Technology

Twitter data dump: 200 million or more accounts available for free download

According to Privacy Affairs’ security researchers, who confirmed the database that has now been posted on a breach forum, this most recent data dump, which contains user names, handles, creation dates, follower counts, and email addresses, is the same albeit cleaned up release reported last month that affected more than 400 million Twitter accounts.

According to Privacy Affairs CEO and founder Miklos Zoltan, the removal of duplicate accounts is what caused the number of accounts to be cut in half. But this time, he added, “the data is available for download by anyone for free, as opposed to being marketed for sale at $200,000, as it was in December.”

According to Zoltan’s blog article detailing the breach, some of the well-known individuals and companies in the new 63 GB information theft include Donald Trump Jr., Google CEO Sundar Pichai, SpaceX, the US National Basketball Association, CBS Media, and the World Health Organization.

There is no information on whether the Christmas Day Twitter account hack of British Education Secretary Gillian Keegan is connected. Miscreants hijacked Keegan’s account in that instance, altered her profile photo to one of Elon Musk, and sent out a string of tweets endorsing crypto currency.

According to Zoltan, the exposed account owners are still at risk even if the disclosed data does not contain users’ contact information, physical addresses, or passwords.

After reviewing the disclosed data, Privacy Affairs cybersecurity specialists concluded that this most recent leak could result in social engineering attempts and doxxing.

The genuine names and locations of individuals can be ascertained by combining the hacked email addresses connected to Twitter accounts with other publicly accessible data. Additionally, nation-state thugs and criminals wishing to launch social engineering attacks continue to use phishing emails as a successful entry point.

Of course, spammers or con artists can also utilize the listed email addresses; all they must do is persuade one target to click on a harmful link.

Researchers say that while this week’s data leak has fewer accounts, it may be more dangerous because the thieves are giving away the entire information for free.

At this time, the particular method of data acquisition is unknown, Zoltan said. “The most likely approach exploited was the misuse of an application programming interface (API) vulnerability.”

As was previously reported, a security hole that Twitter claimed to have patched last year allowed the records to be scraped in 2021.

Recent Posts

Update chaos after patch day: WSUS server refuses synchronization

After Windows Patch Day in July 2026, reports of problems with the Windows Server Update…

13 hours ago

PayPal Gets $53 Billion Takeover Offer from Stripe

The payment service provider PayPal is apparently facing a large-scale takeover. Two investors have submitted…

13 hours ago

GTA 3 and Vice City run on in-game TV in San Andreas

A new mod for GTA San Andreas lets players play two older parts of the…

13 hours ago

Emergency Alert: Robotaxis are helpless if passengers fall asleep

With the increasing spread of autonomous robotaxis, not only the technical capabilities of the vehicles…

13 hours ago

UK to introduce mileage tax for electric cars in 2028

From 2028, electric car drivers in the UK will have to pay a distance-based levy.…

13 hours ago

Galaxy Watch 9 & Ultra 2 Leak comes with smartwatches in official photos

Shortly before the next Unpacked event on July 22nd, official promo images of the new…

13 hours ago