Streaming

Spotify User Info Compromised

More than a million users of EU based online music service Spotify had the passwords and other sign up info compromised.

Spotify
"Last week we were alerted to a group that managed to compromise our protocols. After investigating we concluded that this group had gained access to information that could allow rapid testing of password guesses, possibly finding the right one. The information was exposed due to a bug that we discovered and fixed on December 19th, 2008. Until last week we were unaware that anyone had had access to our protocols to exploit it.

Along with passwords, registration information such as your email address, birth date, gender, postal code and billing receipt details were potentially exposed. Credit card numbers are not stored by us and were not at risk. All payment data is handled by a secure 3rd party provider.

If you have an account that was created on or before December 19th, 2008, we strongly suggest that you change your password and strongly encourage you to change your passwords for any other services where you use the same password.

more

Share on:

2 Comments

  1. First iStockphoto & now Spotify. Thankfully this was in a very tight beta and I couldn’t get in. I hope they work out the kinks before full release.

  2. It’s not a million users, much more like 10,000 users and it’s not passwords but passwords hashes which is a huge difference.

Comments are closed.