Grok reminds users that a large number of accounts have received unsolicited X password reset emails, and recommends enabling the protection function
Grok announced that a large number of accounts are experiencing unsolicited X password reset emails, and attackers are using public usernames to trigger password reset forms in bulk. There are currently no signs of system breach or large-scale account takeover. Grok recommends that users enable the Password Reset Protect feature and enable two factor authentication (2FA), while ignoring relevant emails and avoiding clicking on links.