Clicky

  • Login
  • Register
  • Submit Your Content
  • Contact Us
Saturday, August 24, 2024
World Tribune
No Result
View All Result
  • Home
  • News
  • Business
  • Technology
  • Sports
  • Health
  • Food
Submit
  • Home
  • News
  • Business
  • Technology
  • Sports
  • Health
  • Food
No Result
View All Result
World Tribune
No Result
View All Result

Hacker ‘hijacked’ CIA channel thanks to X glitch

October 18, 2023
in Business
Reading Time: 3 mins read
A A
Hacker ‘hijacked’ CIA channel thanks to X glitch
0
SHARES
ShareShareShareShareShare

Hacker ‘hijacked’ CIA channel thanks to X glitch

A hacker has detailed how a common glitch on Elon Musk’s X platform allowed him to “hijack” a CIA channel used to gather intelligence.

READ ALSO

Mike Lynch yacht probe: Passengers were likely asleep as storm hit

71-year-old billionaire Sir Jim Ratcliffe is in a race to secure his legacy

The CIA’s official page on X, the platform formerly known as Twitter, describes the organization as America’s “first line of defense.”

The U.S. government organization is known for gathering and analyzing intelligence, sometimes via online channels, from a wide network of sources all over the world.

Included in its brief bio on X is a link that directs users to an account on the messaging app Telegram. The Telegram account, titled “Securely Contacting CIA,” allows people to reach out to the intelligence agency with tips or information.

However, hacker Kevin McSheehan said he was able to hijack the link so that users would be redirected to his own Telegram channel, thanks to a flaw in the way X condenses URLs posted to its site.

In a Wednesday post on X, McSheehan said that while he was “not in the business of making the CIA look bad,” he had recently “fallen backwards into a situation where I had no option but to secure their spy onboarding funnel.”

On X, lengthy URLs are automatically shortened—but the condensed links should still send users to the poster’s intended web page. However, according to McSheehan, the process can produce incomplete links that are often difficult to spot—which is what he said had happened on the CIA’s X account.

The BBC first reported the news in an interview with McSheehan that was published on Wednesday.

At some point after Sept. 27, the CIA added the link https://t.me/securelycontactingcia to its X profile page, which should have taken users to its Telegram channel for people wanting to share tips.

However, because of the X glitch, the link was condensed to https://t.me/securelycont—which was a URL for an unused Telegram account. If the error was noticed, anyone could have claimed the link for their own Telegram channel and had the traffic from the CIA’s X account directed to their own page.

“It was a perfect storm for something pretty bad to happen—and potentially in an undetected way for quite some time assuming a perfect replica of the CIA channel was produced,” McSheehan said in his post on X. “This could have [allowed] a sustained attack run for the purpose of intercepting sensitive information meant to land in the CIA’s inbox. The attack scenarios are dreadful.”

McSheehan did not immediately respond to Fortune’s request for an interview, but he told the BBC that when he spotted the error, his “immediate thought was panic.”

“I saw that the official Telegram link they were sharing could be hijacked—and my biggest fear was that a country like Russia, China or North Korea could easily intercept Western intelligence,” he said.

Unclaimed Telegram username

In a bid to stop the error being dangerously misused, McSheehan said he registered the unclaimed Telegram username so that anyone who clicked on it would land on his own Telegram channel—which he used to warn people not to share sensitive information.

Despite the potential fallout, McSheehan insisted in his post on X on Wednesday that it was “chiefly X’s mistake—not the CIA’s,” and that because the platform’s link shortenings can produce incomplete links that are difficult to spot, he “doesn’t place any serious manner of blame on the CIA.”

X did not respond to Fortune’s request for comment, and a spokesperson for the CIA was not immediately available for comment when contacted outside of usual business hours.

However, the BBC reported that within an hour of it reaching out to the CIA, the mistake on its X bio had been corrected.

