A site is hacking twitter accounts and sending DM's to followers
I got this as a DM from @trisha_chokshi "hey! check out this funny blog about you... http://jannawalitax.blogspot.com" It does a redirect to http://twitter.access-logins.com/login/
They must be taking the login in data and then taking over the account.
PS my twitter is @greenwerks
They must be taking the login in data and then taking over the account.
PS my twitter is @greenwerks
48
people have this problem
I have this problem, too!
Tell me when someone solves it.
The more people who report this problem, the more it gets noticed.
The more people who report this problem, the more it gets noticed.
-
Inappropriate?yes i just got two dm from twitter users here they are...
dm from RobertWesleyB hey! check out this funny blog about you... http://jannawalitax.blogspo
dm from clicktopound hey! check out this funny blog about you... http://jannawalitax.blogspo
I’m sad for them because they fell for the trick.
-
mine was slightly different....
kfcollection Hey, i found a website with your pic on it... LOL check it out here http://twitterblog.access-l... about 18 hours ago -
Inappropriate?There's a note up on the Status blog for this.
http://status.twitter.com/post/681965...
2 people say
this solves the problem
-
Inappropriate?I just got one, too - see below:
----
hey! check out this funny blog about you...
http://jannawalitax.blogspot.com/
stevedillard / stevedillard
--
follow me at http://twitter.com/stevedillard
----
I fell for the trick - tried to log in - and then I came to this page to report it, and I couldn't log in. Don't know if I'll have to change accounts or what. Sucks. -
The login for GSFN is different than the login for Twitter -
Inappropriate?Hi. I suggest you change your Twitter passwords immediately if you logged into that site.
-
Inappropriate?Had the same e-mail today. I didn't log in of course so no damage here. The user that sent it to me was "Lucgoose."
I found this interesting page on the net. The writer seems to have tracked the source of this to individuals in China. He supplies the data on this page: http://demidog.blogspot.com/2009/01/b...
Is Twitter doing anything about this I wonder?
John (ZenMoments) -
yeah they have a post within this thread... they were on in within moments
http://status.twitter.com/post/681965... -
interesting. After I twittered about China being bad and needing sanctions, I suddenly lost 80 tweets over night. I think you are on to something. -
Inappropriate?http://twitter.com/Springbaby31 was the account that sent me that same message
I’m anxious
-
Then Springbaby31, someone you're following, clicked the link and typed in their name and password, granting permission to this site to use her account (i guess it's a her) to send messages to everyone following her. -
Me too -
Inappropriate?Twitter says they're on it, according to http://twitter.com/twitter
-
Inappropriate?I too received a dm...only too late did I see the "don't open" message. Now what???
-
I clicked too but I went and quickly changed my password. So fat I have received this message from the following Twitter accounts - queenbee101 and privateconcerts. The funny thing is that one of them actually had the links that says twitter account access! -
Inappropriate?I just got a DM from this phishing scam as well: jude
r@ockingjude Hey, i found a website with your pic on it... LOL check it out here http://twitterblog.access-l... 2 minutes ago
I’m sad
-
That means you're following whoever that person is, and they clicked the link and typed in their name and password. You don't have any virus or anything, they just gave their credentials away. -
Inappropriate?Perhaps you can send a message to the person you received the DM from and advise them to change their password
-
Inappropriate?I didn't login so I am safe but my follower isn't .. too bad. The message is the same most others are getting too:
Hey, i found a website with your pic on it... LOL check it out here http://twitterblog.access-logins.com/... ryaguy / ryaguy
I’m Sad that ryaguy fell for the phishing scam.
-
Inappropriate?I fell for it...made a new account but I can't even activate it on my phone because my number is "still in use" on my old account. Ugh, I'm so mad!
-
you can always just login and change your password on your old account, and it'll be fine, it's not lost forever -
Inappropriate?I got the email about someone having seen my picture.
