Jump to content


The AchieVer

Recommended Posts

The accounts of Eamonn Holmes and Louis Theroux were among those hacked


An online hacking security agency has “hijacked” multiple Twitter accounts in an effort to make a point regarding online security issues.

On Thursday, the message: “This account has been temporarily hijacked by Insinia Security,” appeared on the Twitter accounts of a “number of celebrities” including Eamonn Holmes and Louis Theroux. The tweet also appeared on the Twitter feed of The Independent's travel correspondent Simon Calder.

According to a post on Medium by Insinia Security, which explains the hijacking, it was done to highlight the security dangers of having a phone number associated with a Twitter account.


Mike Godfrey, the CEO of Insinia Security, confirmed to The Independent the reason behind the hacking, explaining: “Insinia have warned for years that using text messaging for authentication, interaction or security is totally unacceptable and leaves people vulnerable to attack.


“This issue was highlighted to Twitter in 2007, again in 2009, again in 2011 and almost every year since. Quite simply; Twitter doesn’t listen. The campaign today was to highlight these vulnerabilities, how serious they can be and how someone with a relatively low skill set and a range of tools can control social media that people use to control their brands, career, image and much more. People have a right to know the truth about the state of insecurity that huge companies like Twitter leave innocent users in.”

And, according to Godfrey, hijacking the accounts was easy - “In this case, it was a simple task of ‘spoofing’ the Twitter users MSISDN (mobile phone number) and sending texts that appeared to be from their phone to Twitter, which will automatically accept commands provided it believes that the text has come from the users phone number, which it did,” he told us.


While Godfrey would not disclose “how these numbers were obtained,” he did say the entire attack “took less than 10 minutes to carry out and complete.”

On Medium, the depth of the hijacking was further explained - and the dangers this lack of security poses.

“We used this method to successfully control the targets Twitter account, allowing us to send DM’s, retweet and like tweets, follow and unfollow people and much more,” the post reads.

According to Insinia Security, this flaw in security could lead to potential risks such as the spread of offensive or extremist material and the spread of fake news.


To protect oneself, Godfrey told us the best way is to use a “separate number for TFA (two-factor authentication) on Twitter.”

“People must understand that even someone having your phone number puts you at risk,” he continued. “We shouldn’t be so relaxed with who we give our numbers to and Twitter certainly shouldn’t be allowing people to tweet and control accounts by sending texts with no authentication.”



Link to comment
Share on other sites

  • Replies 6
  • Views 603
  • Created
  • Last Reply
3 minutes ago, Tin said:

This is really scary, hacked social media account can be very disastrous. 

But perhaps, this is the reality nowadays.

Probably the downside of technology 

Link to comment
Share on other sites

38 minutes ago, Tin said:

This is really scary, hacked social media account can be very disastrous. 

Specially Twitter ; The Toxic Wasteland of social accounts ...!


Just look at the chaos in the last 6 months !

Link to comment
Share on other sites

Social media has been hacked for  years by intelligence organizations around the globe.  The biggest laugh is facebook's 'private' site notification.  It really isn't private.  Agencies have been able to view those sites for years.  Having you social media account hacked is not the worse of what can be done, because that is just the easy portal to any other accounts you might have on other sites, like bank accounts, purchase accounts, etc.  Only twits use twitter.

Link to comment
Share on other sites


I really like and appreciate your views. They are spot on.



Link to comment
Share on other sites


This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Create New...