New for the self-employed: Forward landline numbers to mobile phones →

Follow us on Social Media

Nederlands NL English EN

350.000 Spotify accounts targeted by hackers

350.000 Spotify Accounts Targeted By Hackers Up to 350.000 Spotify accounts have fallen victim to hackers who are cracking them using weak passwords, security researchers from Israeli website VPNMentor have revealed. While the music streaming service itself was not hacked, the researchers found an unprotected online database containing approximately 380 million individual records/ […] Continue reading

  • 10+ years of experience
  • 100% Satisfaction Guarantee
  • Free quote within 24 hours
  • Microsoft partner
  • No contracts
  • Complete ICT management
  • Lowest price guarantee

Request a no-obligation quote →

350.000 Spotify accounts targeted by hackers
350.000 Spotify accounts targeted by hackers
350.000 Spotify accounts targeted by hackers
350.000 Spotify accounts targeted by hackers

We work on a punch card basis. You buy a bundle of hours, use us whenever you want, and only pay for the time we actually spend. 🙂 No waste, no ongoing monthly costs.

Watch directly →

Request an IT quote without obligation within 24 hours.

Starter

€95

120 minutes all year round

Ideal for: 1-3 employees

Order

  • Free advice
  • Organization-wide
  • No starting rate
  • Valid for 1 year
  • Mon-Fri: 09:00 – 17:00
  • Discount on rate at location

Professional

€179

270 minutes all year round

Ideal for: 3-6 employees

Order

  • Free advice
  • Organization-wide
  • No starting rate
  • Valid for 1 year
  • Mon-Fri: 09:00 – 17:00
  • Discount on rate at location
350.000 Spotify accounts targeted by hackers

350.000 Spotify accounts targeted by hackers

Up to 350.000 Spotify accounts have fallen prey to hackers who crack them using weak passwords. Security researchers from the Israeli website VPNMentor revealed this. Although the music streaming service itself has not been hacked, researchers found an unprotected online database containing approximately 380 million individual records. These were likely stolen during old data breaches or phishing attacks and not directly related to Spotify. But they offer hackers a torrent of passwords and credentials that allow them to carry out cyber attacks. The database owner used the records to conduct “credential stuffing” attacks, by trying to access passwords, usernames, and/or email addresses (Spotify lets you use both) to access accounts on multiple online services. Spotify was alerted to the situation by VPNMentor researchers in early July and quickly forced all affected users to reset their passwords. However, those users are still vulnerable to credential attacks on other services that compromise their old Spotify credentials. passwords have been reused.

What can you do

If you're a Spotify user and you've been using the same set of login credentials—a password plus a username and/or email address—for other accounts, you should change the passwords for those accounts immediately. Make sure each new password is long, strong, and unique. You should also urge Spotify to offer two-factor authentication (2FA) as a security option to prevent exactly this kind of account takeover. Without the "second" factor—a text message code, an app-generated code, a specific smartphone, or a physical security key—an attacker can't access your account, even with your password. Most well-known online services already offer 2FA, and it's time for Spotify to join them.

Other risks

The database could also leave Spotify users vulnerable to phishing attacks and even identity theft, VPNMentor researchers warned. "Fraudsters could use the exposed emails and names from the breach to identify users on other platforms and social media accounts," the report said. "Fraudsters could also use the contact information to directly target the exposed users with phishing emails, tricking them into providing sensitive data like credit card information, or clicking on a fake link embedded with malware." This, of course, is the case when a major data breach exposes login credentials. Virtually everyone who has ever had an online account has had something exposed. You can view your own email addresses and passwords on the (safe to use) website HaveIBeenPwned.

How can you make sure this doesn't happen again

Credential stuffing generally only works because most people use the same password for more than one account, or use simple, common passwords that can be easily guessed. If the password, username, and/or email address associated with just one of those accounts is exposed to a data breach or phishing attack, then all accounts using those credentials will be accessible, no matter how strong the password also is. Credential stuffing isn't really a hack since the attacker already has the "keys" and is using the login software as it was designed. Instead, you made it easier for the attacker by using the same set of keys for more than one account. Reusing passwords is like having a single key for your house, your car, your office, and your home safe. Using one of the top 10.000 or so most commonly used passwords is like having a blank key. As soon as someone gets a copy of that key, you are already too late. Therefore, always use different passwords.

An all-round ICT company in South Holland

ICT company in Vlaardingen

ICT services in Vondelwijk

Voorburg ICT solutions

Voorschoten IT experts

Voorhout ICT company

Waddinxveen IT services

Wassenaar ICT specialists

ICT services in Zoetermeer

Bennebroek ICT solutions

ICT expertise in Spijkenisse

Nieuwkoop IT support

Leiderdorp ICT services

Oude Wetering IT company

Alblasserdam IT solutions

ICT experts in Barendrecht

ICT services in Ypenburg

Bergschenhoek IT services

Utrecht ICT solutions

De Lier ICT support

ICT expertise in Hoofddorp

Bodegraven IT services

Katwijk aan Zee IT company

ICT services in Goedereede

Berkel and Rodenrijs ICT

Alphen aan den Rijn IT

ICT services in Benthuizen

Bleiswijk ICT solutions

ICT specialists in Bloemendaal

Boskoop IT services

ICT expertise in Brielle

Capelle aan den IJssel ICT

ICT solutions in Delfshaven

Capelle West IT services

ICT specialists in Delft

Haastrecht IT support

Gouda ICT solutions

ICT services in Heerjansdam

Groenswaard IT company

Heinenoord IT services

ICT specialists in Hellevoetsluis

Hoek van Holland IT

Hendrik Ido Ambacht ICT

Hillegom IT solutions

ICT expertise in Honselersdijk

ICT services in Oranjewijk

Katwijk aan den Rijn ICT

Leiden ICT solutions

ICT specialists in Lisse

ICT expertise in Maassluis

Maasdijk IT services

Mijnsheerenland IT company

IT services in Monster

Naaldwijk ICT solutions

ICT expertise in Nieuwenhoorn

Noordwijk Within IT

ICT services in Nieuw Helvoet

Kwintsheul IT support

Krimpen aan den IJssel ICT

Leimuiden IT services

Reeuwijk ICT solutions

ICT services in Rhoon

Rijnsburg IT support

Rijswijk ICT solutions

ICT experts in Ridderkerk

Rotterdam IT services

New Lekkerland ICT

Noordwijkerhout IT

Oegstgeest ICT solutions

ICT services in Poeldijk

Oud Beijerland IT

Pijnacker IT services

ICT experts in Scheveningen

Sassenheim IT solutions

ICT services in Schiedam

ICT expertise in 's Gravenzande

Benefit from our total solutions in ICT support

Other articles

How do you scale networks for growing businesses?

As your business grows, one of your top priorities is scaling your IT network. Why? Because a well-tuned and scalable network is the lifeblood of a modern organization. But how do you approach that? Start by analyzing your current...

Read more

Automating system management: how do you do that?

Automating system administration: sounds like a complicated project, right? But imagine having a smart system that handles daily, time-consuming tasks for you. Think of performing updates, creating backups, and running security checks. This is...

Read more