Just got a phishing attack which did a good job of trying to look legitimate by associating my Twitter pfp with my email address. It was of course poorly-written and ridiculous, but I assume this was a targeted attack. I don’t believe twitter provides a means of looking up a pfp based on a known email address, anyway.
@fluffy I think that's what gravatar basically does and several sites have integration with it iirc
@fluffy @chimerror your twitter is linked on your gravatar page
@noiob @chimerror Ah, so it is. But still, why would they use the Twitter PFP instead of the image that's right there on the Gravatar profile?