Twitter Security Failures

From iGeek
NO Twitter.png
Twitter was the worst managed Big Tech company, according to Whistleblower Peiter "Mudge" Zatko.
Twitter was the worst managed Big Tech company, according to Whistleblower and ex-security executive Peiter "Mudge" Zatko. He backs it up with evidence that it horrific (if true) to anyone that works in the industry. The most basic common sense security measures and policies and procedures were not in place.
ℹ️ Info       Tango style Wikipedia Icon.svg   
~ Aristotle Sabouni
Created: 2022-12-12 
Peter Zatko (Mudge)
YouTube Logo 2017.svg

Twitter Head of Security and Whistleblower.

A Whistleblower (Peter Zatko, ex Security exec at Twitter) was blowing the doors off how poorly Twitter was managed in his testimony to congress.

  • Twitter Mismanagement Twitter was the worst managed Big Tech company, according to Whistleblower / ex security executive Peiter "Mudge" Zatko.
  1. Foreign assets working at twitter, but that was blown off by Management as no concern.
    • What this means in the real world is that a Chinese National saying the wrong things in America on twitter, could be outted, then harassed or killed for what he posted by the CCP. But Twitter Management was either too stupid to understand what that meant, or too callous to care about the lives of victims of despotism.
  2. 5,000+ people had privileged access to production. (They had no dev->stage->production flow, everything was done live). Then they remoted in to their work machines, and had spyware on one of both of them.
  3. This means that hackers could not only compromise the developers system, but all the data on production (including customer data). And without End-to-end encryption for DMs (they don't have that), it means everything on Twitter was available to foreign spys.
  4. Twitters systems were fragile, and might be unrecoverable if everything came down at once, and they had no way to bring it all up. This almost happened and caused a scramble, but they still didn't fix it.
  5. These violations meant they had not complied with their promises to FTC and their board about using SDLC processes, and lied about it. (Basic SOX compliance failure). This violates transparency and reporting rules, and is very, very bad.


GeekPirate.small.png



🔗 More

Twitter
Twitter is an enemy of free speech and tolerance.


🔗 Links

Tags: Twitter/all


Cookies help us deliver our services. By using our services, you agree to our use of cookies.