SEC did not have 2FA enabled on its official account: X Safety investigation
The X Safety team has revealed that the United States Securities and Exchange Commission did not have two-factor authentication (2FA) enabled on its main X account, allowing a hacker to gain access to its account.
The embarassing revelation for the SEC comes immediately following a security breach that rocked crypto markets with a false confirmation of a spot Bitcoin ETF from the SEC’s official account on the social media platform.
In a Jan. 10 post, X’s Safety page wrote that the SEC hack occurred as a result of an unidentified actor gaining control of the phone number associated with the account, and using that to gain access to SEC’s official X page. This is more commonly known as a SIM swap hack .
We can confirm that the account @SECGov was compromised and we have completed a preliminary investigation. Based on our investigation, the compromise was not due to any breach of X’s systems, but rather due to an unidentified individual obtaining control over a phone number…
— Safety (@Safety) January 10, 2024
“Based on our investigation, the compromise was not due to any breach of X’s systems, but rather due to an unidentified individual obtaining control over a phone number associated with the @SECGov account through a third party,” wrote X Safety.
“We can also confirm that the account did not have two-factor authentication enabled at the time the account was compromised.”
This is a developing story, and further information will be added as it becomes available.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
XRP Price Set for Breakout Amid Parallels to 2017’s Epic Rally
MAJORUSDT now launched for futures trading and trading bots
Bitget has launched MAJORUSDT for futures trading with a maximum leverage of 20, along with support for futures trading bots, on November 28, 2024 (UTC+8). Welcome to try futures trading via our official website (www.bitget.com) or Bitget APP. MAJORUSDT-M perpetual futures: Parameters Details Listi
Top Altcoins with Rising Sentiment Post-Market Recovery
Pump Science apologizes after GitHub key leak leads to fraudulent tokens
Share link:In this post: The DeSci platform Pump Science has warned its users not to trust any tokens launched using its Pump.fun profile. Pump Science said it would never launch its tokens on Pump.fun. While Pump Science holds BuilderZ partially responsible for the security breach, it does not think BuilderZ was the attacker.