-
contact the person who e-mailed you and ask for their bank account info, i bet they'll just give it to you! -
Inappropriate?You think so? LOL
-
Inappropriate?I tried changing my password. But they beat me to it...I was an hour away from home and was getting text messages from my friends asking me what this blog thing was...that's when I realized my mistake...and by the time I was able to change my password it had been changed already. :(
I’m ticked off
-
Inappropriate?Wow, I'm such a blonde...I can change my password after all...sheesh, nevermind. Well, I'm pretty happy now :)
I’m relieved
-
i caught mine in time too..changed my pw last night, logged on all day today under new pw, changed my pic and everything, but when i logged off and tried to log back on, it said username and pw did not match..tried new and old..still cant get on! was on on my phone still, able to update and all, tried to change pw there and got logged off and now i'm out completely! any advice? -
Inappropriate?May be a dumb question.... I am at a loss though....What would be the payoff of hacking into twitter?
I’m not sure
-
Inappropriate?I think it's probably a good display of force, i.e. look at all these people willing to give their logins away. Firefox blocked this hack within the first hour, so pretty much everyone who got 'hacked' after that was guaranteed to not be using Firefox.
If this isn't a good enough reason to switch, I don't know what is.
I’m sad
-
Inappropriate?If you happen to use the same password both on Twitter and on your email account, hackers can gain access to your email, since they can see from your account what your email address is. That would be one possible motive.
So if you believe your Twitter account has been compromised and you use the same password on your email account, I suggest you change your email account's password as well. -
Inappropriate?You're saying when I logged in from the link I gave away my login? I feel so ignorant to this stuff.
-
Yes. It's a fake site that's pretending to be Twitter. So it's likely to be storing all the usernames and passwords that people enter in it. -
Inappropriate?Well I hope that this is now behind us- it looks like the website is now blocked in Firefox and Chrome. I stopped receiving DM's last night- Thanks twitter and @mattcutts for the quick response to the issue and removing the spam from the community.
For those who gave their login info away-
Reset your Twitter password here
You can also learn more about this scam on the twitter blog -
i've attempted to reset my twitter pw using that link..it sends an email to me saying my pw has been reset, gives me a link to go to, but the link just takes me to the twitter log in page..i CANT LOG IN b/c my pw has been compromised.. -
greencontractor posted the 'logged in' password page. here's the one you need - http://twitter.com/account/resend_pas... -
Inappropriate?i had the same problem. i got a dm from @zoomer33 saying hey look at this funny blog rosalierebyb.blogspot.com. i just blocked him.
-
You do know you followed zoomer33, that's how he had the chance to message you, right? Also, like seconds after reading your post I got a DM from an idiot with the same exact blogspot link. -
Inappropriate?hey look at this funny blog http://rosalierebyb.blogspo... received it from @Blogmuse
-
Inappropriate?Basically this thread is becoming a list of people who don't use Firefox or Chrome (or OpenDNS) and don't read their Address Bar. Do you want me to call these people on the phone or something? "Change your password, someone is complaining that you're gullible on the Twitter Get Satisfaction page"?
-
I'm just reporting the account. Maybe suspend the accounts w/ notice to contact & be told why.... -
That'd be lovely but they could also just do a database query on people who sent out those links and do it automatically, there has to be thousands. -
thanks for trying to help..used the link u attached, gave me the same thing..taking me to log in page...but cant log in -
you replied to the wrong comment of mine, but oh well. have you tried going to the sign in page and clicking the forgot password? link? -
Inappropriate?My account was hijacked this am and sent this out this am.
-
Since you didn't read the thread, you'll read this e-mail when it hits your inbox: change your password. Also, if you delete the sent DMs, they'll actually be deleted on the receiver's side too. -
Password was changed and DMs deleted before I posted. Um, thanks for your help though. -
This comment was removed on 01/05/09.
see the change log -
Inappropriate?wow you know how 1 hour ago i got a dm with a blogspot link? I just got a FOLLOWUP from the SAME PERSON:
fixed it.. hehe here is that blog i wanted to show you
http://twitterblogs.access-logins.com...
