Fake and Stolen X Gold accounts for sale on the Dark Web
Stolen X Gold accounts can be used to steal money and personal information
New security research has uncovered that cybercriminals are abusing verification marks on X (formerly known as Twitter) by compromising passwords of verified accounts and either selling them on the dark web or using them for their own scams.
Malicious actors who purchase these verified accounts then have access to a wide number of people who are under the impression they are receiving content from the original owner.
However, the new account owner can post malicious phishing or financial scams that steal cryptocurrencies, personal information, and other valuable data.
Reader Offer: Save up to 68% on Aura identity theft protection
TechRadar editors praise Aura's upfront pricing and simplicity. Aura also includes a password manager, VPN, and antivirus to make its security solution an even more compelling deal. Save up to 50% today.
Preferred partner (What does this mean?)
Fools Gold
The research, conducted by CloudSEK, examined how verified accounts on X have been bought and sold on forums in the Dark Web and the significant financial disruption that has been caused by scams run on stolen accounts.
The research found that a fresh X account would sell for around $0.30, but accounts older than 5 years with a gold affiliation could sell for anywhere between $1200 - $2000. The prices also vary depending on the number of followers associated with the account, with one account with 28,000 followers being advertised for between $2000 - $2500.
Many of these accounts are compromised through brute forcing passwords, and as many of these accounts have often laid dormant for several years, it is unlikely that any password security or authentication methods have been implemented onto the accounts.
We all remember the chaos caused by the release of the original Twitter Blue subscription, which allowed users to subscribe for a small blue check mark next to their name, commonly associated with verified or trustworthy accounts. This led to the impersonations of celebrities including Elon Musk, and the impersonation of corporate entities.
Are you a pro? Subscribe to our newsletter
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
To illustrate the dangers associated with these stolen accounts, CloudSEK drew attention to how the co-founder of Ethereum had their X account stolen in a cyberattack. Before they could re-secure their account, the hackers had posted a link to a fake website offering free non-fungible tokens (NFTs) which managed to steal $691,000 in cryptocurrency before it was taken down just 20 minutes later.
CloudSEK recommends that if you have an old X account that you do not use, close it down and ensure it is deleted, especially if it is a corporate account with a large following, as these are more likely to be targeted. Ensure that your accounts are employing the best password security practices.
More from TechRadar Pro
Benedict has been writing about security issues for over 7 years, first focusing on geopolitics and international relations while at the University of Buckingham. During this time he studied BA Politics with Journalism, for which he received a second-class honours (upper division), then continuing his studies at a postgraduate level, achieving a distinction in MA Security, Intelligence and Diplomacy. Upon joining TechRadar Pro as a Staff Writer, Benedict transitioned his focus towards cybersecurity, exploring state-sponsored threat actors, malware, social engineering, and national security. Benedict is also an expert on B2B security products, including firewalls, antivirus, endpoint security, and password management.