eth

Watcher.Guru: Currently unable to confirm the method of the hack, has contacted platform X

ChainCatcher news, Watcher.Guru posted on platform X that its account was hacked today. Two weeks ago, the team suspected that someone was attempting to breach the account and sent a message to X employees as a warning.According to their description, on March 5, a Telegram user sent them a link to an X article, which had the official X domain but contained an unusual path, suspected to be a social engineering attack method. Although the team did not find any obvious risks at that time, they still sent a message to X's cybersecurity head @cstanley, but did not receive a reply.On March 21 at 10:05 AM Beijing time, Watcher.Guru discovered that its account had unauthorized content published and deleted it within minutes, while logging out of all devices and resetting the password. However, since their "JUST IN" or "BREAKING" tweets automatically sync to social platforms like Telegram, Facebook, and Discord, the related content was automatically forwarded.Watcher.Guru stated that it cannot confirm whether this hacking incident was caused by that specific link, but similar incidents have recently occurred with db (@tier10k). Additionally, their account has 2FA enabled, no connected applications, and no API tokens detected being used to publish content.Currently, Watcher.Guru is still investigating the specific method of the breach and has contacted X officials for further clarification.
ChainCatcher Building the Web3 world with innovators