Saturday 9 July 2016

Twitter denies it can see your Vine password

Vine




After previously hijacking the social media accounts of multiple tech executives including Google's Sundar Pichai, Facebook's Mark Zuckerberg, AOL's Steve Case, and Yahoo's Marissa Mayer, hacker group OurMine set its sights on Twitter chief executive Jack Dorsey. It revealed today that not only was it able to post to his Twitter account, but it claimed to have gained access to his Dropbox folders where it alleges to have discovered evidence that Twitter is able to see your Vine passwords.


Twitter flatly denies this. A company spokesperson told VentureBeat that the screenshot is not an accurate depiction of the Vine admin site. “Our Vine admin site is restricted to Twitter IPs, is HTTPs, and never shows passwords in any form. We securely store our passwords per industry best practices,” we're told in an emailed statement.


In a blog post today, OurMine states that Dorsey's Dropbox contains “all Vine Files including picture of the control panel of Vine.” Furthermore, it posted a screenshot the group believes proves that those who have access to the panel “can see private information” and user passwords.


A screenshot of Vine's admin panel released by hacking group OurMine that claims to show Vine's admin panel allows Twitter to see unencrypted user passwords. Twitter has denied this.


Above: A screenshot of Vine's admin panel released by hacking group OurMine that claims to show Vine's admin panel allows Twitter to see unencrypted user passwords. Twitter has denied this.


Image Credit: OurMine


An individual claiming to be a member of OurMine was adamant that what the group had was the truth, saying all its Vine files were taken directly from Dorsey's Dropbox account, including the control panel screenshot. What's curious about this whole thing is why would Dorsey have live files relating to Twitter or even Vine stored on Dropbox?


For more than a few weeks, OurMine has been taking over various individuals social media accounts, including Foursquare, Quora, and Twitter all with a message promoting security. And while that may seem altruistic, it's also selling its services saying that it can offer better protection. Other than the aforementioned individuals targeted, the group has gone after venture capitalists Mark Suster and Vinod Khosla, Spotify founder Daniel Ek, former Facebooker Randi Zuckerberg, Amazon chief technology officer Werner Vogels, and actor Channing Tatum.


While the group is targeting CEOs and celebrities, don't think you're immune. If possible, use two-factor authentication and be aware of what services are connected with your accounts to avoid any compromising security risks.














Get more stories like this on TwitterFacebook


Twitter denies it can see your Vine password

from Social – VentureBeat http://ift.tt/29EkOrX

via


rgh–

1 comment: