Twitter Resets Password Automatically, Locks Us Out

By 29-12-2009   BloggingSecuritySocial MediaTwitter

I could not login to Twitter today and found Twitter sent us 4 emails warning us that they had reset our password automatically due to a possible “phishing attack that took place off-Twitter”.

Twitter password reset

Here is the full text of the email we got 4 times…

Due to concern that your account may have been compromised in a phishing attack that took place off-Twitter, your password was reset. Please create a new password by opening this link in your browser: [Link]. This will reset your password. Remember to choose a strong password that is a combination of letters, numbers, and symbols. Do not reuse your old password. As a reminder, you should be extraordinarily suspicious of any third party that offers to artificially inflate your follower count. We do not endorse any of these sites.

Please make sure to:

  • Scan your computers for viruses / malware, especially if unauthorized tweets continue to be posted in your accounts even after you’ve changed the password.
  • Check the Connections page at http://twitter.com/account/connections and revoke the access privileges of any third party applications that you do not recognize.
  • Avoid providing your username and/or e-mail and password to untrusted third-party sites.
  • Remove any updates that you did not post personally; leaving these updates can result in your account being re-suspended.

You can also visit our help page for hacked or compromised accounts.

Since we were not aware of any phishing atempt, after verifying that it was not spam, or actually a phishing attempt itself, I clicked on the link and reset the password, and while I tried to login with the new password, Twitter locked us out.

Twitter Locked Out

Why did Twitter lock us out? Well at that time Tweetie, a cool Twitter client for Mac was active and busy trying to connect, so maybe that got us locked out.  I checked the Locked Out help page and it seems after a Twitter client perform several failed login attempts with the old password, you will not be able to log in–even with the correct password. So they advise to disable any Twitter clients temporarily before login again. They promise the lock lasts about an hour and then will clear on its own and as expected well after 1 hour we were able to login normally.

So why did they reset our password? It seems Twitter tightened their security recently and there is a list of banned Twitter passwords which Twitter bans its members from using when they sign up for new accounts. Well we were not one of these passwords, but I checked my old password again in their password settings

Weak Password

So it seems they found our earlier password was weak and automatically reset it for our security. So now I created a new very strong password, and really need to thank Twitter for protecting our account. Check if your Twitter password is weak and fix it today. Did Twitter reset your weak password?

 

7 comments on “Twitter Resets Password Automatically, Locks Us Out

  1. Martin says:

    Similar experience here. I had my twitter password reset, and they sent three separate e-mails. The reset password link in the e-mails didn’t work for me either, but I wasn’t locked out. A bit odd.

    Also, I just tried my former password in their form and it was regarded as ‘good’ (although it wasn’t all that secure to be honest) and it didn’t include any of the words on the list of bad passwords – so I’m not sure what happened. I certainly wasn’t hacked or phished.

  2. Fatin Pauzi says:

    Twitter started to be strict because it just being hacked. I believe that is one of the precautions step to be taken.

  3. Trine Louise says:

    I got this mail yesterday, changed the password and got in.
    This morning i got the mail again… Didn’t want to change pw once again, found out that I am still able to tweet and se updates through my Tweetable-plugin in WordPress.
    Have however changed password again, and succeeded in changing it back to the one I changed it to yesterday.

  4. Chris Peterson says:

    Day to day Twitter going to more popular and visitors spending more times on twitter, I think twitter in progress to be strict for the fear of hacked

  5. Jay says:

    Twitter locked out password that happened to me i was wondering what the deal was. But I tried logging in later in the day with my new password and i had no problems. Go figure that’s life lol —- happens!

  6. next says:

    I think this is good. I’ve heard about accounts being hacked, just like when Facebook had their problems.

  7. akshara says:

    good solution for someone else loggin in to our account.thnxx

Leave a Reply

Your email address will not be published. Required fields are marked *

css.php