DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Vendor Claims to Have Scraped 400M Twitter User Records (with UPDATE 1)

Posted on December 26, 2022 by Dissent

Perhaps the top story this past week involves a sales offering on a popular hacking-related forum. The seller, who first joined the forum in December, has listed information on 400 million Twitter users for sale.  No price is specified in the listing.

The data, that were allegedly scraped due to a vulnerability, include email, name, username, follower_count, creation_date, and phone_number. The seller provides a sample on the forum that involves well-known individuals.

Listing on forum offers to sell information of 400 million Twitter users

And then they provide an option for Twitter or Elon Musk to buy the data from them:

Twitter or Elon Musk if you are reading this you are already risking a GDPR fine over 5.4m breach imaging the fine of 400m users breach source
Your best option to avoid paying $276 million USD in GDPR breach fines like facebook did (due to 533m users being scraped) is to buy this data exclusively,
Which can go through the official owner middle man on here @pompompurin or admin @Baphomet after that I will delete this thread and will not sell this data again.
And data will not be sold to anyone else which will prevent a lot of celebrities and politicians from Phishing, Crypto scams, Sim swapping, Doxxing and other things that will make your users
aLose trust in you as a company and thus stunt the current growth and hype that you are having also just imagine famous content creators and influencers getting hacked on twitter that will for sure Make them ghost the platform and ruin your dream of twitter video sharing platform for content creators, also since you Made the mistake of changing twitter policy that got an immense backlash
From content creators this is a sensitive time, which will make things far worse and if you are unsure just run a poll on twitter like usual and people will choose their fate, because at the end of the
Day it’s the company’s fault that this data was breached.

So far, no one has challenged the accuracy of the sample of well-known users, and that may be significant.

Of note, the scraping is not current. It appears to be part of a scraping incident previously addressed and disclosed by Twitter. At the time, Twitter wrote:

We will be directly notifying the account owners we can confirm were affected by this issue. We are publishing this update because we aren’t able to confirm every account that was potentially impacted, and are particularly mindful of people with pseudonymous accounts who can be targeted by state or other actors.

So Twitter had no idea that 400 million users had been affected?

On December 23, the day the sales listing appeared, the Irish DPC issued a statement that it was launching an investigation into earlier claims about 5.4 million Twitter users’ data being available on the internet after the scraping incident mentioned above. If the DPC is seeing the 5.4 million breach as a potentially finable offense, the seller is using that as leverage to try to get Musk and Twitter to pay to buy the data exclusively.

Of course, even if Musk or Twitter were to buy the data exclusively, the word of a criminal cannot be trusted, and the DPC might still take action against Twitter, as might the FTC.

But for now, it’s important to note that there has been no response from Twitter either confirming or denying that the data are real.

Update December 27: There is still no response from Twitter, but Lawrence Abrams of Bleeping Computer has a report that involves more information provided by Ryushi. According to the seller’s statements to Abrams, the scraped data was combined with another IP address to obtain more public info on individuals to create the profiles. So these data are presumably not from a single scrape or just Twitter but represent a combination of sources.  Read more at BleepingComputer.


Related:

  • Qantas obtains injunction to prevent hacked data’s release
  • Ransomware attack disrupts Korea's largest guarantee insurer
  • Former U.S. Soldier Pleads Guilty to Hacking and Extortion Scheme Involving Telecommunications Companies
  • Four people bailed after arrests over cyber attacks on M&S, Co-op and Harrods
  • Mississippi Law Firm Sues Cyber Insurer Over Coverage for Scam
  • Multiple lawsuits filed against Doyon Ltd over April 2024 data breach and late notification
Category: Business SectorOther

Post navigation

← Cyber attacks set to become ‘uninsurable’, says Zurich chief
Cyber insurers “missing” key nuances in their underwriting strategies →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Hackers post stolen St. Paul data online as efforts to reset city employee passwords surge forward
  • Justice Department Announces Coordinated Disruption Actions Against BlackSuit (Royal) Ransomware Operations
  • NL: Hackers breach cancer screening data of almost 500,000 women
  • Violent Crypto Crimes Surge in 2025 Amid Massive Data Leaks
  • Why Ransomware Attacks Are Decreasing in 2025
  • KR: Yes24, the largest Internet bookstore in Korea, suffered its second ransomware attack in two months
  • Korea wins world’s top hacking contest for 4th consecutive year
  • 7-Zip Vulnerability Lets Hackers Write Files and Run Malicious Code
  • Connex Credit Union notifies 172,000 members of hacking incident
  • Federal judiciary says it is boosting security after cyberattack; researcher finds new leaks (CORRECTED)

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Navigating Privacy Gaps and New Legal Requirements for Companies Processing Genetic Data
  • Germany’s top court holds that police can only use spyware to investigate serious crimes
  • Flightradar24 receives reprimand for violating aircraft data privacy rights
  • Nebraska Attorney General Sues GM and OnStar Over Alleged Privacy Violations
  • Federal Court Allows Privacy Related Claims to Proceed in a Proposed Class Action Lawsuit Against Motorola
  • Italian Garante Adopts Statement on Health Data and AI
  • Trump administration is launching a new private health tracking system with Big Tech’s help

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.