US lawmakers urge SEC to fix cybersecurity after X account hack


FILE PHOTO: The seal of the U.S. Securities and Exchange Commission (SEC) is seen at their headquarters in Washington, D.C., U.S., May 12, 2021. REUTERS/Andrew Kelly/File Photo

(Reuters) - U.S. lawmakers have urged the Securities and Exchange Commission (SEC) to review its cyber security preparedness after the financial regulator's X account posted market material information earlier in the week due to a hack.

Someone briefly accessed its X, formerly called Twitter, account on Tuesday, the agency had confirmed, and posted a fake message saying it had approved exchange traded funds (ETF) for bitcoin.

The SEC eventually approved the first U.S.-listed ETFs to track bitcoin on Wednesday, but the unauthorized post a day earlier led to a rise in the price of Bitcoin to around $48,000 before falling to below $45,000 minutes later.

In a letter to the agency on Thursday, Ron Wyden, a Democratic senator from Oregon, and Cynthia Lummis, a Republican senator from Wyoming, sought an investigation into the incident, which they deemed as "SEC's apparent failure to follow cybersecurity best practices".X, which is owned by billionaire and Tesla boss Elon Musk, confirmed that hack. It said that an "unidentified individual" obtained control over a phone number associated with the agency's account and that the SEC did not have two-factor authentication enabled at the time.

Two-factor authentication (MFA) is a two-pronged privacy tool which allows access to an Internet account only after the user has keyed in the password and a security key sent over on email or on the phone.

"We urge you to investigate the agency's practices related to the use of MFA, and in particular, phishing-resistant MFA, to identify any remaining security gaps that must be addressed," Wyden and Lumis said in their letter.

The SEC had earlier said it was working with law enforcement to investigate the hack.

(Reporting by Yuvraj Malik in Bengaluru; Editing by Krishna Chandra Eluri)

Follow us on our official WhatsApp channel for breaking news alerts and key updates!

   

Next In Tech News

Landlords beware: Rent-shamers are calling out overpriced US listings online
Explainer-Why OpenAI plans transition to public benefit corporation
US adds 9th telcom to list of companies hacked by Chinese-backed Salt Typhoon cyberespionage
Biden administration proposes new cybersecurity rules to limit impact of healthcare data leaks
Hackers hijack a wide range of companies' Chrome extensions, experts say
OpenAI outlines new for-profit structure in bid to stay ahead in costly AI race
Russia fines TikTok 3 million roubles over legal violations, court says
Taiwan's science ministry warns spending cuts could hit chips, AI funding
How they celebrated the holidays 250 miles above Earth
The speed of human thought lags far behind your Internet connection, study finds

Others Also Read