Twitter finds bug, advises changing passwords

Share

Parag Agrawal, Twitter's chief technology officer, said in a blog post that Twitter has fixed the issue and that there were no signs that anyone had breached or misused the passwords.

"We recently found a bug that stored passwords unmasked in an internal log", stated a tweet from the official Twitter Support account at 4:04 pm EDT Thursday.

'We are very sorry this happened, ' Agrawal wrote. "We recognise and appreciate the trust you place in us, and are committed to earning that trust every day". It seems that a bug allowed users' passwords to be saved on an internal log without encryption.

Twitter uses the masked passwords to validate users' account credentials.

Russian Twitter accounts tried to help opposition in UK election
Twitter finds bug, advises changing passwords

You shouldn't even keep passwords in virtual memory that the operating system might page out into the system swapfile, lest the passwords get flipped out to disk when the system is heavily loaded.

He received some backlash from Twitter users after he tweeted that the company "didn't have to" tell users that their passwords had been stored in plain text in its system. But the company did say it had fixed the mistake and that there was no evidence the passwords were ever accessed without authorization, or that there was any kind of data breach. You should change the password to a new, entirely unique password that is not related to cheese. No matter your take, you should ensure that your account is as safe as can be if you use the social network. But if you have a Twitter account, please change your account password now. The video was recorded by undercover reporters working for Project Veritas, a non-profit organization whose goal, according to their official website, is "investigating and exposing corruption, dishonesty, self-dealing, waste, fraud, and other misconduct".

We also suggest that you start using Twitter's two-factor authentication system, also known as login verification, if you aren't already.

Update, 8:04 p.m. ET: Went to reset my password at Twitter and it said my new password was strong, but when I submitted it I was led to a dead page.

More news: SBS to broadcast multilingual coverage for World Cup
More news: Prince Harry and Meghan Markle's Wedding Day Transportation Is Sufficiently Enchanting
More news: Trump and Macron planted a tree, but where did it go?

Share