Improve Twitter passwords, experts warn after minister’s account hacked

5 January 2023, 12:54

Technology Stock
Technology Stock. Picture: PA

Northern Ireland secretary Chris Heaton-Harris apologised after “some deeply unpleasant stuff” was posted to his account.

The hacking of public figures’ Twitter accounts does not mean the social media giant has major internal security problems, cybersecurity experts have said, but they have urged users to improve their account security.

The Twitter account of Northern Ireland Secretary Chris Heaton-Harris has become the latest to be compromised as a string of offensive messages was posted before being deleted. It comes only days after the Twitter profile of Education Secretary Gillian Keegan also fell victim to hackers.

In a string of high-profile hacking incidents, Piers Morgan’s account has also been compromised in recent weeks.

In the wake of Elon Musk’s takeover of the social media platform and the departure of around half the company’s staff amid a ‘chaotic’ staff restructuring, there have been concerns raised over the strength and responsiveness of Twitter’s security systems.

There have also been reports of millions of user email addresses being scraped from the platform as part of a data leak and offered to hackers on online forums.

But cybersecurity experts have suggested that the biggest direct security threat to users is not in fact any internal issues at the company, but not taking their own personal account security seriously.

Research has shown that many internet users reuse passwords or use simple and easy-to-guess phrases for their login details.

Javvad Malik, lead security awareness advocate at KnowBe4 acknowledged that former Twitter head of security-turned-whistleblower Peiter Zatko had painted a “very unflattering picture” of Twitter’s security controls in a disclosure last year – which had claimed the site had a number of vulnerabilities – but argued individual user security was the key issue.

“That isn’t to say that Twitter is much worse than many other social media or cloud providers. It’s just among the most visible. And that visibility is what paints a huge target on its back,” he said.

“When we hear of Twitter accounts being compromised, it’s not necessarily due to some technical issues within the platform.

Omagh bombing
The Twitter account of Northern Ireland Secretary Chris Heaton-Harris was compromised (Niall Carson/PA)

“Rather, the most popular way is to phish users, ie trick them by sending emails to victims which appear to originate from Twitter, asking them to provide details, including passwords – which causes their accounts to be taken over.”

In response, he encouraged Twitter users to think more carefully about how they secure and use their accounts.

“All accounts, but particularly prominent ones, need to be mindful of what they post on Twitter, especially in private DMs,” he said.

“They should use a unique and strong password, and enable multi-factor authentication.

“Additionally, any access to third-party apps should be regularly reviewed and revoked when no longer required.

“Finally, they should be mindful of any communication which appears to be originating from Twitter and not click on links in emails, but rather directly go to Twitter and take any required action.”

Jamie Akhtar, chief executive of CyberSmart, said it was “important to state” that Twitter was “on the whole, a very safe platform” despite the recent account hackings and apparent data leak.

“Although the leak does raise questions about how fast Twitter is able to identify vulnerabilities, we think users can be reasonably confident in its cybersecurity,” he said.

Twitter is a business with plenty of resources and has historically had sophisticated cybersecurity.

“That the leak coincides with the ownership chaos of the last few months at Twitter seems more like a case of coincidence or bad luck than one of a decline in its security capabilities.”

Responding to the hack of his account, Northern Ireland Secretary Mr Heaton-Harris said: “I’m afraid my Twitter account was hacked overnight and someone posted some deeply unpleasant stuff on my account for which I can only apologise.”

By Press Association

More Technology News

See more More Technology News

Peter Kyle speaks to the press outside Broadcasting House in London

UK will not pit AI safety against investment in bid for growth, says minister

Molly Russell who took her own life in November 2017 after she had been viewing material on social media

UK going ‘backwards’ on online safety, Molly Russell’s father tells Starmer

Ellen Roome with her son Jools Sweeney

Bereaved mother: Social media firms ‘awful’ in search for answers on son’s death

A remote-controlled sex toy

Remote-controlled sex toys ‘vulnerable to attack by malicious third parties’

LG AeroCatTower (Martyn Landi/PA)

The weird and wonderful gadgets of CES 2025

Sinclair C5 enthusiasts enjoy the gathering at Alexandra Palace in London

Sinclair C5 fans gather to celebrate ‘iconic’ vehicle’s 40th anniversary

A still from Kemp's AI generated video

Spandau Ballet’s Gary Kemp releases AI generated music video for new single

DragonFire laser weapon system

Britain must learn from Ukraine and use AI for warfare, MPs say

The Pinwheel Watch, a smartwatch designed for children, unveiled at the CES technology show in Las Vegas.

CES 2025: Pinwheel launches child-friendly smartwatch with built in AI chatbot

The firm said the morning data jumps had emerged as part of its broadband network analysis (PA)

Millions head online at 6am, 7am and 8am as alarms go off, data shows

A mobile phone screen

Meta ends fact-checking on Facebook and Instagram in favour of community notes

Mark Zuckerberg

Meta criticised over ‘chilling’ content moderation changes

Apps displayed on smartphone

Swinney voices concern at Meta changes and will ‘keep considering’ use of X

sam altman

Sister of OpenAI CEO Sam Altman files lawsuit against brother alleging sexual abuse as child

OpenAI chief executive Sam Altman with then-prime minister Rishi Sunak at the AI Safety Summit in Milton Keynes in November 2023

OpenAI boss Sam Altman denies sister’s allegations of sexual abuse

A super-resolution prostate image

New prostate cancer imaging shows ‘extremely encouraging’ results in trials