Snapchat hack sends people pictures of smoothies


A new Snapchat hack is sending bewildered users pictures of smoothies emblazoned with the URL for a spammy weight loss company called Snapfroot. The hack seems to have affected a significant number of users, judging by the number of people complaining about it online, but Snapchat told Wired that there's no evidence of a brute force attack. "It’s mostly cases where someone has your email address and password and gets in on the first try," a spokesperson told editor Joe Brown, an early victim.

This hack is a lot like an attack over the summer when hackers broke into Instagram users' accounts, posted pictures of smoothies, and linked to a similarly spammy website from their victims' profiles.

The hack is fairly innocuous — the Snapfroot URL currently redirects to an AllRecipes.com smoothie recipe — and it doesn't appear to be the company's fault. It's a reminder that Snapchat is now a major target for hackers, however. In January, hackers published 4.6 million user names and partial phone numbers.

Update: Snapchat has issued a statement. "Yesterday a small number of our users experienced a spam incident where unwanted photos were sent from their accounts. Our security team deployed additional measures to secure accounts. We recommend using unique and strong passwords to prevent abuse." The company declined to say how many users were affected by the hack.

The Verge
Log In Sign Up

Log In Sign Up

Forgot password?

We'll email you a reset link.

If you signed up using a 3rd party account like Facebook or Twitter, please login with it instead.

Forgot password?

Try another email?

Almost done,

By becoming a registered user, you are also agreeing to our Terms and confirming that you have read our Privacy Policy.



Choose an available username to complete sign up.

In order to provide our users with a better overall experience, we ask for more information from Facebook when using it to login so that we can learn more about our audience and provide you with the best possible experience. We do not store specific user data and the sharing of it is not required to login with Facebook.