Customize Consent Preferences

We use cookies to help you navigate efficiently and perform certain functions. You will find detailed information about all cookies under each consent category below.

The cookies that are categorized as "Necessary" are stored on your browser as they are essential for enabling the basic functionalities of the site. ... 

Always Active

Necessary cookies are required to enable the basic features of this site, such as providing secure log-in or adjusting your consent preferences. These cookies do not store any personally identifiable data.

No cookies to display.

Functional cookies help perform certain functionalities like sharing the content of the website on social media platforms, collecting feedback, and other third-party features.

No cookies to display.

Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics such as the number of visitors, bounce rate, traffic source, etc.

No cookies to display.

Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.

No cookies to display.

Advertisement cookies are used to provide visitors with customized advertisements based on the pages you visited previously and to analyze the effectiveness of the ad campaigns.

No cookies to display.

admin
Pinned December 20, 2020

<> Embed

@  Email

Report

Uploaded by user
Spotify forces more password resets after plugging a security hole
<> Embed @  Email Report

Spotify forces more password resets after plugging a security hole

Igor Bonifacic, @igorbonifacic

December 10, 2020

If you use Spotify, you’ll want to keep an eye on your email inbox to see if you get a message prompting you to change your login credentials. The company told TechCrunch it recently reset the passwords of a small subset of its users after a software oversight exposed private account information to some of its business partners.    

In a filing with California’s attorney general office, Spotify said a person’s email address, display name, password, gender and date of birth may have been exposed as a result of the vulnerability. Spotify didn’t say what companies may have seen the information, but it does note that it got in touch with them to ask them to delete the data as soon as possible. It discovered the vulnerability on November 12th, 2020, but suspects it had existed since April 9th, 2020.  

“A very small subset of Spotify users were impacted by a software bug, which has now been fixed and addressed. Protecting our users’ privacy and maintaining their trust are top priorities at Spotify,” a spokesperson for the company told Engadget. “To address this issue, we issued a password reset to impacted users. We take these obligations extremely seriously.”

Spotify hasn’t found any evidence to suggest there’s been unauthorized use of anyone’s personal information. The company was also quick to note this exposure isn’t related to the one that happened last month. If you get a message from the company and you reused your previous Spotify password anywhere else, it recommends you go to those websites and change your password as soon as possible.  

Engadget

(14)