WHID 2009-23: Miley Cyrus Twitter Account Hit By Sex-Obsessed Hacker

Tagged:  
Updated: 
19 February 2009
Attack Information
WHID ID: 
2009-23
Date Occured: 
17 Feb 2009
Attack Method: 
Outcome Information
Target Information
Attacked Entity Field: 
Web 2.0
Attacked Entity Geography: 
USA

It is Twitter again, it is a celebrity again. Why don't they keep their password to themselves. This incident is even uglier as the attacker posted obscene content on the Twitter account of the 16 years old actress Miley Cyrus. This is not the first attack targeting Miley Cyrus. As reported by WHID, her personal G-mail account was hacked last year and personal pictures were stolen and published online.

We assume that he just guessed the password. Was it a trivial one? did he find a way to brute force it? Or was it something entirely different like yet another Twitter CSRF bug? time will tell.

I would classify this as a defacement.

However in this case the incident involves breaking into a gmail account and stealing pictures rather than defacing any site. I therefore classified it as an information leakage incident. The defacement incident is only mentioned as a background.