Attackers are attempting to target X users right now. This activity follows the recent launch of X Money. Numerous X users reported something concerning recently. They received unsolicited password reset emails. A company representative confirmed something important. X is actively investigating the issue. However, the company hasn’t yet found evidence that any hacks succeeded.
On Tuesday, X product engineer Mridul Singhai addressed this issue directly. He posted publicly on the platform. He confirmed the company was looking into complaints. Specifically, users had reported mass password reset attempts.
“Attackers appear to believe that, now that @XMoney is widely available, they can gain unauthorized access to accounts,” he wrote. “We are actively investigating the issue and, so far, have found no evidence of any breaches. We apologize for the multiple emails and appreciate your patience as we work to resolve this.”
X Money is X’s newly launched payments service. It includes several notable features. That includes a bank card offering 3% cashback. It includes instant payments. Free ATM withdrawals are part of the service too. Various other digital banking services round out the offering.
The underlying accounts are held at Cross River Bank, which is FDIC-insured. For X, this service carries real strategic value. It could make it easier for creators to collect payments directly on the platform. This, in turn, could further strengthen X’s broader digital economy.
Of course, money changing hands tends to attract bad actors. According to X, that’s likely what’s happening in this situation.
As of this writing, X hasn’t posted details through its official company accounts. The company also hasn’t yet responded to press inquiries about the matter.
However, X general counsel James Burnham shared a strongly worded post. He wrote: “The legal and security teams @X will stop at nothing to identify, locate, and hold criminally accountable any person anywhere on or off earth who attempts to victimize our platform’s users.”
As these attacks continue, users are actively warning each other about the issue. Many are reminding others to enable two-factor authentication. This applies specifically if it isn’t already turned on. Doing so can help protect accounts from unauthorized access.
X’s chatbot, Grok, has also responded to some posts directly. It provided steps on how to enable this protection. Grok also confirmed something specific about the attack pattern. Attackers are “mass-triggering” the password reset form. They’re doing this using publicly available usernames.
“No confirmed system breach or mass takeovers,” the AI bot said.








