{"id":9618,"date":"2024-01-10T08:16:58","date_gmt":"2024-01-10T08:16:58","guid":{"rendered":"https:\/\/coinengineer.io\/blog\/?p=9618"},"modified":"2024-01-10T08:16:58","modified_gmt":"2024-01-10T08:16:58","slug":"the-huge-sec-was-hacked-because-it-couldnt-set-2fa","status":"publish","type":"post","link":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/","title":{"rendered":"The Huge SEC Was Hacked Because It Couldn&#8217;t Set 2FA!"},"content":{"rendered":"<p>The official Twitter account of the United States Securities and Exchange Commission (SEC) fell victim to a hacker attack due to a security vulnerability. Twitter revealed that the attack was caused by the security team not enabling two-factor authentication (2FA) on the account. This incident followed a tweet containing false information that shook the cryptocurrency markets.<\/p>\n<p>In a statement on the SEC security page, it was mentioned that the attack occurred when an unidentified individual seized the phone number associated with the account. This happened in the form of a commonly known SIM swap attack. The attacker likely convinced a third-party telecommunications provider to take control of the phone number associated with the SEC account.<\/p>\n<p>Following the incident, the SEC stated in a post-event announcement, &#8220;Based on our investigation, the breach did not originate from SEC systems but occurred due to an unidentified individual taking control of a phone number associated with @SECGov through a third party.&#8221;<\/p>\n<p>You may notice:\u00a0<em><strong><a href=\"https:\/\/coinengineer.net\/blog\/bitcoin-etf-approval-scandal-sec-is-on-the-target-board\/\">Bitcoin ETF Approval Scandal! SEC is on the Target Board!<\/a><\/strong><\/em><\/p>\n<p>This security vulnerability led to the publication of a tweet containing false information, such as the approval of a spot Bitcoin exchange-traded fund (ETF), on the SEC&#8217;s official social media platform. U.S. Senators J.D. Vance and Thom Tillis criticized the SEC for operational security shortcomings and requested a statement regarding the incident.<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">CNBC says &quot;X was hacked&quot;, this is not a true statement. <a href=\"https:\/\/t.co\/4AseAQuvrk\">pic.twitter.com\/4AseAQuvrk<\/a><\/p>\n<p>&mdash; Christopher Stanley (@cstanley) <a href=\"https:\/\/twitter.com\/cstanley\/status\/1744884341333971431?ref_src=twsrc%5Etfw\">January 10, 2024<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>In the senators&#8217; letter, it was stated, &#8220;These developments raise serious concerns about the Commission&#8217;s internal cybersecurity procedures and are contrary to the Commission&#8217;s triple mission to protect investors.&#8221;<\/p>\n<p>Tesla CEO Elon Musk, who owns SEC, also made a statement on CNBC regarding the matter, criticizing the traditional media&#8217;s reporting style and emphasizing that SEC&#8217;s internal systems were not compromised.<\/p>\n<p>While this incident seriously damages the reputation of the SEC, it has also raised concerns about its ability to protect investors. In response to calls for transparency, a list of Congress members called for the incident to be officially investigated.<\/p>\n<p>To prevent similar attacks in the future, experts suggest enabling two-factor authentication on all online accounts, using strong passwords, regularly changing passwords, and providing cybersecurity training to employees.<\/p>\n<p>It is expected that the SEC will thoroughly investigate the incident and take preventive measures.<\/p>\n<hr \/>\n<div class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<div class=\"content darkmysite_style_txt_border darkmysite_processed\" tabindex=\"0\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<div class=\"ac-container ac-adaptiveCard darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<div class=\"ac-textBlock darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<div class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<div class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<div class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<div class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<div class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">\n<p class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\"><em class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">Also, you can freely share your thoughts and comments about the topic in the comment section. Additionally, please follow us on our\u00a0<a class=\"darkmysite_style_txt_border darkmysite_style_link darkmysite_processed\" href=\"https:\/\/t.me\/coinengineernews\" target=\"_blank\" rel=\"noreferrer