A Twitter hacker on Monday revealed thousands of user names and passwords for the microblogging site, but here's the good news: Most of the compromised accounts appear to be spam.
Word of the breach began spreading Tuesday after hacking news and activist hub Airdemon posted a dispatch saying 55,000 accounts had been compromised. It linked to Pastebin pages containing the allegedly compromised user names and passwords.
A Twitter representative said the company is investigating. He also downplayed the extent of the potential breach, which hit a small sliver of Twitter's 140 million active users.
"It's worth noting that, so far, we've discovered that the list of alleged accounts and passwords found on Pastebin consists of more than 20,000 duplicates, many spam accounts that have already been suspended and many login credentials that do not appear to be linked (that is, the password and username are not actually associated with each other)," Twitter spokesman Robert Weeks said.
Still, Twitter is taking precautions.
"We are currently looking into the situation. In the meantime, we have pushed out password resets to accounts that may have been affected," Weeks said.
Twitter needs to be especially sensitive to security breaches. In March 2011, the Federal Trade Commission finalized a settlement with Twitter stemming from a pair of data breaches in 2009 that let hackers gain control of Twitter accounts.
Under the settlement's terms, Twitter faces fines and other penalties if it fails to maintain "a comprehensive information security program."
But Twitter has had a few other recent glitches.
Just two months ago, Twitter was forced to temporarily suspend the Web version of its TweetDeck software after a glitch allowed some users access to other users' accounts. Twitter repaired the bug the day after it was publicly exposed.
To comment, the following rules must be followed:
Comments may be monitored for inappropriate content, but the station is under no legal obligation to do so.
If you believe a comment violates the above rules, please use the Flagging Tool to alert a Moderator.
Flagging does not guarantee removal.
Multiple violations may result in account suspension.
Decisions to suspend or unsuspend accounts are made by Station Moderators.
Questions may be sent to firstname.lastname@example.org. Please provide detailed information.
Viewers with disabilities can get assistance accessing this station's FCC Public Inspection File by contacting the station with the information listed below. Questions or concerns relating to the accessibility of the FCC's online public file system should be directed to the FCC at 888-225-5322, 888-835-5322 (TTY), or email@example.com.