Really good reporting by @JosephMenn on the SEC's X account hijack.

The fact that the hackers got control of the phone number of the SEC's X account is by far the most important detail in this story.

washingtonpost.com/technology/

Follow

@zackwhittaker I don't use Twitter anymore, but I haven't deleted my account (to block others from using my username). Last I logged in I was still able to use Yubikey FIDO 2FA. It seems like it would be best If large accounts used something like that, though my guess is that most organizations don't do what they could to facilitate more secure solutions like that. @JosephMenn

Sign in to participate in the conversation
CleverLibre Social

CleverLibre Social is an inclusive social instance for open discussion, learning, and community.
All cultures welcome.
Hate speech and harassment strictly forbidden.