noopener\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\"><strong class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">Telegram<\/strong>,\u00a0<\/a><a class=\"darkmysite_style_txt_border darkmysite_style_link darkmysite_processed\" href=\"https:\/\/www.youtube.com\/@CoinEngineer\" target=\"_blank\" rel=\"noreferrer noopener\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\"><strong class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">YouTube<\/strong><\/a>\u00a0and\u00a0<a class=\"darkmysite_style_txt_border darkmysite_style_link darkmysite_processed\" href=\"https:\/\/twitter.com\/coinengineers\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\"><strong class=\"darkmysite_style_txt_border darkmysite_processed\" data-darkmysite_alpha_bg=\"rgba(0, 0, 0, 0)\">Twitter<\/strong><\/a>\u00a0channels for the latest news and updates.<\/em><\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<div class=\"blog-share text-center\"><\/div>\n","protected":false},"excerpt":{"rendered":"<p>The official Twitter account of the United States Securities and Exchange Commission (SEC) fell victim to a hacker attack due to a security vulnerability. Twitter revealed that the attack was caused by the security team not enabling two-factor authentication (2FA) on the account. This incident followed a tweet containing false information that shook the cryptocurrency<\/p>\n","protected":false},"author":13,"featured_media":9619,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[9,2],"tags":[1201,39,3573,3572,3571],"class_list":["post-9618","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-crypto-news","category-news","tag-hack","tag-sec","tag-sec-social-media-hacked","tag-sec-was-hacked","tag-the-huge-sec-was-hacked-because-it-couldnt-set-2fa"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v22.6 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>The Huge SEC Was Hacked Because It Couldn&#039;t Set 2FA! - Coin Engineer<\/title>\n<meta name=\"description\" content=\"The official Twitter account of the US Securities and Exchange Commission (SEC) was attacked by a hacker due to a security vulnerability.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The Huge SEC Was Hacked Because It Couldn&#039;t Set 2FA! - Coin Engineer\" \/>\n<meta property=\"og:description\" content=\"The official Twitter account of the US Securities and Exchange Commission (SEC) was attacked by a hacker due to a security vulnerability.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/\" \/>\n<meta property=\"og:site_name\" content=\"Coin Engineer\" \/>\n<meta property=\"article:published_time\" content=\"2024-01-10T08:16:58+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/coinengineer.net\/blog\/wp-content\/uploads\/2024\/01\/2-8.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"840\" \/>\n\t<meta property=\"og:image:height\" content=\"560\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/webp\" \/>\n<meta name=\"author\" content=\"Ahmet Bedirhan Arvas\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ahmet Bedirhan Arvas\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/\",\"url\":\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/\",\"name\":\"The Huge SEC Was Hacked Because It Couldn't Set 2FA! - Coin Engineer\",\"isPartOf\":{\"@id\":\"https:\/\/coinengineer.net\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/coinengineer.net\/blog\/wp-content\/uploads\/2024\/01\/2-8.webp\",\"datePublished\":\"2024-01-10T08:16:58+00:00\",\"dateModified\":\"2024-01-10T08:16:58+00:00\",\"author\":{\"@id\":\"https:\/\/coinengineer.net\/blog\/#\/schema\/person\/b165f3cb898dc90eb7b6d9a3c2563932\"},\"description\":\"The official Twitter account of the US Securities and Exchange Commission (SEC) was attacked by a hacker due to a security vulnerability.\",\"breadcrumb\":{\"@id\":\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#primaryimage\",\"url\":\"https:\/\/coinengineer.net\/blog\/wp-content\/uploads\/2024\/01\/2-8.webp\",\"contentUrl\":\"https:\/\/coinengineer.net\/blog\/wp-content\/uploads\/2024\/01\/2-8.webp\",\"width\":840,\"height\":560,\"caption\":\"SEC\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/coinengineer.net\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The Huge SEC Was Hacked Because It Couldn&#8217;t Set 2FA!\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/coinengineer.net\/blog\/#website\",\"url\":\"https:\/\/coinengineer.net\/blog\/\",\"name\":\"Coin Engineer\",\"description\":\"Btc, Coins, Pre-Sale, DeFi, NFT\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/coinengineer.net\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/coinengineer.net\/blog\/#\/schema\/person\/b165f3cb898dc90eb7b6d9a3c2563932\",\"name\":\"Ahmet Bedirhan Arvas\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/coinengineer.net\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/ea78552e3fe69cca310a9be66f726e09b3c5ef432950e20ee19be59627bce197?