DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Vendor Claims to Have Scraped 400M Twitter User Records (with UPDATE 1)

Posted on December 26, 2022 by Dissent

Perhaps the top story this past week involves a sales offering on a popular hacking-related forum. The seller, who first joined the forum in December, has listed information on 400 million Twitter users for sale.  No price is specified in the listing.

The data, that were allegedly scraped due to a vulnerability, include email, name, username, follower_count, creation_date, and phone_number. The seller provides a sample on the forum that involves well-known individuals.

Listing on forum offers to sell information of 400 million Twitter users

And then they provide an option for Twitter or Elon Musk to buy the data from them:

Twitter or Elon Musk if you are reading this you are already risking a GDPR fine over 5.4m breach imaging the fine of 400m users breach source
Your best option to avoid paying $276 million USD in GDPR breach fines like facebook did (due to 533m users being scraped) is to buy this data exclusively,
Which can go through the official owner middle man on here @pompompurin or admin @Baphomet after that I will delete this thread and will not sell this data again.
And data will not be sold to anyone else which will prevent a lot of celebrities and politicians from Phishing, Crypto scams, Sim swapping, Doxxing and other things that will make your users
aLose trust in you as a company and thus stunt the current growth and hype that you are having also just imagine famous content creators and influencers getting hacked on twitter that will for sure Make them ghost the platform and ruin your dream of twitter video sharing platform for content creators, also since you Made the mistake of changing twitter policy that got an immense backlash
From content creators this is a sensitive time, which will make things far worse and if you are unsure just run a poll on twitter like usual and people will choose their fate, because at the end of the
Day it’s the company’s fault that this data was breached.

So far, no one has challenged the accuracy of the sample of well-known users, and that may be significant.

Of note, the scraping is not current. It appears to be part of a scraping incident previously addressed and disclosed by Twitter. At the time, Twitter wrote:

We will be directly notifying the account owners we can confirm were affected by this issue. We are publishing this update because we aren’t able to confirm every account that was potentially impacted, and are particularly mindful of people with pseudonymous accounts who can be targeted by state or other actors.

So Twitter had no idea that 400 million users had been affected?

On December 23, the day the sales listing appeared, the Irish DPC issued a statement that it was launching an investigation into earlier claims about 5.4 million Twitter users’ data being available on the internet after the scraping incident mentioned above. If the DPC is seeing the 5.4 million breach as a potentially finable offense, the seller is using that as leverage to try to get Musk and Twitter to pay to buy the data exclusively.

Of course, even if Musk or Twitter were to buy the data exclusively, the word of a criminal cannot be trusted, and the DPC might still take action against Twitter, as might the FTC.

But for now, it’s important to note that there has been no response from Twitter either confirming or denying that the data are real.

Update December 27: There is still no response from Twitter, but Lawrence Abrams of Bleeping Computer has a report that involves more information provided by Ryushi. According to the seller’s statements to Abrams, the scraped data was combined with another IP address to obtain more public info on individuals to create the profiles. So these data are presumably not from a single scrape or just Twitter but represent a combination of sources.  Read more at BleepingComputer.


Related:

  • Hotel and Casino near Las Vegas Strip suffers data breach, documents say
  • Attorney General James Announces Settlement with Wojeski & Company Accounting Firm
  • Data BreachesProsper Data Breach Impacts 17.6 Million Accounts
  • Gov't seeks police probe of KT for allegedly obstructing data breach investigation
  • Oracle silently fixes zero-day exploit leaked by ShinyHunters
  • Discord blamed a vendor for its data breach — now the vendor says it was ‘not hacked’
Category: Business SectorOther

Post navigation

← Cyber attacks set to become ‘uninsurable’, says Zurich chief
Cyber insurers “missing” key nuances in their underwriting strategies →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Almost two years later, Alpha Omega Winery notifies those affected by a data breach.
  • Court of Appeal reaffirms MFSA liability in data leak case, orders regulator to shoulder costs
  • A jailed hacking kingpin reveals all about the gang that left a trail of destruction
  • Army gynecologist took secret videos of patients during intimate exams, lawsuit says

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Changes in the Rules for Disclosure for Substance Use Disorder Treatment Records: 42 CFR Part 2: What Changed, Why It Matters, and How It Aligns with HIPAAs
  • Always watching: How ICE’s plan to monitor social media 24/7 threatens privacy and civic participation

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.