4.6 million Snapchat accounts exposed via known exploit

4.6
A security exploit in the Snapchat messaging service that was found but not fixed several months ago was apparently used. Over 4.6 million usernames and phone numbers from the service have been published on a website.

The site, called SnapchatDB.info, first went live on Tuesday but has since been taken down. TechCrunch reports that before the site was closed, its unknown authors explained the reasoning for their actions, stating they simply wanted to "put public pressure on Snapchat to get this exploit fixed." While the Snapchat user names were exposed, the last two digits of the phone numbers were blurred on the site.

Last week, the Gibson Security firm stated that known exploits with SnapChat's API could allow anyone to extract user names and phone numbers from the service. Snapchat later tried to downplay the security firm's findings on their official blog, claiming that in theory, anyone could upload a list of all the phone numbers in the U.S. and then make "a database of the results and match usernames to phone numbers that way." The company claims that it has taken steps to make this harder to accomplish but did not go into details. So far, Snapchat has yet to comment on this new leak of user information.

Posted:
Related Forum: Mobile Devices

Source: http://www.neowin.net/news/46-million-snapchat-accounts-exposed-via-known-exploit

Comments

"4.6 million Snapchat accounts exposed via known exploit" :: Login/Create an Account :: 94 comments

If you would like to post a comment please signin to your account or register for an account.

1gbPosted:

I admit, yes I have used snapchat.
but I never once had to enter my mobile number? Also, I dont have a phone.
Nor do I care if anyone gets my username, here it is here actually (william_420)

gmlukensPosted:

No joke i made a snapchat 2 days ago... Better not have been my shit getting leaked.

SwiftPosted:

Well I'm glad they did not get anything more than names and phone numbers.

AimiPosted:

Reluctant I was browsing Trojan's Twitter and he pasted a download for everything.


How has this guy not been caught yet?

ReluctantPosted:

daRealRush I don't have Snapchat, so my information shouldn't be released.


I got asked to use it but I never did. I don't like sites like that sort. I guess we're in the clear! :D

ReluctantPosted:

I was browsing Trojan's Twitter and he pasted a download for everything.

AimiPosted:

Well its good I don't use it.

basedtelliPosted:

ImgBurn Luckily I don't use snapchat never liked it anyway


Same I find useless. My sister finds it the best app ever...

MSXPosted:

Luckily I don't use snapchat never liked it anyway

MaggardoPosted:

I don't have Snapchat, so my information shouldn't be released.