文章摘要
Instagram针对近期大量可疑密码重置请求回应称用户账户安全无虞,强调系统未遭入侵,账号仍处于安全状态。
文章总结
Instagram回应异常密码重置请求:用户账户安全无虞
近日大量Instagram用户收到可疑的密码重置邮件,引发数据泄露担忧。网络安全公司Malwarebytes声称发现涉及1750万用户敏感信息的泄露事件,包含用户名、电子邮箱、电话号码等数据,并表示这些信息已在暗网出售。
Instagram官方迅速回应,在X平台发布声明称:"我们已修复允许外部方为部分用户发送密码重置邮件的问题。系统未被入侵,您的账户是安全的。"平台建议用户忽略这些重置邮件,并对造成的困扰致歉。
值得注意的是,Malwarebytes指出此次事件可能与2024年Instagram API接口暴露的潜在事故有关。虽然Instagram否认系统遭入侵,但其母公司Meta过去曾多次陷入数据泄露风波。
网络安全专家建议用户采取三项防护措施: 1. 启用双重验证功能 2. 定期更换密码 3. 通过Meta账户中心检查已登录设备
(2026年1月11日更新:补充Instagram官方声明内容)
评论总结
以下是评论内容的总结:
1. 数据泄露真实性存疑
部分评论者质疑泄露事件的真实性,认为可能是批量触发密码重置邮件所致: - "Am I missing something? The source they shared is a screenshot of a password reset email" (paxys) - "it seems plausible that the reported wave of reset emails could be explained without any large scale data leak" (pentagrama)
2. 用户遭遇异常登录尝试
多位用户报告近期收到可疑的密码重置请求: - "Someone tried to get into my account 2 days ago by attempting to reset it" (charliebwrites) - "I started getting 'reset your password' emails in early 2023, then they'd come in waves" (prodigycorp)
3. 对Meta/Instagram的批评
包括技术架构问题和商业动机质疑: - "IG operates as its own domain within Meta...constantly playing catch up" (jmyeet) - "MZ bought IG so he could have a monopoly on social communication" (alex1138)
4. 密码安全建议
强调使用密码管理器的重要性: - "I've long-viewed password managers are mandatory" (jmyeet) - "anything 10 characters or less has to be viewed as guessable" (jmyeet)
5. 对事件严重性的不同评估
- 担忧派:"leaking physical addresses is going to cost the company more than a billion dollars" (jmyeet)
- 怀疑派:"feels like this is overblown and it's again just scraped data" (Tiberium)
6. 平台弃用观点
- "can't believe people are still using that shit" (dwa3592)
注:所有评论均未显示评分(None),原始讨论中缺少明确的认可度指标。