Everipedia Logo
Everipedia is now IQ.wiki - Join the IQ Brainlist and our Discord for early access to editing on the new platform and to participate in the beta testing.
2020 Twitter Hack

2020 Twitter Hack

CryptoForHealth Twitter Hack is a large scale security breach that took place on Twitter on July 15, 2020. The hacked accounts were used to post malicious links and requests to send Bitcoin in exchange for more bitcoin.[2] Many high profile accounts were compromised, including Ripple, CoinDesk, Coinbase, Binance, Elon Musk, Bill Gates, and Apple.[1] As of the evening of July 15, The digital wallet has received over 12 bitcoin.[14] [18]

Background

On July 15, 2020, CryptoForHealth Twitter Hack took place shortly after 4 PM EST, when various high profile accounts began to post similar tweets.[4] Many of the tweets posted across the accounts similarly stated,

Everyone is asking me to give back, and now is the time.

I am doubling all payments sent to my BTC address for the next 30 minutes.

You send $1,000, I send you back $2,000.

BTC Address - bc1qxy2kgdygjrsqtzq2n0yrf2493p83kkfjhx0wlh.

Only going on for 30 minutes!

Enjoy![6]

Another variation of the scam, which appeared to focus more on popular accounts within the cryptocurrency space, posted similar tweets that read,

We have partnered with CryptoForHealth and are giving back 5000 btc to the community.

See more here : cryptoforhealth.com[7]

Twitter took wind of the immense breach shortly after, stating

We are aware of a security incident impacting accounts on Twitter.

We are investigating and taking steps to fix it.

We will update everyone shortly.[5]

Twitter stock dropped over 4% in extended-hours trading, as the company is simultaneously trying to lock the hackers out of the accounts that were compromised.[8] The main Bitcoin address used in the hack accumulated over 12 bitcoin.[14]

Aftermath

Following the spike in accounts being compromised, Twitter quickly took action and barred all verified accounts from being able to post any tweets.[20] Later that same day of the attack, Twitter Support posted a statement,

We detected what we believe to be a coordinated social engineering attack by people who successfully targeted some of our employees with access to internal systems and tools.[19]

The hackers were also caught using BitPay and Coinbase to commit the wallet transactions. These wallets have previously actively used the address, according to Whitestream, a blockchain analytics company, and have received over 14.75 bitcoin, worth around $135,000.

The attack has raised some serious security concerns among policymakers, as security compromises of this scale could potentially cause irreversible consequences.

Additionally, according to David Vladeck and Jessica Rich, former directors of the Federal Trade Commission's consumer protection bureau, the FTC is likely to investigate the situation, and introduce fines and 'other penalties.'

Companies

The CryptoForHealth.com Domain

The cryptoforhealth.com domain used in the attack was registered on the same day as the hack, according to ICANN. Kristaps Ronka, chief executive of Namesilo, the domain registrar used by the scammers, told TechCrunch that the company suspended the domain “on the first report” it received. Hacked accounts shifted to sharing multiple bitcoin wallet addresses as the incident went on, making things more difficult to track.

[16] [1]

The domain registration information for the website was found to be publicly available, with CryptoForHealth.com purportedly having been registered by ‘Anthony Elias’ of California using the email address mkeyworth5@gmail.com .

[16]

However, the street address provided does not exist according to Google Maps, while the phone number does not connect.

Whois has since removed the information, labeling it as having been “redacted for privacy.”

[16]

References

[1]
Citation Linktechcrunch.comMany high-profile Twitter accounts simultaneously hacked to spread cryptocurrency scam
Jul 15, 2020, 9:45 PM
[2]
Citation Linkwww.businessinsider.comHackers just took over dozens of high-profile Twitter accounts including Uber, Apple, Cash App, and Bill Gates and used them to post bitcoin scam links
Jul 15, 2020, 9:49 PM
[4]
Citation Linkwww.theverge.comBarack Obama, Joe Biden, Elon Musk, Apple, and others hacked in unprecedented Twitter attack
Jul 15, 2020, 10:11 PM
[5]
Citation Linktwitter.comTwitter Support Tweet
Jul 15, 2020, 10:12 PM
[6]
Citation Linktwitter.comHackers just took control of the Twitter accounts of Bill Gates, Elon Musk, Jeff Bezos (& Apple), Kanye West and Mike Bloomberg.Shows you how even the world's richest & most powerful people are just as vulnerable as anyone else.It's like an episode of Mr. Robot.#Hacked
Jul 15, 2020, 10:27 PM
[7]
Citation Linkwww.theblockcrypto.comTwitter accounts of major tech figures, crypto exchanges and Joe Biden compromised in far-reaching attack
Jul 15, 2020, 10:51 PM
[8]
Citation Linktechcrunch.comTwitter stock slides after-hours amid scramble to contain high-profile account hacks
Jul 15, 2020, 10:53 PM
[9]
Citation Linkywqaugeunhowzrcj.public.blob.vercel-storage.com
Jul 15, 2020, 10:55 PM
[10]
Citation Linkywqaugeunhowzrcj.public.blob.vercel-storage.com
Jul 15, 2020, 10:56 PM
[11]
Citation Linkywqaugeunhowzrcj.public.blob.vercel-storage.com
Jul 15, 2020, 10:56 PM
[12]
Citation Linktwitter.comList of people's accounts compromised
Jul 15, 2020, 11:02 PM
[13]
Citation Linkywqaugeunhowzrcj.public.blob.vercel-storage.comAccording to BitRef, the wallet has accumulated over 12 bitcoin.
Jul 15, 2020, 11:04 PM
[14]
Citation Linkbitref.comBitref wallet
Jul 15, 2020, 11:04 PM
[15]
Citation Linktwitter.comList 2 of people's accounts compromised
Jul 15, 2020, 11:10 PM
[16]
Citation Linkcointelegraph.comWho Owns the ‘CryptoForHealth’ Domain Behind the Twitter Hacks?
Jul 16, 2020, 5:55 AM
[18]
Citation Linkwww.youtube.comCrypto Twitter Responds to the Twitter Hack
Jul 16, 2020, 6:07 AM
[19]
Citation Linktwitter.comTwitter Support Later Tweet
Jul 16, 2020, 7:20 PM
[20]
Citation Linkwww.cbsnews.comTwitter says hacking of high-profile Twitter accounts was a "coordinated social engineering attack"
Jul 16, 2020, 7:22 PM