Wednesday, May 7, 2025
HomeCyber Security NewsTwitter Flaw Exposes Private Circle Tweets to Public

Twitter Flaw Exposes Private Circle Tweets to Public

Published on

SIEM as a Service

Follow Us on Google News

According to reports, there has been a security incident with Twitter’s Private Circle tweets feature as they have been exposed publicly.

Twitter’s Private Circle was a feature introduced by Twitter in 2022, in which users can send their tweets to a particular set of people (maximum of 150 members) which keeps their tweets within the close circle away from the public.

In Twitter’s help center, a question was answered, “Who can see my Twitter circle tweets?”. The answer to this question, as mentioned by Twitter, was, “People who are currently in your Twitter Circle can see any Twitter Circle Tweets you’ve shared as well as any non-protected replies to those Tweets. If a circle member keeps a protected account, only the followers in your Twitter Circle can see their replies.

- Advertisement - Google News

Your friend’s Twitter Circle will not be able to see any part of the conversation unless your circles share common members.”

However, a tweet that resurfaced nearly a month after from a Twitter user SL (@slbad_) denotes that private tweets were being exposed to the public and the Twitter circles feature was facing a bug.

Following this, Twitter contacted every user and mentioned that there had been a ‘security incident’ on the display of private circle tweets.

In the security incident notification from Twitter, they mentioned, 

“We’re contacting you because your Twitter account may have been potentially impacted by a security incident that occurred earlier this year (April 2023)”. 

In April 2023, a security incident may have allowed users outside your Twitter Circle to see tweets that should have been limited to the Circle you were posting. Our security team identified this issue and immediately fixed it so these tweets were no longer visible outside your Circle. 

We’ve conducted a thorough investigation to understand how this occurred and have addressed this issue. Twitter is committed to protecting the privacy of the people who use our service, and we understand the risks that an incident like this can introduce and deeply regret this happened.”

Ever since the takeover of Twitter by Elon Musk, there have been several changes and issues going on with Twitter and its users. Adding to them, the exposed private circle tweets have also affected the platform. 

However, this issue came to light after Musk made an algorithm recommendation change on Twitter last month. He mentioned that the algorithm will be updated every 24 to 48 hours.

Twitter has been working on resolving this and several other issues they have been facing recently.

Struggling to Apply The Security Patch in Your System? – 
Try All-in-One Patch Manager Plus

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

BFDOOR Malware Targets Organizations to Establish Long-Term Persistence

The BPFDoor malware has emerged as a significant threat targeting domestic and international organizations,...

Uncovering the Security Risks of Data Exposure in AI-Powered Tools like Snowflake’s CORTEX

As artificial intelligence continues to reshape the technological landscape, tools like Snowflake’s CORTEX Search...

UNC3944 Hackers Shift from SIM Swapping to Ransomware and Data Extortion

UNC3944, a financially-motivated threat actor also linked to the group known as Scattered Spider,...

Over 2,800 Hacked Websites Targeting MacOS Users with AMOS Stealer Malware

Cybersecurity researcher has uncovered a massive malware campaign targeting MacOS users through approximately 2,800...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

BFDOOR Malware Targets Organizations to Establish Long-Term Persistence

The BPFDoor malware has emerged as a significant threat targeting domestic and international organizations,...

Uncovering the Security Risks of Data Exposure in AI-Powered Tools like Snowflake’s CORTEX

As artificial intelligence continues to reshape the technological landscape, tools like Snowflake’s CORTEX Search...

UNC3944 Hackers Shift from SIM Swapping to Ransomware and Data Extortion

UNC3944, a financially-motivated threat actor also linked to the group known as Scattered Spider,...