Skip to main content

Snapchat improves app security after user account leak

snapchat suffers spam attack
Image used with permission by copyright holder

After the usernames and mobile numbers of 4.6 million users found their way onto the Web this week, Snapchat has taken steps to plug the some of the security gaps in its photo sharing app. In a blog post that seems short on contrition, the development team promises that an update is on the way to prevent this sort of large-scale data harvesting in the future.

At the center of the security storm is the Find Friends feature that enables your friends to add you on Snapchat via your phone number. With a little bit of hacking, an unscrupulous individual can ping Snapchat’s databases to match names to numbers, and this is exactly what has happened.

Recommended Videos

Snapchat’s official blog post starts off with a defence of the Find Friends feature before firing a shot across the bows of Gibson Security, who first brought this Snapchat vulnerability to the public’s attention: “A security group first published a report about potential Find Friends abuse in August 2013. Shortly thereafter, we implemented practices like rate limiting aimed at addressing these concerns. On Christmas Eve, that same group publicly documented our API, making it easier for individuals to abuse our service and violate our Terms of Use.”

“On New Years Eve, an attacker released a database of partially redacted phone numbers and usernames. No other information, including Snaps, was leaked or accessed in these attacks,” continues the statement. “We will be releasing an updated version of the Snapchat application that will allow Snapchatters to opt out of appearing in Find Friends after they have verified their phone number. We’re also improving rate limiting and other restrictions to address future attempts to abuse our service.”

So there you have it — you can pull your number out of the Find Friends database once you’ve used it to build up your Snapchat contacts, and the developers will also make it tougher to harvest several million names next time around. According to security firm AdaptiveMobile, users in California and New York were the worst hit by the data breach, with Colorado, Illinois and Florida also heavily targeted.

At the time of writing the Snapchat app update hasn’t yet arrived, but it shouldn’t take long to appear in your app store of choice.

Topics
David Nield
Former Digital Trends Contributor
Dave is a freelance journalist from Manchester in the north-west of England. He's been writing about technology since the…
Everything you need to know about the OnePlus 13
Official OnePlus 13 product renders showing rear panel colors.

OnePlus is an excellent brand that offers powerful flagship phones at a great value compared to some of its competitors. We followed every rumor about the OnePlus 13 for months, but now it's here — and it's everything we hoped for. It might not be available in the Western market yet, but it will be soon.

So, what makes the OnePlus 13 so special? Here's everything you need to know about OnePlus' latest flagship.
When is the OnePlus 13 being released?

Read more
Qualcomm Snapdragon 8 Elite vs. MediaTek Dimensity 9400: the race is on
Comparison of Qualcomm Snapdragon 8 Elite and MediaTek Dimensity 9400 processors.

The flagship mobile silicon race has entered its next phase, one that will dictate the trajectory of Android hardware heading into 2025. Merely weeks after MediaTek wowed us with the Dimensity 9400 system on a chip (SoC), Qualcomm also pulled a surprise with the reveal of the Snapdragon 8 Elite.

But this time around, the battle is not as straightforward. Where MediaTek is working closely with Arm and adopting its latest CPU and graphics innovations, Qualcomm has firmly put its faith in custom cores. These are no ordinary cores, but a next-gen iteration of the same fundamental tech stack that powers Windows on ARM laptops.

Read more
Discolored line on your new Kindle? You aren’t alone
Amazon Kindle Colorsoft Signature Edition on a table.

The new Kindle Colorsoft Signature Edition is the first full-color e-reader, and a lot of bookworms couldn't wait to get their hands on it. Sadly, many people are reporting the display has a discolored yellow area at the bottom of the screen. The problem is so widespread that the Kindle Colorsoft dropped to an average review rating of 2.6 out of 5, although it does remain the bestselling e-book reader at the moment.

The cause of the discoloration isn't clear. Some users report that it only happens when using the edge lighting feature on the Kindle, while others say it appeared after a software update. Either way, the yellowing is a problem, especially on a device that Amazon has marketed as being great for comics and graphic novel fans. It's hard to enjoy the colorwork in a comic when it's distorted.

Read more