“State-sponsored” hackers tried to access Twitter users’ phone numbers
Twitter, in a public statement released on February 3, stated that “possible state-sponsored actors” had attempted to access Twitter users’ phone numbers.
The investigation revealed that the hackers tried to exploit Twitter’s API and took advantage of the vulnerability in the company’s “contacts upload” feature.
Twitter disclosed that it had identified a “high volume of requests” to use the feature coming from IP addresses in Iran, Israel, and Malaysia.
In a blog post, the microblogging site mentioned that, last year in December, the fake accounts intended to exploit API and match usernames to phone numbers.
Twitter’s statement came a day after Tesla CEO Elon Musk slammed the social-networking site for the rise in trolling networks and scams via fake bots on Twitter and Google, in a series of tweets.