X is making significant progress in transitioning away from Twitter.com, as reported by The Verge. The official @Safety account has issued a warning to users relying on physical security keys or passkeys for two-factor authentication (2FA). These users must re-enroll their login methods before November 10th to avoid potential account locks and the risk of abandoned accounts being sold.
Active users utilizing keys linked to their accounts have been receiving notifications regarding this impending change. The X Safety team clarified that this change is not due to any security issues and solely affects Yubikeys and passkeys, not other 2FA methods like authenticator apps. Security keys tied to Twitter.com must be re-enrolled to associate with X.com, facilitating the retirement of the Twitter domain.
Hardware keys and passkeys require updates to bolster protection against phishing attempts that may employ deceptive Unicode characters or misleading URLs. These authentication methods are domain-specific and must be re-associated with the new domain to function accurately, safeguarding against potential security threats.
This transition marks a significant milestone in X’s move away from Twitter.com, following previous domain changes and the abandonment of its iconic blue bird mascot. Despite these changes, remnants of the old Twitter domain, such as the embeddable X posts page, still persist.
Source: The Verge