You can't assume competence after such an hack. Before this has happened, you would have assumed that Twitter employees wouldn't fall for social engineering on this scale.
I wonder especially how they could have bypassed their 2FA.
Unless they specifically tell you something, you can't assume it to be the case.
Therefore, I'm not sure that's a straightforward explanation.