Snapchat 'smoothie hack' spams users (Update: Snapchat recommend 'strong passwords')

Users report that their accounts have been hijacked but Snapchat claims that the attacks are not due to 'brute force' attacks

James Vincent
Wednesday 12 February 2014 11:27 GMT
Comments
Healthy 'spam' alternatives include smoothies, according to this latest Snapchat hack
Healthy 'spam' alternatives include smoothies, according to this latest Snapchat hack

Your support helps us to tell the story

From reproductive rights to climate change to Big Tech, The Independent is on the ground when the story is developing. Whether it's investigating the financials of Elon Musk's pro-Trump PAC or producing our latest documentary, 'The A Word', which shines a light on the American women fighting for reproductive rights, we know how important it is to parse out the facts from the messaging.

At such a critical moment in US history, we need reporters on the ground. Your donation allows us to keep sending journalists to speak to both sides of the story.

The Independent is trusted by Americans across the entire political spectrum. And unlike many other quality news outlets, we choose not to lock Americans out of our reporting and analysis with paywalls. We believe quality journalism should be available to everyone, paid for by those who can afford it.

Your support makes all the difference.

Popular messaging app Snapchat has suffered another security breach, with users reporting that their accounts have been hijacked to send out spam messages to friends.

Users on Twitter have reported receiving pictures of smoothies with a text caption directing them to a website named snapfroot.com, which – when visited by The Independent - redirects to a site selling weight-loss supplements. Web-users are advised not to follow the link.

Wired writer Joe Brown was one of those whose account was hacked, and was told by a Snapchat spokesperson that the problems had been occurring over a few days.

Interestingly, Snapchat are saying that accounts have been compromised not by “brute-force tactics” but from hackers guessing logins “on the first try”. This is presumably due to individuals re-using passwords from other accounts – always a big mistake when it comes to online security.

The company has released an official statement: "Yesterday a small number of our users experienced a spam incident where unwanted photos were sent from their accounts. Our security team deployed additional measures to secure accounts. We recommend using unique and strong passwords to prevent abuse."

The hack is similar to one that affected Instagram users in June and July last year, with the photo-sharing app forced to ask more than 130 million users to reset their passwords after compromised accounts started spamming pictures promoting all-fruit diets and healthy smoothies.

The Instagram incident shows that this type of attack is not a rarity, but in Snapchat’s case the implication is more serious due to past history. The company has already suffered from several high-profile hacking incidents and some experts have accused the app’s makers of not taking its users’ security seriously.

In January this year hackers published data belonging to 4.6 million Snapchat users online, weeks after separate security researchers had reported the vulnerability that allowed the hack to the company. They later blamed the breach on the app's increasing popularity.

Join our commenting forum

Join thought-provoking conversations, follow other Independent readers and see their replies

Comments

Thank you for registering

Please refresh the page or navigate to another page on the site to be automatically logged inPlease refresh your browser to be logged in