X, formerly known as Twitter, is investigating a wave of unsolicited password reset emails that appear to be linked to the recent launch of its new payment service, X Money. TechCrunch reports that the company believes these emails may be part of a broader effort by malicious actors attempting to hijack user accounts.

Because X Money involves sensitive financial information, security concerns surrounding the platform are drawing heightened attention. Attackers often exploit the buzz around new feature launches to send phishing emails and fake password reset links, hoping to trick users into revealing their credentials. X has not yet disclosed the exact source of the attacks and says it is continuing to investigate the issue.

Given that X is also widely used in Myanmar, this warning is a timely reminder for local users to stay vigilant. If you receive an unexpected password reset email that you did not request, avoid clicking on any links and instead log in directly through the official X app or website to check your account status. Enabling two-factor authentication remains one of the most effective ways to protect accounts from this type of attack.

As payment features become increasingly integrated into social media platforms, users everywhere—including in Myanmar—should treat unsolicited security emails with extra caution.