🚨 Our X (Twitter) account has been compromised. We are working to regain access.
Please do not trust or interact with any posts, DMs, or links from our account until further notice.
Stay updated here, on our other socials (🦋) and our blog: https://blog.torproject.org/
=> More informations about this toot | More toots from torproject@mastodon.social
@torproject take this as a message from the universe to delete twitter and do better.
=> More informations about this toot | More toots from old_angry_queer@girlcock.club
@torproject once you regain access to it delete it immediately :neocat_floof:
=> More informations about this toot | More toots from soop@wetdry.world
@soop yes, this may have been the sign we've been looking for. :)
=> More informations about this toot | More toots from torproject@mastodon.social
@torproject @soop Based Tor 🫶
=> More informations about this toot | More toots from pb4000@infosec.exchange
@torproject @soop Don't just deactivate it fully delete it. This is your sign 🥰
=> More informations about this toot | More toots from NudeNewt@mastodon.social
@torproject @soop don't delete it. Its important to also reach normal average users in cenxored countries which offen communicate via the Main social media platforms. Thats why your telegram channel and bot are so successful. It helps those being cencored.
=> More informations about this toot | More toots from Life_is_Beautiful@infosec.exchange
@Life_is_Beautiful @torproject @soop Fascists and people who tolerate Nazis on their platform are not your average users, but I could be wrong.
=> More informations about this toot | More toots from loptimist@piaille.fr
@loptimist @Life_is_Beautiful @torproject @soop the share on X is moving in the you being wrong direction.
=> More informations about this toot | More toots from daedalean@mastodon.social
@loptimist @torproject @soop You have the choice to use Mastodon and not X. Give every user the choice.
I checked the the official Torproject X out and literally the first link in their bio is the link to their blueksy profile and then to their mastodon profile.
This will lead more X people to these better platforms. If you just delete the account nobody will ever find that lead.
Nobody benefits. Its a lose lose situation.
I am not a fan of X. I don't use it. Just don't use it and then it's not your problem.
=> More informations about this toot | More toots from Life_is_Beautiful@infosec.exchange
@Life_is_Beautiful
Bluesky has >25M users (up from ~3M at the beginning of 2024) and seems like a good alternative to reach "normal average users" alongside Mastodon; it looks and behaves almost exactly like Twitter and is a nice drop-in option for folks who just want convenience.
=> More informations about this toot | More toots from eloquence@social.coop
@eloquence yea, its cool that more platforms get created to weaken Twitter.
Still 99% of citizens have never heard of Mastodon and 95% of the whole population have never heard of bluesky yet even have an account.
80% have heard of Twitter.
=> More informations about this toot | More toots from Life_is_Beautiful@infosec.exchange
@Life_is_Beautiful
99% of statistics are made-up on the spot. :) I think a clear posting on the X account about where comms can be found going forward would be more than sufficient.
=> More informations about this toot | More toots from eloquence@social.coop
@eloquence @Life_is_Beautiful Twitter does not exist, X is not even public - you need an account to read anything properly.
=> More informations about this toot | More toots from rolle@mementomori.social
@Life_is_Beautiful @eloquence
Let's assume you're right that 99% of people have never heard of Mastodon, and let's round down to exactly 8,000,000,000 just to make the math easy. That means 80,000,000 people have heard of Mastodon.
That's still way more people than have ever used Tor over the course of a month according to this: https://www.statista.com/statistics/1414613/tor-average-daily-users-directly-leading/
Also, and I don't have anything to back this up, but I think most people who use Tor most likely HAVE heard of Mastodon and would have no issue following the Tor Project here instead of X.
EDIT: just noticed that that was mean daily users. Point still stands, lol.
=> More informations about this toot | More toots from Christian_Freiherr_von_Wolff@defcon.social
@Christian_Freiherr_von_Wolff @eloquence
I get what you are trying to say.
Most people who are already using Tor are fine with that. You are right here.
But the mission must always also be to reach more people.
=> More informations about this toot | More toots from Life_is_Beautiful@infosec.exchange
@eloquence @Life_is_Beautiful
Bluesky has exceded 30M users by now and seems to have become a no brainer alternative to X. Big caveat: No guarantees that it won't get hijacked / rug-pulled by some billionaire once it gets big enough, but for now it's not evil.
I wish Mastodon would fulfill the role that Bluesky does now, but that's an uphill battle for now. Realistically we need both.
=> More informations about this toot | More toots from joewein@mastodon.social
@torproject @soop
=> More informations about this toot | More toots from comradevlast@mastodon.social
@torproject @soop Be the hero we deserve. Delete that shit.
=> More informations about this toot | More toots from cbleslie@hachyderm.io
@torproject perfect time to leave 🤣
=> More informations about this toot | More toots from jake4480@c.im
@torproject
Phony Stark probably did it.
=> More informations about this toot | More toots from drakenblackknight@mastodon.online
@torproject the last post was funny anyway 😅 $TOR 😅
=> More informations about this toot | More toots from nickbearded@mastodon.social
@nickbearded should go without saying, but obviously, we did not launch a Tor coin.
=> More informations about this toot | More toots from torproject@mastodon.social
@torproject @nickbearded If you did, I’d invest. Though I’m not sure how a coin or blockchain could benefit the Tor network.
=> More informations about this toot | More toots from colin@colincogle.name
@torproject Now I'd expect Tor to have better security.
Did you have MFA, or even better a Hardware Key/s?
Would not mind a post mortem on this to read though.
Casual Edit:
Kind of shook that your account was hacked. To me it was probably social engineering, only because I expect that your security on the application side to be as tight as possible, given your position.
EDIT 2:
Changed "key" to "keys" as I would not want to exclude multiple people or a team having access to the account.
