Get All Access for $5/mo

Extortion Over $50,000 Twitter Handle Sets a Chilling Precedent A California web developer with the Twitter handle @N was forced to give it to a hacker who compromised both his PayPal and GoDaddy accounts

By Geoff Weiss

Opinions expressed by Entrepreneur contributors are their own.

Twitterverse, take heed: The caché of possessing a highly sought-after Twitter handle has apparently escalated to the extent that hackers are now prepared to extort users for access to their usernames.

The California web developer Naoki Hiroshima, for instance, says he was offered as much as $50,000 for his account, @N, while attempts to steal the name were recurrent. In a post published today, he recounts the cunning and systematic machinations that ultimately forced him to relinquish @N after a hacker compromised both his PayPal and GoDaddy accounts.

Hiroshima had registered @N back in 2007. His new handle? @N_is_stolen.

Related: The Only Thing Scarier Than Self-Driving Cars Are the Hackers Waiting to Attack Them

Initial attempts to access the account were fairly pedestrian. A hacker contacted Hiroshima through Facebook messages asking him to change his Twitter login info, and then e-mailed Twitter in an attempt to reset the email address and password.

When Twitter demanded more information, the hacker set his sights on Hiroshima's GoDaddy account, which comprised various domain names that he'd paid for with a credit card attached to a PayPal account. Here's where it gets scary: The hacker later admitted in an email to Hiroshima that he'd simply called PayPal and "used some very simple engineering tactics" on one of its agents to obtain the last four digits of Hiroshima's credit card over the phone.

Related: Uh, Did Your Refrigerator Just Send Me an Internet Virus?

Then, in order to poach the GoDaddy account, the hacker told a GoDaddy agent that, "I had lost the card but I remembered the last four." In a terrifying turn, the agent then allowed the hacker to simply guess the first two digits of the card number -- all that was needed in order to gain complete access to Hiroshima's domains. "I got it in the first call," the hacker later admitted -- part warning, part boast. "Most agents will just keep trying until they get it."

According to Hiroshima, the experience sets a chilling precedent: "To avoid their imprudence from destroying your digital life," he wrote, "don't let companies such as PayPal and GoDaddy store your credit card information."

Related: Target's Security Breach Stresses the Need for Better Cyber Security

Geoff Weiss

Former Staff Writer

Geoff Weiss is a former staff writer at Entrepreneur.com.

Want to be an Entrepreneur Leadership Network contributor? Apply now to join.

Editor's Pick

Marketing

Are Your Business's Local Listings Accurate and Up-to-Date? Here Are the Consequences You Could Face If Not.

Why accurate local listings are crucial for business success — and how to avoid the pitfalls of outdated information.

Money & Finance

Day Traders Often Ignore This One Topic At Their Peril

Boring things — like taxes — can sometimes be highly profitable.

Productivity

Want to Be More Productive Than Ever? Treat Your Personal Life Like a Work Project.

It pays to emphasize efficiency and efficacy when managing personal time.

Business News

'Passing By Wide Margins': Elon Musk Celebrates His 'Guaranteed Win' of the Highest Pay Package in U.S. Corporate History

Musk's Tesla pay package is almost 140 times higher than the annual pay of other high-performing CEOs.

Growing a Business

He Immigrated to the U.S. and Got a Job at McDonald's — Then His Aversion to Being 'Too Comfortable' Led to a Fast-Growing Company That's Hard to Miss

Voyo Popovic launched his moving and storage company in 2018 — and he's been innovating in the industry ever since.

Starting a Business

I Left the Corporate World to Start a Chicken Coop Business — Here Are 3 Valuable Lessons I Learned Along the Way

Board meetings were traded for barnyards as a thriving new venture hatched.