Imagine a place where your private messages and personal data are guarded by outdated systems. A place where the doors are left open, not just to regular people, but to bad actors and even foreign governments. This isn't a spy movie plot, but the reality painted by a major whistleblower about one of the world's most important social media platforms.
This story, which made waves then seemed to fade, holds secrets that impact every single person who uses the internet. It reveals how a company many rely on for news and connection was, allegedly, a ticking time bomb of security failures. And the full weight of these claims is far more unsettling than most people realize.
The Man Who Knew Too Much
Peiter Zatko, known as "Mudge" in the tech world, is no ordinary person. He's a legendary hacker, a cybersecurity expert, and a former program manager at DARPA, the agency that invents new technology for the U.S. military. He was even a member of the L0pht Heavy Industries, a famous hacker collective that warned Congress about internet vulnerabilities decades ago.
Given his impressive background, when Mudge spoke, people listened. He was hired as Twitter's head of security in late 2020, brought in to fix its long-standing problems. But what he found inside was, he said, far worse than anyone imagined. His claims were not just an opinion, but a detailed account from someone at the highest levels of the company.
Alarming
Claims of Security Failures
Mudge's report painted a picture of widespread, fundamental security problems. He claimed that Twitter's security systems were incredibly weak, with many employees having too much access to sensitive parts of the company's network and user data. This wasn't just about a few minor bugs; it was about the basic building blocks of their protection.
He stated that half of the company's servers ran on outdated and vulnerable software. This is like trying to protect a bank vault with a rusty old lock. These critical vulnerabilities meant that user data, private messages, and even the platform itself were constantly at risk of being hacked or misused. It was a serious danger for millions of people around the globe.
Foreign
Influence and National Security Concerns
Perhaps the most shocking claims involved foreign governments. Mudge alleged that Twitter had been warned about at least one foreign agent working inside the company. This agent was supposedly working for an intelligence service from a country like China or India, with direct access to sensitive information and user data.
He also claimed that Twitter was not doing enough to stop foreign governments from using the platform to spread false information or influence elections. These allegations raised serious national security questions, suggesting that Twitter's security flaws could be exploited to harm countries and their citizens. The idea that a platform used by world leaders could be compromised in such a way was deeply troubling.
"Twitter leadership has misled its board and the public regarding its security, privacy, and integrity," Mudge wrote in his complaint.
Lies to
Regulators and the Board
Mudge's report didn't just point fingers at security gaps. He also claimed that Twitter's leaders were actively misleading government regulators, like the Federal Trade Commission (FTC), about their security practices. Twitter had already been fined by the FTC in the past for privacy violations, and Mudge said they were still not following the rules.