Advertisement
U.S. markets open in 2 hours 21 minutes
  • S&P Futures

    5,203.25
    -11.50 (-0.22%)
     
  • Dow Futures

    39,159.00
    -64.00 (-0.16%)
     
  • Nasdaq Futures

    18,181.50
    -50.00 (-0.27%)
     
  • Russell 2000 Futures

    2,045.00
    -4.80 (-0.23%)
     
  • Crude Oil

    82.55
    -0.17 (-0.21%)
     
  • Gold

    2,157.50
    -6.80 (-0.31%)
     
  • Silver

    25.14
    -0.13 (-0.51%)
     
  • EUR/USD

    1.0850
    -0.0027 (-0.25%)
     
  • 10-Yr Bond

    4.3400
    0.0000 (0.00%)
     
  • Vix

    14.62
    +0.29 (+2.02%)
     
  • GBP/USD

    1.2684
    -0.0044 (-0.35%)
     
  • USD/JPY

    150.5190
    +1.4210 (+0.95%)
     
  • Bitcoin USD

    63,000.07
    -5,006.44 (-7.36%)
     
  • CMC Crypto 200

    885.54
    0.00 (0.00%)
     
  • FTSE 100

    7,705.84
    -16.71 (-0.22%)
     
  • Nikkei 225

    40,003.60
    +263.20 (+0.66%)
     

Facebook waited until the Mueller report dropped to tell us millions of Instagram passwords were exposed

Given the terrible run of form it’s been on over the last year, it probably shouldn’t be that surprising that Facebook waited until the highly anticipated report on Russian interference in the 2016 US presidential election to deliver some bad news.

While just about every reporter was poring over the document, Facebook updated a blog post from March indicating that passwords had been exposed, stored as readable text (as opposed to securely encrypted), for hundreds of millions of Facebook users and thousands of Instagram users. It added a new paragraph to the middle of the post today indicating that a lot more Instagram users were affected than it originally thought:

(Update on April 18, 2019 at 7AM PT: Since this post was published, we discovered additional logs of Instagram passwords being stored in a readable format. We now estimate that this issue impacted millions of Instagram users. We will be notifying these users as we did the others. Our investigation has determined that these stored passwords were not internally abused or improperly accessed).

Just a small update from “thousands” to “millions,” then.

Facebook said it would notify the impacted users and that there’s no evidence that anyone within or outside Facebook had access to the passwords. But still, those users, and perhaps anyone else, might want to change their password or enable two-factor authentication just to make sure. That’s never a bad idea anyway.

 

Sign up for the Quartz Daily Brief, our free daily newsletter with the world’s most important and interesting news.

More stories from Quartz:

Advertisement