HAHAHA, so they're now reusing accounts of people who still haven't changed their password.
NICE WORK TWITTER, WHY HAVEN'T YOU BLOCKED 122.136.45.47 IN YOUR FIREWALL YET?
dig twitterblogs.access-logins.com
;; QUESTION SECTION:
;twitterblogs.access-logins.com. IN A
;; ANSWER SECTION:
twitterblogs.access-logins.com. 3600 IN A 122.136.45.47
;; Query time: 1297 msec
;; SERVER: 208.67.222.222#53(208.67.222.222)
;; WHEN: Sun Jan 4 15:29:24 2009
;; MSG SIZE rcvd: 64
ALSO that one asks for a facebook login lol this is KOOBFACE LIKE
http://latimesblogs.latimes.com/techn...
I’m sad
1 person says
this solves the problem
-
Inappropriate?if you have the app, change your mac address as well
-
http://www.youtube.com/watch?v=wKjxFJ... <-- the only response to "change your mac address" that's valid -
Inappropriate?Hello
@alix1 cannot log into her account. She reset her password after the hackers sent DMs from her twitter. An email was suppose to be sent to her (she did the 'forgot password' option at the login) but she never received it. Can someone help?
I’m sad
-
she should contact twitter directly for this one - http://twitter.com/help -
Inappropriate?I was hit by 15 accounts. What I don't get is why twitter doesn't disable links like myspace does. All I can do is to block the profile that sent me the link, manually, it is a royal pain. I didn't click on the redirect this time. I saw the url when it said http://twitterblog.access-logins.com/...
I’m frustrated
-
Inappropriate?This needs to be fixed RIGHT NOW. This is amazing that it keeps happening. I have gotten so many requests to go this site and enter in my log in information.
I’m anxious
-
Inappropriate?I looked at the site and have a question:
<quote>input name="authenticity_token" type="hidden" value="f7a20c1d5e391eea6e3eb98c48b4e7cb8e36346a"</quote>
if Twitter revoked that key wouldn't that solve the problem?
I’m worried about spam
-
that has nothing to do with anything, they saved a copy of the twitter page and it had one of those in it, they just didn't bother to remove it -
Inappropriate?I am not login to that site. I am change my password in twitter dashboard. I have tell to my friend not to login to that site. but i am, my self, i the one that already hack, i change my password, and they said that i enter wrong curent password. Please, reset my password.
I dont get any email to reset my pass.
I’m frustrated
-
Inappropriate?I don't recall visiting any of these sites, but it is certainly possible I did. They changed my password and email.
http://www.twitter.com/wadeng is my account, prior email was wade@newgrounds.com.
I’m frustrated
-
Whoever hacked my account just sent out an obscene tweet. :( -
Are you sure that wasn't just an excuse to admit your love of Hannah Montana? -
Inappropriate?Here is the new phishing link I received.. it is attempting to access twitter and facebook passwords...
They Suck!!
via Twitter to me
show details 8:33 PM (33 minutes ago) Reply
Check out this blog type website. you need to see it.. http://bloggertwit.access-logins.com/...
I’m pissed
-
Inappropriate?Here is a new version of the message "Check out this blog type website. you need to see it.. http://bloggertwit.access-logins.com/..."
Looks like the same people trying to scam login info.
Be careful. -
Inappropriate?So I made a filter in Gmail - *@postmaster.twitter.com
Test the search you will see something like 800 messages. On the next step select Skip the Inbox and Mark It read I made a label Called Twitter that way I can still pull up all my twitter email.
ALWAYS notice the text right before .com if it is not something you notice do not click on it.
-
why not expand your filter to include body text and just filter out access-logins or whatever that domain was -
That is a bit more clever than I was. -
Inappropriate?I got a message in my email that my twitter account is linked to and they said a blog had started about me and I went there and than it was an error page.
I’m sad
Loading Profile...












