Hacker News new | past | comments | ask | show | jobs | submit login
[flagged] President Trump’s Twitter doesn't have 2FA, password “maga2020 ” (techcrunch.com)
79 points by coloneltcb on Oct 22, 2020 | hide | past | favorite | 17 comments



As mentioned in the article, a Twitter spokesperson says: “We’ve seen no evidence to corroborate this claim, including from the article published in the Netherlands today”

White House also denying this story.


If this is true I'm deeply disappointed in the world's hackers that such a vulnerability on such a target went unexploited for such a long time. However, all that said, I doubt it's true just because I expect someone else would've discovered this long before now.


The article is light on details of how they verified this, but if they did get in, I'd wonder if they got into a honeypot of some sorts.


The link in the OP is redirecting me over advertising.com. Here's the outline: https://outline.com/5BYNkE



I thought Twitter required all “checkmarks” to have 2FA enabled, but apparently that's not the case? Sounds rather… careless.


It's far more likely that this article is fake.


TechCrunch is pretty trusted. I don't think they'd publish this if it weren't true. They'd be accountable for all sorts of libel


While this is certainly not impossible, I find it to be highly unlikely. If it's true that Trump's password is this weak then we should have seen account takeovers by now considering there are many people who would love to control that account both for economic reasons (Trump's tweets used to move markets) and political ones.


There would be no point. The information would be immediately disavowed by Trump. If you wanted to usefully manipulate people, you'd need to be a little more subtle.


> The information would be immediately disavowed by Trump.

You can still make a few 100k in btc or stock derivatives before he does.


At this point I'd be surprised if trump's twitter didn't have an implicit 2FA of calling someone on staff for suspicious logins.

Is there good information as to why the July 15 account takeover attack didn't include trump's twitter?


"Mr. Trump’s account got extra protection after past incidents, according to a senior administration official and a Twitter employee, who would speak only anonymously because the security measures were private."

Source: https://www.nytimes.com/2020/07/16/technology/twitter-hack-i...


A better password would have been "makeauthenticationgreatagain"


This guy has cracked Trumps password before. Incredible... I would have expected such a password to be cracked much sooner. Maybe no one is actually trying to get into Trumps twitter account?


I'd guess they wouldn't be the first, but they may be the first white hat.


its claimed that the previous password was "youarefired", that is also unlikely.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: