Here is the link to the Mashable report.

http://mashable.com/2009/09/23/twitter-worm-dms/

Dani AI

Generated

Thanks to for surfacing the report — this kind of DM-based worm typically spreads by tricking users into clicking a shortened or obfuscated link. If you experienced a forced password reset like did, check the email Twitter sent for confirmation and look for other compromise signs: unexpected outgoing DMs or tweets, new authorized apps, changed account recovery info, or unfamiliar login notifications. is right that attackers follow audiences; social accounts are prime targets.

Immediate actions that work now: change the account password to a long, unique phrase; enable two-factor authentication if available; review and revoke any unknown third-party app access (re-authorize only trusted apps); log out all active sessions; inspect sent DMs and recent tweets and remove any malicious messages; scan every device used to access the account with updated anti-malware; and report the account to the platform using its compromised-account process.

For marketers and community teams: pause scheduled posts and revoke API keys until the account is clean; rotate credentials for team tools and use a password manager and centralized access controls; require multi-person approval for authorizations where possible; monitor account activity for spikes and set alerting. Train anyone with account access to treat unexpected DMs or shortened links as suspicious and verify via a separate channel before clicking.

Recommended Answers

All 3 Replies

Oh Im not surprised with this one. Wherever there are people, malevolent thinkers will create something against them.

I wonder if that's why I was unable to login to Tweeter this evening after work?? They must have reset my password, because I had to request a new one and set my password all over again.

I wonder if that's why I was unable to login to Tweeter this evening after work?? They must have reset my password, because I had to request a new one and set my password all over again.

If you find out diffinitively that that was the case, let us know. That way if it happens to someone else at least they will have a clue as to what is going on. Thanks.

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.