Cyber Threats & Attacks
Twitter verified account targeted in Phishing Campaigns
Twitter is now charging $8 a month for Twitter Blue and account verification. With this many phishing emails targeting verified users started flooding. pic.twitter.com/BYOBGBHOUA…

Twitter is now charging $8 a month for Twitter Blue and account verification. With this many phishing emails targeting verified users started flooding.
— Elon Musk (@elonmusk) November 2, 2022
A new report on numerous phishing operations with a blue badge subscription theme that target Twitter-verified users. Paid users can expect to receive “Priority in answers, mentions & search, less adverts, and upload long video & audio” in addition to the blue badge. This new blue badge subscription process is being used by threat actors to target verified users.
You will also get:
– Priority in replies, mentions & search, which is essential to defeat spam/scam
– Ability to post long video & audio
– Half as many ads— Elon Musk (@elonmusk) November 1, 2022
Multiple phishing emails targeting Twitter-verified users have been seen by the security news company Bleeping Computer. Users are urged to sign into their Twitter accounts by the phishing emails to review the new verification rules. Users are taken to a phishing website after clicking the link in the email, where their Twitter username and password are stolen. According to investigation, the emails came from the servers of hacked websites, websites that housed out-of-date WordPress versions, or websites that had vulnerable plugins.
Recommendations
- Put in place a user education program to deter people from clicking on random links.
TestMyUser – Test My Users is a comprehensive user training and awareness platform which assists organizations while promoting security awareness in a convenient 3 Step Approach. With Test My Users, organizations can conveniently conduct Phishing campaigns as a part and parcel of a compendious security awareness training initiative.
- Using an anti-phishing solution for mail servers and endpoints to reduce the risk of infection from phishing
Source
Related articles
All insightsLiving Off the Land: When Legitimate Tools Become Cyber Weapons
The greatest trick an attacker can pull isn’t hiding malware on your computer; it’s convincing your computer to attack itself. It sounds like something out of a cyber-thriller,…
Your Business Is Already on Hackers’ Radars
A Cybersecurity Wake-Up Call for Every Business Owner 43% of attacks target small businesses 24/7 automated bots scan your systems 60% of SMBs close…

Carding: The Hidden Cybercrime
Carding: The Hidden Cybercrime Fueling Global Financial Fraud A Quiet Threat That Starts With a Single Transaction It often begins with something small. A college student wakes up…