Twitter urges 336 million users to change passwords after bug discovered
Login details had been stored in plain text on the company’s internal systems
Twitter has urged all of its 336 million users to update their passwords after the company discovered that some had been exposed in plain text on an internal server.
The social media site’s co-founder, Jack Dorsey, said in a tweet that as a result of a software bug, the passwords had been “written to an internal log” prior to the “hashing” process, which masks login details with a series of random letters and numbers before they are stored.
He added that the bug had been “fixed”, and that an internal investigation had found “no indication of breach or misuse” of the exposed data.
The Week
Escape your echo chamber. Get the facts behind the news, plus analysis from multiple perspectives.
Sign up for The Week's Free Newsletters
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
Nevertheless, Twitter users are also being urged to activate two-factor authentication, “to help stop accounts being hacked”, BBC News reports.
The security feature prompts users to enter a code, sent to them either via a text message or through a third-party app, after they have correctly inputed their password.
Although Dorsey didn’t reveal how many passwords had been exposed, a company insider told Reuters that the number was “substantial” and that they had been stored as text files for “several months”.
The source said Twitter had discovered the glitch “a few weeks ago” and reported it to “some regulators”, according to the news site.
A free daily email with the biggest news stories of the day – and the best features from TheWeek.com
Meanwhile, Twitter’s chief technology officer, Parag Agrawal, provoked anger among users by tweeting that the company “didn’t have to” share information about the data bug, adding that it was simply “the right thing to do”.
Agrawal later apologised for suggesting that the company could have covered up the issue, insisting that he had “felt strongly” that the information should be shared.
-
Political cartoons for November 13Cartoons Thursday's political cartoons include a flurry of Epstein files, grocery prices, and an end to the shutdown
-
Grove of Narberth: comfort and style in the Welsh countrysideThe Week Recommends This boutique Georgian manor in Pembrokeshire is the perfect rural retreat
-
Sudoku medium: November 13, 2025The Week's daily medium sudoku puzzle
-
What's Linda Yaccarino's legacy? And what's next for X?Today's Big Question An 'uncertain future' in the age of TikTok
-
X CEO Yaccarino quits after two yearsSpeed Read Elon Musk hired Linda Yaccarino to run X in 2023
-
Musk chatbot Grok praises Hitler on XSpeed Read Grok made antisemitic comments and referred to itself as 'MechaHitler'
-
Bluesky: the social media platform causing a mass X-odusThe Explainer Social media platform is enjoying a new influx but can it usurp big rivals?
-
Pakistan 'gaslighting' citizens over sudden internet slowdownUnder the Radar Government accused of 'throttling the internet' and spooking businesses with China-style firewall, but minister blames widespread use of VPNs
-
Threads turns one: where does the Twitter rival stand?In the Spotlight Although Threads is reporting 175 million active monthly users, it has failed to eclipse X as a meaningful cultural force
-
How social media is limiting political contentThe Explainer Critics say Meta's 'extraordinary move' to have less politics in users' feeds could be 'actively muzzling civic action'
-
A running list of Elon Musk's biggest controversiesIn Depth The business mogul has a long history in the hot seat