A widespread hacking campaign that appears to stem from Russia is affecting hundreds of Instagram users, leaving people locked out of their accounts.
The hack sees Instagram account names, profile pictures, passwords and email addresses associated with accounts changed by the attackers, with the new email addresses originating from a Russian email provider. When user try to login into their account a message is shown with user email and extension of ru, saying that reset mail is sent at the email.
Many of the affected accounts have had their profile pictures replaced with stills from popular films, including Pirates of the Caribbean and Despicable Me 3 and this matter is spreading and being discussed on twitter.
A spokesperson for Instagram was not immediately available for comment but the company tweeted an acknowledgment of the issue on Wednesday, 15 August.
“We are aware that some people are having difficulty accessing their Instagram accounts,” the company tweeted. “If you think you have been impacted, please follow our guidance to regain access.”
The Facebook-owned firm’s official guidance for regaining access to a hacked account claim that Instagram users will be notified of any change of email address to their account via an email to the original address.
“Please click the link marked ‘revert this change’ in the email, and then change your password,” the guidelines state. “We advise you pick a strong password. Use a combination of at least six numbers, letters and punctuation marks… It should be different from other passwords used elsewhere on the internet.”
Some security experts have speculated that the hacked accounts could be used as spam bots and one of them said :
“Even if some victims regain control of their accounts, many of those affected have likely quit the platform or just won’t go through the trouble, adding soldiers to the spam-bot army.”