In a May 15 post—shared weeks after the CIA’s Telegram channel was set up—officials outlined why they had established a presence on the platform.

“CIA’s global mission requires that individuals be able to contact us securely from anywhere in the world,” the post read. “That’s why, for the first time, CIA is establishing a presence on Telegram—to reach those who feel compelled to engage CIA and ensure they know how to do so as securely as possible… We value those willing to talk with us, and your safety is our priority.”

In another Telegram post, written in Russian, the CIA warned potential aides to “be wary of any channels that claim to represent the CIA.”


Credit: Source link

ShareTweetSendSharePin
Previous Post

The Morning After: X starts charging new users $1 per year to send tweets

Next Post

Travis Kelce dishes on ‘electric’ return to ‘SNL’ with Taylor Swift

Related Posts

Mike Lynch yacht probe: Passengers were likely asleep as storm hit
Business

Mike Lynch yacht probe: Passengers were likely asleep as storm hit

August 24, 2024
71-year-old billionaire Sir Jim Ratcliffe is in a race to secure his legacy
Business

71-year-old billionaire Sir Jim Ratcliffe is in a race to secure his legacy

August 24, 2024
The ‘Viking Code’ leadership of Nicolai Tangen, a wealth fund CEO unafraid to lock horns with Elon Musk
Business

The ‘Viking Code’ leadership of Nicolai Tangen, a wealth fund CEO unafraid to lock horns with Elon Musk

August 24, 2024
Meta blocked an Iranian hacking network posing as tech support from Microsoft and Google
Business

Meta blocked an Iranian hacking network posing as tech support from Microsoft and Google

August 24, 2024
New Apple iPhones and wearables to be unveiled Sept. 10
Business

New Apple iPhones and wearables to be unveiled Sept. 10

August 24, 2024
How to watch, stream week four of the NFL preseason football games live online free without cable: Fox, CBS, NBC, ESPN
Business

How to watch, stream week four of the NFL preseason football games live online free without cable: Fox, CBS, NBC, ESPN

August 24, 2024
Next Post
Travis Kelce dishes on ‘electric’ return to ‘SNL’ with Taylor Swift

Travis Kelce dishes on 'electric' return to 'SNL' with Taylor Swift

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

What's New Here!

Yankees soak in awestruck Little Leaguers prior to Tigers game

Yankees soak in awestruck Little Leaguers prior to Tigers game

August 19, 2024
CIA brainwashing experiments helped make Outlast an iconic horror series

CIA brainwashing experiments helped make Outlast an iconic horror series

August 14, 2024
US tech company pulls Olympics ads after opening ceremony ‘mockery of the Last Supper’

US tech company pulls Olympics ads after opening ceremony ‘mockery of the Last Supper’

July 28, 2024
Jets finally hoping luck breaks their way in 2024

Jets finally hoping luck breaks their way in 2024

August 24, 2024
Jets want — and need — to see one player much less

Jets want — and need — to see one player much less

August 3, 2024
It’s a ‘gamble’ if Giants decide to not to keep me

It’s a ‘gamble’ if Giants decide to not to keep me

July 28, 2024
Superb cameras, with a side of Gemini AI

Superb cameras, with a side of Gemini AI

August 21, 2024

About

World Tribune is an online news portal that shares the latest news on world, business, health, tech, sports, and related topics.

Follow us

Recent Posts

  • Phil Simms has problem with Tom Brady’s young QB ‘tragedy’ comments
  • Mike Lynch yacht probe: Passengers were likely asleep as storm hit
  • Tommy DeVito the biggest Giants storyline to watch in preseason finale
  • Minor league Threshers’ bat dog does wrong duty, poops on field

Newslatter

Loading
  • Submit Your Content
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2024 World Tribune - All Rights Reserved!

No Result
View All Result
  • Home
  • News
  • Business
  • Technology
  • Sports
  • Health
  • Food

© 2024 World Tribune - All Rights Reserved!

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In