Ireland’s data protection office is to investigate an apparent security breach at Twitter after a hacker claimed to offer personal details from 400 million accounts for sale online.
The hacker, using the handle “Ryushi”, offered a sample of details from about 1,000 accounts on 23 December, the same day that Ireland’s Data Protection Commission (DPC) said it would investigate an earlier Twitter breach that affected about 5.4 million accounts.
Both incidents appear to have used the same data-scraping vulnerability, which Twitter said it fixed in January 2022.
Ryushi asked for $200,000 (£166,000) to hand over the data and delete it.
The person suggested that it would be in Twitter’s best interests to buy the data itself “exclusively” in order to avoid a large data-protection fine.
The post referred to a 265m euro (£234m) fine the Ireland DPC levied on Facebook parent Meta in November over a data breach affecting about 533 million users.
Ireland’s DPC said it “will examine Twitter’s compliance with data-protection law in relation to that security issue”.
Twitter, which has no press office after it was cut by owner Elon Musk, has not commented on the latest supposed breach.
The small sample of data released so far has included information from the accounts of US politician Alexandria Ocasio-Cortez and broadcaster Piers Morgan.
Computer security firm Hudson Rock, which first brought the latest breach to wider attention, said the hacker’s claim appears credible.
Hudson Rock chief technology officer Alon Gal told the BBC only 60 of the emails in the sampled data appeared in the data from the earlier incident, indicating that “this breach is different and significantly bigger”.
Gal noted that the hacker offered to use an escrow service to sell the data, which would release the funds only if certain conditions are met, another indication in favour of the breach being genuine.
Move to Elon Musk rival. Former senior executive at X joins Sam Altman's venture formerly…
Bitcoin price rises towards $100,000, amid investor optimism of friendlier US regulatory landscape under Donald…
Judge Kaplan praises former FTX CTO Gary Wang for his co-operation against Sam Bankman-Fried during…
Explore the future of work with the Silicon In Focus Podcast. Discover how AI is…
Executive hits out at the DoJ's “staggering proposal” to force Google to sell off its…
US prosecutors confirm earlier reports, demand Google sells off Chrome web browser and end default…