=> More informations about this toot | More toots from greencasio@mastodon.social
@greencasio @torproject
short and generic version:
mfa/2fa might be good thing in some cases like totp.
but also bad apples exist, like sms, email and those which relies some closed system and uses google play and apple app store.
=> More informations about this toot | More toots from zetabeta@mastodon.social
@zetabeta @torproject
I totally agree with you @zetabeta.
Which is why SMS and Email 2FA is not secure.
These high-level people should use something like @ente or @yubico as a hardware authentication key.
[#]security
[#]privacy
=> More informations about this toot | More toots from greencasio@mastodon.social
@greencasio @zetabeta @torproject @ente @yubico
None of that would matter if it was an inside job. I have no evidence that it was, but would anyone be surprised at this point?
=> More informations about this toot | More toots from naught101@mastodon.social
@torproject Delete the account.
=> More informations about this toot | More toots from LambdaCalculus@hackers.town
"Karma police" humming 😉
=> More informations about this toot | More toots from regendans@toot.community
@torproject
So, ..... is there any loss if you're not there?
You're here to tell us you're not there .......
Please don't support Musk by going back.
=> More informations about this toot | More toots from JanR@mastodon.social
@torproject Time to bail.
=> More informations about this toot | More toots from andhow@sfba.social
@torproject
I hear February 1 is switch day. It might be best to just shut that damn thing down lock it, hopefully permanently.
And then in order to prevent the account from being banned, just leave a link to your website saying you know if you want to follow us jump over here and take a look
=> More informations about this toot | More toots from GhostOnTheHalfShell@masto.ai
@torproject I'm not saying that the compromised account was an inside job at Twitter because it's run by a Nazi and you make a tool for resisting authoritarians... But I am saying that if it turned out to be the case, I would not be surprised in the least.
=> More informations about this toot | More toots from synkr3tyk@mastodon.social
@torproject
speculative:
is it x.com itself doing something nefarious.
elon musk is bad, but is it this bad.
=> More informations about this toot | More toots from zetabeta@mastodon.social
@torproject why are you on X which itself is compromised?
=> More informations about this toot | More toots from Flowermob@mastodon.social
@torproject Why do you have X account?
=> More informations about this toot | More toots from james77777@mastodon.social
@torproject you could quit twitter 😎👍
=> More informations about this toot | More toots from nboynorge@infosec.exchange
@torproject maybe dont use X
=> More informations about this toot | More toots from zombiewarrior@vivaldi.net
@torproject let it go
=> More informations about this toot | More toots from chrisrauh@mastodon.social
@torproject just leave the damn thing behind. It’s dead Jim.
=> More informations about this toot | More toots from jarno@mastonederland.nl
@torproject how is this even possible if 2FA via TOTP is enabled?
Sim swap?
=> More informations about this toot | More toots from Life_is_Beautiful@infosec.exchange
@torproject Why are you still on Twitter? By being there, you're contributing to, and driving traffic to twitter, which is at this point: Putting money into the pocket of a Nazi.
You're The Tor Project. Your user base is filled with types who understand technology well enough to understand why/when/how to use your services. These are the kinds of people who can and will follow you to social medias like this one, and/or Bluesky, and/or Pixelfed, or any of the other choices that don't support a Nazi that's all in on Fascism.
And none of that ^ is rhetorical; I really do not understand, and am trying to, why organizations and individuals that strike me as in opposition to Musk and his behavior, are still using his products which thereby fiscally endorse him (maybe not with your money, but he's definitely getting paid by the traffic you're creating on his site).
I don't get it. I want to.
=> More informations about this toot | More toots from greengrimnir@infosec.exchange
@torproject +1 delete
=> More informations about this toot | More toots from josh@masto.byrd.ws
@torproject Excellent time to leave X behind
=> More informations about this toot | More toots from phocks@bne.social
@torproject Xitter was compromised a while back.
=> More informations about this toot | More toots from writermonki@mastodon.social
@torproject Who wants to be on Twitter? See it as a blessing. You truly want to go down with the ship? As if we need it to find the project.
=> More informations about this toot | More toots from mesmoiron@mastodon.social
@torproject "We are working to regain access."
Why?
=> More informations about this toot | More toots from Brokar@mastodon.social
@torproject why are you still over there???
=> More informations about this toot | More toots from hjewelclark@infosec.exchange
@torproject
regain, delete, move on. i'm surprised you haven't already.
=> More informations about this toot | More toots from HybridElephant@musicians.today
@torproject That was fast, thx for getting out.
=> More informations about this toot | More toots from jbz@indieweb.social
@torproject From your intro :
We advance human rights and defend your privacy online through free software and open networks.
ON X ??????
How to lose credibility in no time.
=> More informations about this toot | More toots from thefwguy@techhub.social
@torproject delete Twitter!!! (Duh)
=> More informations about this toot | More toots from johnglass@ohai.social
@torproject Need a password manager? 😛
=> More informations about this toot | More toots from zak@infosec.exchange
@zak @torproject Too soon. 😉
=> More informations about this toot | More toots from Sempf@infosec.exchange
@torproject I'm quite surprised you're still on there tbh 😢
=> More informations about this toot | More toots from vervain@vervainglobal.com
@torproject Not trying to be snarky... buuut... that site got kind'a compromised as a whole... 😐
=> More informations about this toot | More toots from tfiebig@wybt.net
@torproject probably an inside job.
=> More informations about this toot | More toots from fionen@mastodon.social
@torproject best time to delete Twitter
=> More informations about this toot | More toots from mwistar@mastodon.social
@torproject Why bother?
=> More informations about this toot | More toots from newstik@social.heise.de
@torproject You have a Xshitter account? Blocking you right now.
=> More informations about this toot | More toots from burne@waag.social This content has been proxied by September (3851b).Proxy Information
text/gemini