Talk about Friday night news dumps… Iain Thomson, writing for The Reg, wasn’t distracted by today’s news. Previously, Facebook said that “tens of th
[See the full post at: Facebook admits, one hour before the Mueller report press conference, that oh golly “millions” of Instagram users had plain-text passwords exposed]
![]() |
Patch reliability is unclear. Unless you have an immediate, pressing need to install a specific patch, don't do it. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Facebook admits, one hour before the Mueller report press conference, that oh golly “millions” of Instagram users had plain-text passwords exposed
Home » Forums » Newsletter and Homepage topics » Facebook admits, one hour before the Mueller report press conference, that oh golly “millions” of Instagram users had plain-text passwords exposed
- This topic has 23 replies, 13 voices, and was last updated 5 years, 12 months ago.
AuthorTopicwoody
ManagerApril 18, 2019 at 2:38 pm #549495Viewing 10 reply threadsAuthorReplies-
GreatAndPowerfulTech
AskWoody LoungerApril 18, 2019 at 2:51 pm #549753No one should be surprised that Facebook, which has had a culture of disdain for users since day one, lies on an ongoing basis. The only hope is to clean house of Zuckerberg’s team, and establish a new board and management team that can efficiently and effectively run a business while also being ethical.
GreatAndPowerfulTech
-
anonymous
GuestApril 18, 2019 at 3:17 pm #550274
-
Seff
AskWoody PlusApril 18, 2019 at 3:01 pm #549946If you just work from the premise that there’s no such thing as privacy on the internet then you probably won’t go far wrong.
Then again, most if not all of the bad things about the internet would disappear overnight if anonymity was totally removed and people accepted as much responsibility for their actions on the internet as they used to have to do for their actions in previous mediums!
-
anonymous
Guest -
Bluetrix
AskWoody MVP -
anonymous
Guest
-
-
anonymous
GuestApril 18, 2019 at 4:13 pm #551520Similar to Seff’s observation on illusion of privacy. Each time I read some small portion of a group was exposed, my first question is what made them special among the global list?
I simply assume there was nothing that made the few thousand different from the millions. That all the millions were handled exactly the same way. And that the initial announcement is to break the ice with a minimizing statement. The goal is to defray the expected outrage with a two stage or more press release. I have rarely been disappointed by using this assumption, and following logic.
Why would they have more than one method for handling user information? I conclude all were handled the same, and all were exposed to the same degree.
OscarCP
MemberApril 18, 2019 at 6:46 pm #556165This is a real “there ought to be a law” moment, and one could add: “and not too soon!”.
Because, yes, this is bad, and it just keeps getting worse:
Here in the USA we don’t have much by way of relevant and effective legal protections for things like this, but there was a law introduced recently in Congress (in the Senate, I seem to remember) that, I believe, again if I remember correctly, was introduced and sponsored by members from both parties: Republicans and Democrats. Anybody knows how that is going?
Ex-Windows user (Win. 98, XP, 7); since mid-2017 using also macOS. Presently on Monterey 12.15 & sometimes running also Linux (Mint).
MacBook Pro circa mid-2015, 15" display, with 16GB 1600 GHz DDR3 RAM, 1 TB SSD, a Haswell architecture Intel CPU with 4 Cores and 8 Threads model i7-4870HQ @ 2.50GHz.
Intel Iris Pro GPU with Built-in Bus, VRAM 1.5 GB, Display 2880 x 1800 Retina, 24-Bit color.
macOS Monterey; browsers: Waterfox "Current", Vivaldi and (now and then) Chrome; security apps. Intego AV-
Bluetrix
AskWoody MVPApril 18, 2019 at 7:45 pm #558303Here in the USA we don’t have much by way of relevant and effective legal protections for things like this, but there was a law introduced recently in Congress (in the Senate, I seem to remember) that, I believe, again if I remember correctly, was introduced and sponsored by members from both parties: Republicans and Democrats. Anybody knows how that is going?
I’m guessing you refer to the Data Care Act. It’s most likely buried in some subcommittee.
While some support it, push back on overreaching is bantered about. From what I read about it the concern was related to ISP’s and OSP’s data collection, selling and sharing personal information. Not sure if that would relate to FB, they aren’t either.
Small read here: https://www.law.com/nationallawjournal/2019/01/25/why-the-data-care-act-matters/?slreturn=20190318203537
-
Bluetrix
AskWoody MVPApril 18, 2019 at 8:10 pm #559212The bill defines “online service providers” broadly to include any entity that “is engaged in interstate commerce over the internet or any other digital network” and “collects individual identifying data about end users.”
I stand corrected on my ISP/OSP comment.
-
Nathan Parker
AskWoody_MVPApril 18, 2019 at 7:10 pm #557053I also read about it here:
https://www.macrumors.com/2019/04/18/millions-of-instagram-passwords-plain-text/
And that’s not the only Facebook “security and privacy issue du jour” today:
https://www.macrumors.com/2019/04/18/facebook-scraped-email-contacts-of-users/
Nathan Parker
OscarCP
MemberApril 18, 2019 at 7:40 pm #558136And, as I think willygirl already has pointed out elsewhere at Woody’s, even if one is not in one of these (anti)social networks (the following example is all mine) someone who is might have already published pictures of you — with your name and place of residence in the caption — having a terrific time with a great-looking lady (unfortunately, as it later transpired, not your lady wife) when they (the ones who took and then posted the picture) were with you and such a delightful companion (to whom they thought you were lawfully wedded) having a lovely time at the annual local Lions’ Club barbecue.
