Canadian Senator temporarily loses control of X account

Share post:

The office of Canadian Senator Amina Gerba has confirmed the Quebec parliamentarian’s account on the X/Twitter social media platform was hacked this week.

Amina Gerba
Senator Amina Gerba

Walter Calderon, the Senator’s executive assistant, made the confirmation Wednesday in a telephone interview. It followed the disclosure of the hack on Tuesday by MalwareHunterTeam, a resource on ransomware for IT teams and security researchers.

According to MalwareHunterTeam, the account was renamed as “LFG” and — taking advantage of Gerba’s followers — was being used to promote a scam.

However, late this morning the account and its content had been restored.

Asked when Gerba knew she couldn’t get into the account, Calderon said that on Tuesday “she just realized she didn’t have access to her account. Like anyone would do, she tried her password but it didn’t work because the email was not associated with the account.”

Gerba, who had created the account herself to promote her work as a Senator, then notified the federal government’s IT department, Calderon said.

At the time he spoke to IT World Canada, he didn’t realize the account had been restored.

Calderon didn’t know if the Senator had implemented multifactor authentication to protect from login compromise.

Gerba was appointed to the Senate in 2021 by Prime Minister Justin Trudeau. She sits as an independent. She is a member of the Senate Foreign Affairs and International Trade Committee and the Human Rights Committee. She is also very actively involved in the Parliamentary Black Caucus and Senators for Climate Solutions.

This isn’t the first time a Canadian parliamentarian’s social media account was taken over.
In 2019, Twitter confirmed Senator Linda Frum’s account had been hacked. The threat actor posted racial slurs and some of Frum’s personal information, including her driver’s licence. Her access was quickly restored. In 2018, Conservative Senator Don Plett’s Twitter account was briefly taken over. Around the same time, Conservative MP Peter Ken reported he had been locked out of his Facebook and Instagram accounts.

In the U.S., Senator Joe Manchin’s social media accounts were hacked in 2018. In 2012, Senator Chuck Grassley’s Twitter account was taken over.

Suspected attackers of the social media accounts of politicians range from hacktivists to foreign governments.

X/Twitter offers this advice to users for protecting their accounts:

  • use a strong password that’s not used on other websites;
  • enable two-factor authentication as protection, in case an outsider is able to get hold of your username and password; 
  • require email and phone number confirmation from X to request a reset password link or code;
  • be cautious of suspicious links that claim to send you to X/Twitter. Always make sure you’re on twitter.com before you enter your login information;
  • never give your username and password out to third parties, especially those promising to get you followers, make you money, or verify you;
  • Make sure your computer software, including your browser, is up-to-date with the most recent upgrades and anti-virus software.
The post Canadian Senator temporarily loses control of X account first appeared on IT World Canada.
Howard Solomon
Howard Solomonhttps://www.itworldcanada.com
Currently a freelance writer, I'm the former editor of ITWorldCanada.com and Computing Canada. An IT journalist since 1997, I've written for several of ITWC's sister publications including ITBusiness.ca and Computer Dealer News. Before that I was a staff reporter at the Calgary Herald and the Brampton (Ont.) Daily Times.

SUBSCRIBE NOW

Related articles

Cyber Security Today, May 3, 2024 – North Korea exploits weak email DMARC settings, and the latest Verizon analysis of thousands of data breaches

This episode reports on warnings about threats from China, Russia and North Korea, the hack of Dropbox Sign's infrastructure

Hashtag Trending for World Password Day, Thursday, May 2nd, 2024

Security firm Okta warns of an unprecendented password stuffing attack that is piggybacking on regular user’s mobile and...

Google Chrome’s new post-quantum cryptography causes connection issues

The latest update to Google Chrome, version 124, which integrates a new quantum-resistant encryption mechanism, has led to...

UK legislation bans weak passwords

Starting Monday, the UK will enforce new laws banning the sale of devices with weak default passwords such...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways