In 2025, X.com, which used to be Twitter, experienced a massive cybersecurity breach. This breach affected millions worldwide and raised significant concerns about data security and privacy on the platform.
What Happened?
X.com revealed that hackers took advantage of a weakness in their API. This allowed unauthorized access to user data before the issue was detected. Fortunately, direct messages were not accessed, but the leaked information included: – Usernames – Display names – Email addresses – Phone numbers (if provided) – Account creation dates – Last login times. Security experts estimate that around 49 million accounts could be affected, making it one of the most significant data breaches in 2025.
How Was It Discovered?
Independent security researchers found X.com user data being sold on the dark web. After an investigation, they confirmed the data was real. This led to X.com publicly acknowledging the breach and starting its investigation.
Who Is Affected?
Any X.com user active between October 2024 and March 2025 could be affected. Users with verified accounts, those using two-factor authentication with their phones, or those participating in X Premium services are considered at higher risk.
What Should You Do?
If you have an X.com account, take these protective steps:
- Change your X.com password immediately.
- Enable two-factor authentication (2FA), preferably through an authenticator app rather than SMS.
- Watch for phishing attempts, as hackers may use this information to trick you.
- Monitor your emails and phone for any unusual activities.
- Use trustworthy tools like amihacked.com to check if your data was leaked.
How to Verify if You’re Affected
To determine if your information was involved in the breach, follow these steps:
- Visit amihacked.com and use their “Breach Check” tool by entering your email or username.
- Look for any official notifications from X.com via email or the app.
- Use dark web monitoring services; many identity protection services offer free scans for recent breaches.
- Search reliable breach databases like “Have I Been Pwned.”
If your information is found to be exposed, prioritize changing your passwords, updating account security settings, and staying alert for scams.
Expert Insights & X.com’s Actions
Dr. Laura Simmons, a cybersecurity authority, stated that this incident highlights ongoing issues with API security. Inadequate security measures can enable attackers to collect large amounts of data undetected. It serves as a warning for X.com and any platform dealing with sensitive information. Cyber analyst Mark Peterson emphasized that due to leaked phone numbers and email addresses, users should brace for increased phishing attacks and scams targeting this information.
X.com has started notifying affected users via email and app alerts. The company is committed to:
- Collaborating with law enforcement to investigate the breach.
- Fixing the identified security vulnerabilities.
- Enhancing monitoring and logging of suspicious API activities.
- Offering a year of free identity theft protection to those impacted.
This breach underscores the importance of staying vigilant about cybersecurity. Both platforms, like X.com and users, must protect data and secure their accounts. For more updates and advice on cybersecurity, visit amihacked.com/blog.
Leave a Reply