{"id":400,"date":"2020-11-27T13:54:26","date_gmt":"2020-11-27T13:54:26","guid":{"rendered":"https:\/\/www.tsfactory.com\/forums\/?p=400"},"modified":"2020-11-27T13:55:00","modified_gmt":"2020-11-27T13:55:00","slug":"spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak","status":"publish","type":"post","link":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/","title":{"rendered":"Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak"},"content":{"rendered":"<p>Spotify has issued a rolling password reset of some user accounts following the discovery of an open database containing user credentials.<\/p>\n<p>This week, vpnMentor researchers Noam Rotem and Ran Locar made their findings public, in which an open Elasticsearch database was found during the firm&#8217;s web mapping project.<\/p>\n<p>The 72GB database contained over 380 million records, &#8220;including login credentials and other user data being validated against the Spotify service,&#8221; the team said.<\/p>\n<p>See also: Unsecured database exposes 85GB in security logs of major hotel chains<\/p>\n<p>According to vpnMentor, the origins of the database are unknown, but it does not belong to the music streaming service itself. Instead, the third-party that created the database may have collated the records from other sources &#8212; such as stolen data dumps or another platform &#8212; for later use to hijack user accounts.<\/p>\n<p>&#8220;These credentials were most likely obtained illegally or potentially leaked from other sources that were repurposed for credential stuffing attacks against Spotify,&#8221; Rotem and Locar said.<\/p>\n<p>Some, but not all, Spotify users have been impacted. It is estimated that roughly 300,000 to 350,000 accounts were embroiled in the leak, in which email addresses, Personally Identifiable Information (PII), countries of residence, and login credentials &#8212; both usernames and passwords &#8212; were available to view.<\/p>\n<p><a href=\"https:\/\/www.zdnet.com\/article\/spotify-launches-rolling-reset-on-customer-accounts-linked-to-data-leak\/\">Read the Full Story Here<\/a><\/p>\n<p>ZDNet<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Spotify has issued a rolling password reset of some user accounts following the discovery of an open database containing user credentials. This week, vpnMentor researchers Noam Rotem and Ran Locar made their findings public, in which an open Elasticsearch database was found during the firm&#8217;s web mapping project. The 72GB database contained over 380 million [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":363,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[],"class_list":["post-400","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v24.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak - Community<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak - Community\" \/>\n<meta property=\"og:description\" content=\"Spotify has issued a rolling password reset of some user accounts following the discovery of an open database containing user credentials. This week, vpnMentor researchers Noam Rotem and Ran Locar made their findings public, in which an open Elasticsearch database was found during the firm&#8217;s web mapping project. The 72GB database contained over 380 million [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/\" \/>\n<meta property=\"og:site_name\" content=\"Community\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/TSFactoryLLC\/\" \/>\n<meta property=\"article:published_time\" content=\"2020-11-27T13:54:26+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-11-27T13:55:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2020\/10\/pexels-cottonbro-5474296-1.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1280\" \/>\n\t<meta property=\"og:image:height\" content=\"1919\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Chelsie Wyatt\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@TSFactoryLLC\" \/>\n<meta name=\"twitter:site\" content=\"@TSFactoryLLC\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Chelsie Wyatt\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/\",\"url\":\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/\",\"name\":\"Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak - Community\",\"isPartOf\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2020\/10\/pexels-cottonbro-5474296-1.jpg\",\"datePublished\":\"2020-11-27T13:54:26+00:00\",\"dateModified\":\"2020-11-27T13:55:00+00:00\",\"author\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/9d9908f0e12559297335ebe9b601c82f\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#primaryimage\",\"url\":\"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2020\/10\/pexels-cottonbro-5474296-1.jpg\",\"contentUrl\":\"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2020\/10\/pexels-cottonbro-5474296-1.jpg\",\"width\":1280,\"height\":1919},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.tsfactory.com\/forums\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#website\",\"url\":\"https:\/\/www.tsfactory.com\/forums\/\",\"name\":\"Community\",\"description\":\"TSFactory\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.tsfactory.com\/forums\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/9d9908f0e12559297335ebe9b601c82f\",\"name\":\"Chelsie Wyatt\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/09ff3801fb7566acf715fe4e81a9bd942b923c236138a3ed8a8375f099e5d6d6?