Support The Moscow Times!

Bloggers Reveal Flaw in Skype Security Settings

A glitch in the security settings on online phone service Skype meant that users' accounts were vulnerable to hacking for months, bloggers said.

Attention was initially drawn to the issue on Russian hacker forum Xeksec.com after users demonstrated how to hack into a Skype account using only the user's registered e-mail address.

A hacker could then use that e-mail address to create a new Skype account and use the password reset function to gain access to the user's original account.

Since not all users are paying subscribers and rarely have large sums of money on their accounts, the consequences of the Skype security glitch would vary from user to user. However, account-holders' instant message history and personal details such as dates of birth would have been instantly accessible to a hacker.

An unidentified Skype user told business daily Vedomosti that they had informed Skype of the problem a couple of months ago but that it had not been resolved.

On Wednesday, Skype said it had "concerns surrounding the security of the password reset feature" and temporarily suspended the function.

Skype's decision to act comes after a hacking guide appeared Tuesday on Habrahabr.ru that attempted to gain access to the accounts of prominent bloggers including Alexei Navalny and Anton Nossik.

According to Vedomosti, Nossik was woken at 5 a.m. by a call from a hacker warning him about the problem. Navalny has since said on his Twitter page that he had deleted his Skype account.

Skype said in a separate statement Wednesday that it had fixed the flaw, adding that it was investigating complaints by "a small number of users." Skype has more than 600 million registered users worldwide.

Related articles:

Sign up for our free weekly newsletter

Our weekly newsletter contains a hand-picked selection of news, features, analysis and more from The Moscow Times. You will receive it in your mailbox every Friday. Never miss the latest news from Russia. Preview
Subscribers agree to the Privacy Policy

A Message from The Moscow Times:

Dear readers,

We are facing unprecedented challenges. Russia's Prosecutor General's Office has designated The Moscow Times as an "undesirable" organization, criminalizing our work and putting our staff at risk of prosecution. This follows our earlier unjust labeling as a "foreign agent."

These actions are direct attempts to silence independent journalism in Russia. The authorities claim our work "discredits the decisions of the Russian leadership." We see things differently: we strive to provide accurate, unbiased reporting on Russia.

We, the journalists of The Moscow Times, refuse to be silenced. But to continue our work, we need your help.

Your support, no matter how small, makes a world of difference. If you can, please support us monthly starting from just $2. It's quick to set up, and every contribution makes a significant impact.

By supporting The Moscow Times, you're defending open, independent journalism in the face of repression. Thank you for standing with us.

Once
Monthly
Annual
Continue
paiment methods
Not ready to support today?
Remind me later.

Read more