Tired of ads? Enjoy an ad-free experience by signing up.
๐Ÿ‘ฉโ€๐Ÿณ How we use AI at Tech in Asia, thoughtfully and responsibly.
๐Ÿง”โ€โ™‚๏ธ A friendly human may check it before it goes live. More news here

Hacker behind Obama X breach ordered to return $5.4m in bitcoin

Joseph James Oโ€™Connor, convicted for his role in the 2020 Twitter hack, has been ordered to repay ยฃ4.1 million (US$5.4 million) worth of Bitcoin under a civil recovery order obtained by British prosecutors.

Oโ€™Connor, 26, pleaded guilty in the US to charges including computer intrusion, wire fraud, and extortion, and was sentenced to five years in prison in 2023.

He was arrested in Spain in 2021 and extradited to the US after the countryโ€™s High Court ruled the evidence and victims were there.

Britainโ€™s Crown Prosecution Service obtained a civil recovery order to seize 42 Bitcoin and other cryptocurrency assets linked to the scheme, which used hijacked accounts to solicit cryptocurrency and threaten celebrities.

The assets will be liquidated by a court-appointed trustee.

The July 2020 attack compromised accounts belonging to Barack Obama, Joe Biden, Elon Musk, Bill Gates, Warren Buffett, and Kim Kardashian, prompting Twitter (now X) to temporarily restrict verified accounts.

๐Ÿ”— Source: Reuters

๐Ÿง  Food for thought

Implications, context, and why it matters.

ยฃ4.1m seizure tops prior estimates, restitution still uncertain

  • The UK civil recovery order against Joseph James Oโ€™Connor covers ยฃ4.1 million in cryptocurrency 1. He stole about $794,000 through SIM swapping (a phone-number hijacking tactic), and the bitcoin scam raised over $117,000 in total 2.
  • Oโ€™Connor agreed to forfeit more than $794,000 and to pay restitution in the U.S. case 3. How the ยฃ4.1m order fits with total proceeds, and whether victims see more than prior forfeitures, remains unclear.
  • UK proceeds-of-crime law permits seizure even when conviction happened abroad 1. The Crown Prosecution Service (CPS) returned ยฃ95 million to victims out of ยฃ478 million in five years 1, so many may wait years or receive only part of their losses.

X security key migration failure renews push for phishing-resistant authentication for enterprise social teams and high-profile accounts

  • X locked out security-minded users in November 2025 during a move of security keys from twitter.com to x.com 4, as many had to re-enroll and hit โ€œendless loopsโ€ if they used hardware keys (people who use physical authentication keys).
  • The 2020 breach used social engineering (tricking employees) to reach internal admin tools 3, which exposes weak employee credential protection as the main gap for social platforms and enterprise IT teams that run high-value accounts.
  • Demand is rising for FIDO2 hardware keys, passkey solutions (passwordless sign-in using device-based cryptographic credentials), and SIM-swap defenses (measures to prevent phone-number hijacking). X removed SMS two-factor authentication (2FA) for non-Premium users in 2023 5. Enterprises that manage celebrity, executive, or brand accounts need training and phishing-resistant authentication that survives migrations without lockouts.

Recent Twitter developments

Stay ahead in Asiaโ€™s tech landscape

You've reached your 2 free content limit for the month. Sign up for free to read the full story.

๐Ÿ„ For casual readers / ๐Ÿ‘ถ Free

Basic

US$0

Free forever

Get instant access to this article and more every month

0 premium content

Unlimited news briefs

5

5 articles

Ad-free reading experience

Just US$0 per day

โŒ›Sign up in 20s. No payment details needed.

๐Ÿ“– For learners / ๐Ÿ‘ Starter

Lite

US$4.92/month

Billed annually at US$59/year

Get instant access to this article and more every month

4

4 premium content

Unlimited news briefs & articles

Ad-free reading experience

Just US$0.17 per day

Cancel anytime

Our subscriber community includes professionals from these companies:

Stay updated on the go with our mobile app.

Get latest insights with smoother, more personalized experience through TIA mobile app.