Get the latest tech news

Twitter's pivot to x.com is a gift to phishers


On April 9, Twitter/X began automatically modifying links that mention "twitter.com" to redirect to "x.com" instead. But over the past 48 hours, dozens of new domain names have been registered that demonstrate how this change could be used to craft…

But over the past 48 hours, dozens of new domain names have been registered that demonstrate how this change could be used to craft convincing phishing links — such as fedetwitter[. Sean McNee, vice president of research and data at DomainTools, told KrebsOnSecurity it appears Twitter/X did not properly limit its redirection efforts. “Twitter just doing a “redirect links in tweets that go to x.com to twitter.com instead but accidentally do so for all domains that end x.com like eg spacex.com going to spacetwitter.com” is not absolutely the funniest thing I could imagine but it’s high up there.”

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Twitter

Twitter

Photo of gift

gift

Photo of phishers

phishers

Related news:

News photo

Roblox CEO: Pay-to-Earn Isn't Child Labor, It's a Gift

News photo

Roblox Executive Says Children Making Money On the Platform Isn't Exploitation, It's a Gift

News photo

Roblox executive says children making money on the platform is ‘a gift’