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/09ff3801fb7566acf715fe4e81a9bd942b923c236138a3ed8a8375f099e5d6d6?s=96&d=mm&r=g\",\"caption\":\"Chelsie Wyatt\"},\"url\":\"https:\/\/www.tsfactory.com\/forums\/blog\/author\/chelsie\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak - Community","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/","og_locale":"en_US","og_type":"article","og_title":"Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak - Community","og_description":"Spotify has issued a rolling password reset of some user accounts following the discovery of an open database containing user credentials. This week, vpnMentor researchers Noam Rotem and Ran Locar made their findings public, in which an open Elasticsearch database was found during the firm&#8217;s web mapping project. The 72GB database contained over 380 million [&hellip;]","og_url":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/","og_site_name":"Community","article_publisher":"https:\/\/www.facebook.com\/TSFactoryLLC\/","article_published_time":"2020-11-27T13:54:26+00:00","article_modified_time":"2020-11-27T13:55:00+00:00","og_image":[{"width":1280,"height":1919,"url":"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2020\/10\/pexels-cottonbro-5474296-1.jpg","type":"image\/jpeg"}],"author":"Chelsie Wyatt","twitter_card":"summary_large_image","twitter_creator":"@TSFactoryLLC","twitter_site":"@TSFactoryLLC","twitter_misc":{"Written by":"Chelsie Wyatt","Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/","url":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/","name":"Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak - Community","isPartOf":{"@id":"https:\/\/www.tsfactory.com\/forums\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#primaryimage"},"image":{"@id":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#primaryimage"},"thumbnailUrl":"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2020\/10\/pexels-cottonbro-5474296-1.jpg","datePublished":"2020-11-27T13:54:26+00:00","dateModified":"2020-11-27T13:55:00+00:00","author":{"@id":"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/9d9908f0e12559297335ebe9b601c82f"},"breadcrumb":{"@id":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#primaryimage","url":"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2020\/10\/pexels-cottonbro-5474296-1.jpg","contentUrl":"https:\/\/www.tsfactory.com\/forums\/wp-content\/uploads\/2020\/10\/pexels-cottonbro-5474296-1.jpg","width":1280,"height":1919},{"@type":"BreadcrumbList","@id":"https:\/\/www.tsfactory.com\/forums\/blog\/spotify-launches-rolling-reset-on-customer-accounts-passwords-linked-to-data-leak\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.tsfactory.com\/forums\/"},{"@type":"ListItem","position":2,"name":"Spotify launches \u2018rolling reset\u2019 on customer accounts, passwords linked to data leak"}]},{"@type":"WebSite","@id":"https:\/\/www.tsfactory.com\/forums\/#website","url":"https:\/\/www.tsfactory.com\/forums\/","name":"Community","description":"TSFactory","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.tsfactory.com\/forums\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/9d9908f0e12559297335ebe9b601c82f","name":"Chelsie Wyatt","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.tsfactory.com\/forums\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/09ff3801fb7566acf715fe4e81a9bd942b923c236138a3ed8a8375f099e5d6d6?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/09ff3801fb7566acf715fe4e81a9bd942b923c236138a3ed8a8375f099e5d6d6?s=96&d=mm&r=g","caption":"Chelsie Wyatt"},"url":"https:\/\/www.tsfactory.com\/forums\/blog\/author\/chelsie\/"}]}},"_links":{"self":[{"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/posts\/400","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/comments?post=400"}],"version-history":[{"count":1,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/posts\/400\/revisions"}],"predecessor-version":[{"id":401,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/posts\/400\/revisions\/401"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/media\/363"}],"wp:attachment":[{"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/media?parent=400"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/categories?post=400"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.tsfactory.com\/forums\/wp-json\/wp\/v2\/tags?post=400"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}