X users are experiencing a surge of password reset confirmation emails that may indicate attempted unauthorized account access. Although the platform has detected no confirmed security breaches, cybersecurity experts warn that these notifications could mask a more sophisticated attack strategy targeting the platform’s financial services.
An X product engineer acknowledged the situation on Monday, explaining that attackers are attempting to compromise accounts now that X Money—the platform’s financial service launched in July—is widely accessible. X Money allows Premium and Premium+ subscribers to store funds, transfer money, and make payments directly through X, creating potentially serious consequences if hackers gain access. The company stated it is actively investigating while apologizing for the volume of notifications sent to users.
Security researchers have identified a concerning secondary threat: phishing emails that mimic legitimate X communications are circulating amid the genuine password reset messages. These fraudulent emails direct users to counterfeit X links and request credential updates, attempting to steal login information. Company officials have deemed this scenario plausible and recommend users verify that legitimate X emails originate from x.com and display a blue authentication mark.
Experts advise users to avoid clicking email links and instead access accounts directly through the app or by typing the website URL independently. Password reset notifications alone do not confirm account compromise, but users should remain cautious of urgent messaging designed to pressure quick action without careful consideration.
