💣🔗

Twilio Security Incident

Summer 2022 1096 days ago Resolved
Incident Overview
Situation Description

A 19-year-old Florida man was arrested and charged with wire fraud, identity theft, and SIM-swapping to steal cryptocurrency, linked to a hacking group responsible for cyber intrusions at major U.S. technology companies in the summer of 2022.

Event Types
Malware / Destructive Attack Supply Chain Compromise
Industry Sector
Technology
Geographic Scope
National (US)
Response Actions
Notified Affected Individuals & Entities Fulfilled Formal Breach Disclosure Obligations
Impact Analysis
Event Types (2 identified)
Malware / Destructive Attack Supply Chain Compromise
Financial Impact
$800,000 USD
Records Affected
0
Data Types Compromised
PII (Personally Identifiable Information) Credentials Source Code Operational / System Data
Primary Impacts
Financial Loss Data Exposure Operational Disruption Reputational Damage
Key Decisions Made
Technical Analysis
Attack Method

Social Engineering

Threat Actor Attribution
Scattered Spider 0ktapus Star Fraud
Vulnerability / Tool
Plex Media Server (unpatched)
Additional Information
Quick Facts
Company:
Twilio
Date:
Summer 2022
Status:
Resolved
Decision Maker:
nan
Position:
nan
Published:
9/01/2024
Source Information
Original Query
DOJ indictments against Scattered Spider or UNC3944 members
View Original Source
Timeline
Information Published

9/01/2024

Incident Occurred

Summer 2022 (1096 days ago)

Status: Resolved

Estimated resolution based on age

Actions
View Company Profile