- Jan 17, 2015
- 5,263
- 4,956
For some reason, a password cracker was able to access my Twitter account and broke through all security measures.
Immediately after accessing with my password I received this email:
Security Alert: Unusual login detected
Just to be safe, to log into this account, you will need to verify that it is really you by entering the following one-time code.
<THE CODE>
So far, so good. Double protection like most Social Media sites.
But suddenly three minutes after:
Your email address has been modified: to confirm your address click on the URL we have sent you to ([email protected]). If you didn't make this change please contact Twitter support inmediately.
How the f**k have they been able to bypass the email code verification?
I'm 100% confident they could not access the associated email because that email is GMAIL and there are no access notifications and if I check the email IP log there are is suspicious activity from a different country.
Worse enough, the cracker is from a different country than mine according to the twitter information emails. This was performed through Android.
Not my main acc, where I have 2FA, but a secondary account, still really weird.
Immediately after accessing with my password I received this email:
Security Alert: Unusual login detected
Just to be safe, to log into this account, you will need to verify that it is really you by entering the following one-time code.
<THE CODE>
So far, so good. Double protection like most Social Media sites.
But suddenly three minutes after:
Your email address has been modified: to confirm your address click on the URL we have sent you to ([email protected]). If you didn't make this change please contact Twitter support inmediately.
How the f**k have they been able to bypass the email code verification?
I'm 100% confident they could not access the associated email because that email is GMAIL and there are no access notifications and if I check the email IP log there are is suspicious activity from a different country.
Worse enough, the cracker is from a different country than mine according to the twitter information emails. This was performed through Android.
Not my main acc, where I have 2FA, but a secondary account, still really weird.