Skip to Content

Submit your nominations for the Luxist Awards' Best in Decor
AOL Tech

Filed under: Internet, Security, web 2.0

Massive Twitter breach underscores the problem with "secret questions"


Twitter's Evan Williams certainly isn't the first famous person to have a "secret question" figured out by a hacker, but I'm always surprised when someone in IT circles falls victim to such an elementary attack.

It's not news that secret questions are a terribly bad idea for enabling password resets or protecting account information. For a question to work, the answer truly needs to be a secret. In the case of celebrities, finding an answer can be as simple as digging around their Facebook profile or fan pages.

The end result of this particular breach: hundreds of documents in a zip file, which the hacker is happily passing around to various blogs (like TechCrunch, Mashable, and this one where screenshots have been posted already). The zip contains everything from plans for a new office and applications for high-level positions to the original pitch for the Twitter TV show (which I can't wait to not watch should it ever happen).

Though ultimately, the information is contained in the documents isn't the worst of it. More alarmingly, the hacker was also able to gain access to Twitter's domain registrar and the associated Gmail account. It would have been an easy step to alter the DNS servers and plunge the Twitterverse into chaos.

Clearly, people really need to start paying attention to things like this MIT report and the advice of their security-savvy friends.
jobs & resumes
iPhone developer

Groupon - Chicago, IL (2 weeks ago)

See More Relevant Jobs ›

Reader Comments (Page 1 of 1)

Featured Time Waster

The World's Hardest Game 2.0 - Time Waster

So, just how good at time waster games are you? Think you've got the stuff? Well, The World's Hardest Game 2.0 doesn't think you do. Yes, amazingly, it's possible to have a sequel to a game called "The World's Hardest Game". It doesn't seem logically possible, since if the first one was actually the world's hardest, how could another one come along and share the moniker? It made me doubt the name in the first place. That is, until I tried the game. The mechanics of the game are very simple. You are a small red square, ...

View more Time Wasters

Featured Galleries

Defective by Design, London: Protest Pictures
Microsoft Security Essentials
Chromium Pre-Alpha on CrunchBang Linux
Safari 4 Beta
10 Firefox themes that don't suck
IE8 RC1
Download Squad at the Crunchies After-Party
Download Squad at the Crunchies
WordPress 2.7
Cooking Mama: Mama Kills Animals
Windows 7 Hands On
Comodo Internet Security
Android First-look: Amazon.com MP3 Store
Android First-look: Twitroid
Google Reader Android
Android Hands-On
Twine 1.0
Photoshop Express Beta
Mozilla Birthday Cake
Palm stuff
Adobe Lightroom 1.1

 


Follow us on Twitter!

Flickr Pool

www.flickr.com

More Tech Coverage

AOL Radio