No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Protection

Mandiant, SEC Lose Control of X Accounts Without 2FA

January 12, 2024
in Protection
0
Mandiant, SEC Lose Control of X Accounts Without 2FA


Upon review, Google’s cybersecurity operation at Mandiant has determined it temporarily lost control of its X account to cryptocurrency drainer malware operators on Jan. 3 because it didn’t have two-factor authentication set up.

Effective March 20, 2023, only paid, premium subscribers to X (formerly Twitter) have access to 2FA.

It’s an embarrassing admission that experts say is a sign of the strain cybersecurity teams are under to keep a crushing onslaught of cyberattacks at bay with a shrinking pool of resources and talent to meet the challenge. If it can happen to Mandiant, it can happen anywhere, they warn.

“Normally, 2FA would have mitigated this, but due to some team transitions and a change to X’s 2FA policy, we were not adequately protected,” is a statement the Mandiant team certainly never wanted to have to compose, but nonetheless it was posted on X on Jan. 10. “We’ve made changes to our process to ensure this doesn’t happen again.”

X’s 2FA Upcharge

In a separate high-profile incident on Jan. 9, the X account operated by the Securities and Exchange Commission (SEC) was hijacked to post a fake announcement that the regulator had approved exchange traded funds (ETFs), which despite being taken down in less than 20 minutes gained 1 million views and drove the value of Bitcoin up by 5%.

In this instance, X put out a statement that the @SECGov account was accessed by a compromised phone number associated with the account. The statement also noted the SEC did not have 2FA enabled on the account.

While cybersecurity teams are focused on protecting enterprise “crown jewels” threat actors have pounced on the tweak to X’s 2FA premium pricing.

“It’s clear that cybercriminals are taking advantages of the X changes in 2023 to multifactor authentication (MFA) via SMS, which forced users to pay for this security functionality or use app-based MFA,” Claude Mandy, chief evangelist, data security, at Symmetry Systems explains. “Unfortunately, as I predicted at the time, it’s clear that organizations are not prepared to pay to use a less secure form of authentication like SMS MFA but also can’t be bothered to download a free authentication app for their social media management accounts.”

Missing the Small Stuff is Easy

While enterprise security teams are focused on preventing sophisticated attacks, it can be easy for even the sharpest teams to overlook the simple stuff, according to Bud Broomhead, Viakoo’s CEO.

“The shortage of cybersecurity professionals at a time when threats are rising in volume and velocity is likely causing organizations to take shortcuts,” Broomhead says. Similar to how cybersecurity companies often have more vulnerabilities in their code than other forms of software, due to time pressures and cutting-edge code development, security firms like Mandiant may be so focused on more serious or complex exploits that the basics — like setting up 2FA on an X account — simply is missed.”



Editorial Team

Editorial Team

Related Posts

The Suunto Run Budget Running Watch Is Even Cheaper During Amazon's Big Spring Sale
Protection

The Suunto Run Budget Running Watch Is Even Cheaper During Amazon’s Big Spring Sale

March 26, 2026
Google's Pixel 9a Is Just $399 for the Amazon Big Spring Sale
Protection

Google’s Pixel 9a Is Just $399 for the Amazon Big Spring Sale

March 26, 2026
This Heart Rate Monitor Is Widely Regarded As the Best, and It’s 27% Off During Amazon’s Big Spring Sale
Protection

This Heart Rate Monitor Is Widely Regarded As the Best, and It’s 27% Off During Amazon’s Big Spring Sale

March 26, 2026
My Favorite JBL Over-Ear Headphones Are $100 Off During Amazon's Big Spring Sale
Protection

My Favorite JBL Over-Ear Headphones Are $100 Off During Amazon's Big Spring Sale

March 26, 2026
Artists Love the XP-Pen Magic Note Pad Drawing Tablet, and It's $140 Off During Amazon's Big Spring Sale
Protection

Artists Love the XP-Pen Magic Note Pad Drawing Tablet, and It’s $140 Off During Amazon’s Big Spring Sale

March 26, 2026
The Garmin Forerunner 265 Is a Pretty Good Buy During Amazon's Big Spring Sale
Protection

The Garmin Forerunner 265 Is a Pretty Good Buy During Amazon’s Big Spring Sale

March 26, 2026
Load More
Next Post
Apple Stock Should Be Dropped From the Magnificent 7. What Sould Replace It.

Apple Stock Should Be Dropped From the Magnificent 7. What Sould Replace It.

Popular News

  • Josh Garber

    How to Contact Hilton Customer Service

    0 shares
    Share 0 Tweet 0
  • Yen under pressure after Takaichi report; Aussie higher on inflation

    0 shares
    Share 0 Tweet 0
  • US gasoline prices to rise after attack on Iran, analysts warn

    0 shares
    Share 0 Tweet 0
  • The Best Luxury Hotels in Kansas City, Whether You’re Visiting for Barbecue or the World Cup

    0 shares
    Share 0 Tweet 0
  • What The Clarity Act Means For Ripple And XRP Once Done

    0 shares
    Share 0 Tweet 0

Latest News

Pollen Street reports strong private credit fundraising momentum

Pollen Street reports strong private credit fundraising momentum

March 26, 2026
0

Pollen Street reported sustained fundraising momentum across private credit and private equity in 2025, as total assets under management (AUM)...

The dash to cash has only just begun. Here’s what that means for stocks and bonds.

The dash to cash has only just begun. Here’s what that means for stocks and bonds.

March 26, 2026
0

Strategists at JPMorgan find the current buildup of cash by investors is nowhere near that which was seen after Russia’s...

The Suunto Run Budget Running Watch Is Even Cheaper During Amazon's Big Spring Sale

The Suunto Run Budget Running Watch Is Even Cheaper During Amazon’s Big Spring Sale

March 26, 2026
0

We may earn a commission from links on this page. Deal pricing and availability subject to change after time of...

Here’s why the crypto market is going down today

Here’s why the crypto market is going down today

March 26, 2026
0

The crypto market fell 2.5% on Friday to $2.45 trillion as hopes of an end to the ongoing U.S. Iran...

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.