Twitter Hack: 400 million records stolen?

B2B Cyber ​​Security ShortNews
Advertising

Share post

The company Hudson Rocks has spread the news on Twitter that a user offers 400 million data sets from Twitter users in a forum on the dark web. The tricky thing: there should also be information from prominent politicians.

Hudson Rocks, a cybercrime intelligence company, has published a screenshot of an underground forum as evidence: the user "Ryushi" offers 400 million data records in his post that he claims to have stolen from Twitter. This is said to contain the Twitter name, email address and phone number of each user. Not particularly critical data, actually. However, the data is also said to contain information on US politician Alexandria Ocasio-Cortez, former US President Donald Trump, Google CEO Sundar Pichai, Apple co-founder Steve Wozniak and Vitalik Buterin, the inventor of the cryptocurrency Ether.

Advertising

🔎 400 million Twitter data for sale? The company Hudson Rocks showed a screenshot of an underground forum in a Twitter post as evidence.

User wants 400 million Twitter records

The user published the following text in the forum (the text was freely translated, e-mail names and links were removed).

“Hello dear affected users
i am selling the data of +400 million twitter users that was leaked via a security breach, this data is completely private and it includes emails and phone numbers of celebrities, politicians, corporations, regular users and a lot of original and special usernames.

Advertising

You can read the full purpose of using the data here: https://xxxxxxxxx
Twitter or Elon Musk, if you're reading this, you're already risking a GDPR penalty for 5,4M data breaches. What kind of penalty will it entail for 400 million users' data. Your best option to avoid paying like Facebook $276M in GDPR penalties (because 533M users were tapped) is to buy that data exclusively.
This can go through the official owner Mittelsmann here @ xxxxxxx or admin @ xxxxxxx, after that I will delete this thread and will no longer sell this data.

The data will also not be sold to anyone else, which will save many celebrities and politicians from phishing, crypto scams, sim swapping, doxxing and other things.

Imagine famous content creators and influencers on Twitter getting hacked. This will surely make them leave the platform and ruin your dream of a Twitter video platform for content creators, especially since you made the mistake of changing Twitter policies, which led to immense backlash. If you (Elon) are unsure, just do a poll on Twitter as usual and people will decide the fate. But it is and will always be your company's fault that this data was breached."

400 million Twitter data: real or fake?

The user also provides dozens of data sets from known people. Hudson Rocks, a cybercrime intelligence company, believes the data shown is genuine. Whether the provider really has more than 400 million data records is unknown.

If the user sells the data, it can become inconvenient for Twitter and Elon Musk. Because this is a clear violation of the DSGVO or GDPR. In Europe, Facebook parent Meta recently had to pay 265 million euros for its data breach.

Editor/sel

 

Matching articles on the topic

Campaign of the APT group UNC5174

A Threat Research Team (TRT) has uncovered an ongoing campaign by the Chinese APT group UNC5174 targeting Linux-based systems in Western ➡ Read more

North Korean state-sponsored threat group

The Unit 42 team has published new research that reveals a sophisticated campaign by Slow Pisces (also known as Jade Sleet, TraderTraitor, ➡ Read more

Hacker: Educational publisher likely loses terabytes of data

Pearson, a global leader in education, was the victim of a cyberattack in which customer data was compromised. According to various media outlets, ➡ Read more

North Korean APT group uses Russian internet infrastructure

A new expert analysis of the North Korean APT group Void Dokkaebi reveals how the group deliberately uses Russian internet infrastructure to commit crypto thefts. ➡ Read more

Faulty ASUS software allows malware installations 

The pre-installed ASUS DriverHub software contains a critical security vulnerability that allows remote code execution of malware. Due to the faulty checking of ➡ Read more

Play ransomware exploits Windows zero-day vulnerability 

According to Symantec, the Play ransomware group and allied groups are using an exploit that targets the zero-day vulnerability CVE-2025-29824. The vulnerability was ➡ Read more

Samsung server software attacked by exploit

A vulnerability was discovered in Samsung MagicINFO 9 in August 2024. After a research report was published in April, ➡ Read more

MITRE CVE program remains in place for the time being

The CVE program, funded by the US government, is considered a crucial component in the global detection of software flaws. Now, funding is to be temporarily suspended. ➡ Read more