEO of Sprint<\/a>, bitcoin wallet <a href=\"https:\/\/twitter.com\/blockchain\/status\/841933247449821184\" target=\"_blank\">Blockchain<\/a>, the <a href=\"http:\/\/www.marketwatch.com\/story\/hackers-hijack-high-profile-twitter-accounts-to-make-anti-dutch-nazi-slurs-2017-03-15\" target=\"_blank\">Atlanta Police Department, Starbucks Argentina<\/a>, the <a href=\"http:\/\/www.bbc.com\/news\/world-39277950\" target=\"_blank\">European Parliament, Nike Spain<\/a>, sports stars, celebrities and many others were compromised and also spewed Nazi spam.<\/p>\n<p class=\"jumpTag\"><a href=\"\/article\/3180976\/security\/twitter-counter-hacked-hundreds-of-high-profile-twitter-accounts-hijacked.html#jump\">To read this article in full or to leave a comment, please click here<\/a><\/p>\n<\/section>\n<\/article>\n","protected":false},"author":4,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[11062,10643],"tags":[4314,714,1932],"class_list":["post-6982","post","type-post","status-publish","format-standard","hentry","category-computerworld","category-independent","tag-internet","tag-security","tag-social-media"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/6982","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=6982"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/6982\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=6982"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=6982"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=6982"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}