On Metacritic: How good is BioShock2?
BNET Business Network:
BNET
TechRepublic
ZDNet

September 21st, 2009

Are Twitter direct messages safe?

Posted by Michael Krigsman @ 6:03 pm

Categories: CIO issues, Enterprise 2.0, Failure 2.0, IT issues, Security and privacy

Tags: Twitter Inc., Michael Krigsman

A twitter colleague sent me a direct message that apparently ended up in another user’s mailbox. This error suggests that private information sent on Twitter could be exposed to non-intended recipients.

Here is a screen capture of the private message, annotated according to the following legend:

  1. Recipient: Susan Scrupski
  2. Sender: @zolierdos
  3. Intended recipient: @mkrigsman
  4. Message text, which I blurred to maintain confidentiality

The sequence unfolded this way: Twitter user @zolierdos sent a private direct message to me. That message ended up in the Twitter account of mutual friend Susan Scrupski. Susan then told Zoli and me that Twitter sent her the private message.

Zoli sent the message using a Twitter client, so perhaps the problem lies there. However, whether due to a Twitter snafu or a third-party bug, this issue raises serious questions about the confidentiality of private information sent through Twitter.

Until this issue is resolved and you can be sure private messages remain confidential, I suggest you adjust your direct message habits accordingly.

Have you experienced similar errors? Let us know.

Update 9/21/09, 11:15PM EDT: Twitter support contacted both Zoli and me to investigate. The company is taking the problem seriously.

Update 9/22/09, 8:00PM EDT: Twitter support says the problem was operator error and not a bug. While there is no way to prove this assertion, I’ve heard anecdotal evidence about direct messages ending up in the wrong hands. My advice: be careful sending sensitive information through Twitter.

Michael KrigsmanMichael Krigsman is CEO of Asuret, Inc., a software and consulting company dedicated to reducing software implementation failures. Click here to discuss this post with him on Twitter. See his full profile and disclosure of his industry affiliations.

Email Michael Krigsman

Subscribe to IT Project Failures via Email alerts or RSS.

Related Discussions on TechRepublic

Did you know you can take part in these discussions with your ZDNet membership?

  • Talkback
  • Most Recent of 4 Talkback(s)
RE: Are Twitter direct messages safe?
It's all public record. What you put out there on the internet
is never "protected" Act accordingly and use discretion.
When in doubt, pickup the phone.... (Read the rest)
Posted by: HawaiiRealty Posted on: 09/22/09 You are currently: a Guest | | Terms of Use
Since when...  bigsibling | 09/22/09
RE: Are Twitter direct messages safe?  krusk | 09/22/09
RE: Are Twitter direct messages safe?  katielynn783 | 09/22/09
RE: Are Twitter direct messages safe?  HawaiiRealty | 09/22/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

ZDNet Blogs

White Papers, Webcasts, and Downloads