A massive breach involving an ex-employee leaked detailed user profile data from roughly 2.87 billion Twitter accounts, combining new and previously exposed information. The dataset includes user metadata like IDs, screen names, follower counts, and tweets, increasing risks of phishing and impersonation. Although no sensitive information such as email addresses was found in the new data, the merge with past breaches presents a comprehensive user profile view. Twitter has not acknowledged the breach, which stands as the second-largest in history.
Source: https://cybersecuritynews.com/400gb-of-x-twitter-data-allegedly-leaked/
TPRM report: https://scoringcyber.rankiteo.com/company/twitter
"id": "twi602040125",
"linkid": "twitter",
"type": "Breach",
"date": "4/2025",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 2870000000,
'industry': 'Social Media',
'name': 'Twitter',
'type': 'Company'}],
'attack_vector': 'Internal Threat',
'data_breach': {'data_exfiltration': 'Yes',
'number_of_records_exposed': 2870000000,
'personally_identifiable_information': 'No sensitive '
'information such as '
'email addresses',
'sensitivity_of_data': 'Medium',
'type_of_data_compromised': ['User IDs',
'Screen Names',
'Follower Counts',
'Tweets']},
'description': 'A massive breach involving an ex-employee leaked detailed '
'user profile data from roughly 2.87 billion Twitter accounts, '
'combining new and previously exposed information. The dataset '
'includes user metadata like IDs, screen names, follower '
'counts, and tweets, increasing risks of phishing and '
'impersonation. Although no sensitive information such as '
'email addresses was found in the new data, the merge with '
'past breaches presents a comprehensive user profile view. '
'Twitter has not acknowledged the breach, which stands as the '
'second-largest in history.',
'impact': {'brand_reputation_impact': 'Significant',
'data_compromised': ['User IDs',
'Screen Names',
'Follower Counts',
'Tweets'],
'identity_theft_risk': 'High'},
'threat_actor': 'Ex-Employee',
'title': 'Twitter Data Breach Involving 2.87 Billion Accounts',
'type': 'Data Breach',
'vulnerability_exploited': 'Unauthorized Access by Ex-Employee'}