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/ea78552e3fe69cca310a9be66f726e09b3c5ef432950e20ee19be59627bce197?s=96&d=mm&r=g\",\"caption\":\"Ahmet Bedirhan Arvas\"},\"url\":\"https:\/\/coinengineer.net\/blog\/author\/ceahmet\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The Huge SEC Was Hacked Because It Couldn't Set 2FA! - Coin Engineer","description":"The official Twitter account of the US Securities and Exchange Commission (SEC) was attacked by a hacker due to a security vulnerability.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/","og_locale":"en_US","og_type":"article","og_title":"The Huge SEC Was Hacked Because It Couldn't Set 2FA! - Coin Engineer","og_description":"The official Twitter account of the US Securities and Exchange Commission (SEC) was attacked by a hacker due to a security vulnerability.","og_url":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/","og_site_name":"Coin Engineer","article_published_time":"2024-01-10T08:16:58+00:00","og_image":[{"width":840,"height":560,"url":"https:\/\/coinengineer.net\/blog\/wp-content\/uploads\/2024\/01\/2-8.webp","type":"image\/webp"}],"author":"Ahmet Bedirhan Arvas","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Ahmet Bedirhan Arvas","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/","url":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/","name":"The Huge SEC Was Hacked Because It Couldn't Set 2FA! - Coin Engineer","isPartOf":{"@id":"https:\/\/coinengineer.net\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#primaryimage"},"image":{"@id":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#primaryimage"},"thumbnailUrl":"https:\/\/coinengineer.net\/blog\/wp-content\/uploads\/2024\/01\/2-8.webp","datePublished":"2024-01-10T08:16:58+00:00","dateModified":"2024-01-10T08:16:58+00:00","author":{"@id":"https:\/\/coinengineer.net\/blog\/#\/schema\/person\/b165f3cb898dc90eb7b6d9a3c2563932"},"description":"The official Twitter account of the US Securities and Exchange Commission (SEC) was attacked by a hacker due to a security vulnerability.","breadcrumb":{"@id":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#primaryimage","url":"https:\/\/coinengineer.net\/blog\/wp-content\/uploads\/2024\/01\/2-8.webp","contentUrl":"https:\/\/coinengineer.net\/blog\/wp-content\/uploads\/2024\/01\/2-8.webp","width":840,"height":560,"caption":"SEC"},{"@type":"BreadcrumbList","@id":"https:\/\/coinengineer.net\/blog\/the-huge-sec-was-hacked-because-it-couldnt-set-2fa\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/coinengineer.net\/blog\/"},{"@type":"ListItem","position":2,"name":"The Huge SEC Was Hacked Because It Couldn&#8217;t Set 2FA!"}]},{"@type":"WebSite","@id":"https:\/\/coinengineer.net\/blog\/#website","url":"https:\/\/coinengineer.net\/blog\/","name":"Coin Engineer","description":"Btc, Coins, Pre-Sale, DeFi, NFT","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/coinengineer.net\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/coinengineer.net\/blog\/#\/schema\/person\/b165f3cb898dc90eb7b6d9a3c2563932","name":"Ahmet Bedirhan Arvas","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/coinengineer.net\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/ea78552e3fe69cca310a9be66f726e09b3c5ef432950e20ee19be59627bce197?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/ea78552e3fe69cca310a9be66f726e09b3c5ef432950e20ee19be59627bce197?s=96&d=mm&r=g","caption":"Ahmet Bedirhan Arvas"},"url":"https:\/\/coinengineer.net\/blog\/author\/ceahmet\/"}]}},"_links":{"self":[{"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/posts\/9618","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/users\/13"}],"replies":[{"embeddable":true,"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/comments?post=9618"}],"version-history":[{"count":1,"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/posts\/9618\/revisions"}],"predecessor-version":[{"id":9620,"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/posts\/9618\/revisions\/9620"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/media\/9619"}],"wp:attachment":[{"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/media?parent=9618"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/categories?post=9618"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinengineer.net\/blog\/wp-json\/wp\/v2\/tags?post=9618"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}