Trusted

SEC X (Twitter) Breach: The SIM Swap Attack That Set it Off

2 mins
Updated by Ryan Boltman
Join our Trading Community on Telegram

In Brief

  • The SEC faced a major security breach when its Twitter account was hacked through a SIM swap attack, leading to false Bitcoin ETF news.
  • The SEC had disabled multi-factor authentication on the account, which led to a $230 million liquidation in the crypto market after the false tweet.
  • The incident underscores the importance of strong digital security and vigilance against cyber threats, especially for public financial institutions.
  • promo

The US Securities and Exchange Commission (SEC) faced a significant security breach on January 9, 2024, when its official X (Twitter) account fell victim to a SIM swap attack.

This incident led to a false message being posted about the approval of a spot Bitcoin exchange-traded fund (ETF), triggering a tumultuous response in the cryptocurrency market.

How Hackers Took Control of SEC’s X Account

Two days after the breach, the SEC and its telecom carrier identified the cause: a SIM swap attack. This attack transfers a phone number to a different device without the owner’s knowledge. It allowed unauthorized access to the SEC’s X account.

Read more: 15 Most Common Crypto Scams To Look Out For

The SEC claims that the breach did not happen through its system but through its telecom carrier. After gaining control of the SEC’s phone number, the attacker reset the password for the SEC X account. Meanwhile, law enforcement is investigating the SIM swap and how the attacker knew the associated phone number.

Notably, the SEC is collaborating with the Federal Bureau of Investigation (FBI), Department of Homeland Security, Commodity Futures Trading Commission (CFTC), Department of Justice (DoJ), and its Enforcement Division to investigate the matter. The SEC’s Inspector General is also involved in the investigation.

To the community’s surprise, the SEC had disabled multi-factor authentication (MFA) on the X account since July 2023 due to access issues. Finally, after the breach, the regulator enabled the MFA.

“Saving your staff a few seconds when logging in is probably not worth the billions in damages caused by fraud after being sim swapped,” said Boring Security.

The security lapse had major consequences. A false tweet about a Bitcoin ETF caused a $230 million liquidation in the crypto market. Bitcoin’s price spiked to $48,000, then fell sharply after the SEC exposed the tweet as false.

This breach shows the need for strong security in digital communications. The disabled MFA feature points to the risks of sacrificing security for convenience.

Read more: Crypto Social Media Scams: How to Stay Safe

This incident highlights the ongoing need for vigilance against cyber threats. For organizations like the US Securities and Exchange Commission, protecting digital assets and communication is vital for public trust and financial market integrity.

Top crypto projects in the US | November 2024
Coinbase Coinbase Explore
Coinrule Coinrule Explore
Uphold Uphold Explore
3Commas 3Commas Explore
Chain GPT Chain GPT Explore
Top crypto projects in the US | November 2024
Coinbase Coinbase Explore
Coinrule Coinrule Explore
Uphold Uphold Explore
3Commas 3Commas Explore
Chain GPT Chain GPT Explore
Top crypto projects in the US | November 2024

Disclaimer

In adherence to the Trust Project guidelines, BeInCrypto is committed to unbiased, transparent reporting. This news article aims to provide accurate, timely information. However, readers are advised to verify facts independently and consult with a professional before making any decisions based on this content. Please note that our Terms and ConditionsPrivacy Policy, and Disclaimers have been updated.

Harsh.png
Harsh Notariya
Harsh Notariya is an Editorial Standards Lead at BeInCrypto, who also writes about various topics, including decentralized physical infrastructure networks (DePIN), tokenization, crypto airdrops, decentralized finance (DeFi), meme coins, and altcoins. Before joining BeInCrypto, he was a community consultant at Totality Corp, specializing in the metaverse and non-fungible tokens (NFTs). Additionally, Harsh was a blockchain content writer and researcher at Financial Funda, where he created...
READ FULL BIO
Sponsored
Sponsored