Ex-Windows user (Win. 98, XP, 7); since mid-2017 using also macOS. Presently on Monterey 12.15 & sometimes running also Linux (Mint).
MacBook Pro circa mid-2015, 15" display, with 16GB 1600 GHz DDR3 RAM, 1 TB SSD, a Haswell architecture Intel CPU with 4 Cores and 8 Threads model i7-4870HQ @ 2.50GHz.
Intel Iris Pro GPU with Built-in Bus, VRAM 1.5 GB, Display 2880 x 1800 Retina, 24-Bit color.
macOS Monterey; browsers: Waterfox "Current", Vivaldi and (now and then) Chrome; security apps. Intego AV-
Bluetrix
AskWoody MVP -
OscarCP
MemberApril 18, 2019 at 7:59 pm #558764Hmmm… Are you also counting in as “barbecues” the rubber-chicken events? I wouldn’t dare take any lady, regardless of marital status, to one such event.
Now, to a “pancake breakfast”… well, there is an idea!
Ex-Windows user (Win. 98, XP, 7); since mid-2017 using also macOS. Presently on Monterey 12.15 & sometimes running also Linux (Mint).
MacBook Pro circa mid-2015, 15" display, with 16GB 1600 GHz DDR3 RAM, 1 TB SSD, a Haswell architecture Intel CPU with 4 Cores and 8 Threads model i7-4870HQ @ 2.50GHz.
Intel Iris Pro GPU with Built-in Bus, VRAM 1.5 GB, Display 2880 x 1800 Retina, 24-Bit color.
macOS Monterey; browsers: Waterfox "Current", Vivaldi and (now and then) Chrome; security apps. Intego AV
-
OscarCP
MemberApril 18, 2019 at 10:01 pm #562886And, not to repeat myself but, well, it can’t b helped: This just keeps getting worse and worse.
https://www.theverge.com/2019/4/18/18485599/facebook-instagram-passwords-plain-text-millions-users
” Today’s update just expands the scope of the security lapse. Facebook has had a particularly bad year when it comes to security issues — Cambridge Analytica, a giant hack, another hack — and this news comes the same day that we found out Facebook had been accessing and storing some users’ email contacts without their permission, after encouraging users to hand over their email address passwords. Facebook says it’ll be contacting all the people whose Instagram passwords were improperly stored. ”
“Encouraging users to hand over their email address [account] password”. Isn’t that something?
But not even original: Linkedin, the CV-showing place and professional connections network also asks (or used to ask) for one’s email account password.
I was once in the process of registering and creating an account there, at the invitation of a colleague. When I was doing that, this request for providing them with my email account password came to my attention. Immediately I click off the Web page of Linkedin where one registers as a new member. When later I got an email from Linkedin telling me my registration had to be completed, I answered that I did not want to register, because of their asking me to reveal my email account password in order to let me register. End of story.
Ex-Windows user (Win. 98, XP, 7); since mid-2017 using also macOS. Presently on Monterey 12.15 & sometimes running also Linux (Mint).
MacBook Pro circa mid-2015, 15" display, with 16GB 1600 GHz DDR3 RAM, 1 TB SSD, a Haswell architecture Intel CPU with 4 Cores and 8 Threads model i7-4870HQ @ 2.50GHz.
Intel Iris Pro GPU with Built-in Bus, VRAM 1.5 GB, Display 2880 x 1800 Retina, 24-Bit color.
macOS Monterey; browsers: Waterfox "Current", Vivaldi and (now and then) Chrome; security apps. Intego AV-
The Surfing Pensioner
AskWoody PlusApril 19, 2019 at 7:56 pm #599905?? LinkedIn has never asked me for my password! I also have a Facebook account, which causes me no concern whatsoever. It is public and I make absolutely certain nothing gets posted there that I should not want the world to see. I normally log on a couple of times a year to update my profile picture and say, Hi, fans, I’m still alive! After all, it’s meant to be a billboard, isn’t it? Treat it like one and you haven’t got a problem.
Nathan Parker
AskWoody_MVPMrJimPhelps
AskWoody MVPApril 19, 2019 at 9:06 am #584267I suggest that people not use the same password for FB, Instagram, etc., that they use for other things. If you had a separate social media password, then the only thing that would have been exposed here would have been your social media password.
Group "L" (Linux Mint)
with Windows 10 running in a remote session on my file server-
PKCano
Manager -
AlexEiffel
AskWoody_MVPApril 19, 2019 at 2:02 pm #590917 -
OscarCP
MemberApril 19, 2019 at 4:21 pm #594389Alex Eiffel: ” Good security practices recommend that you never reuse a password anywhere. “
Quite true, always a wise thing to do, but probably not enough, in this case. Some bad actors getting one’s password from the FB break-in (or some bad FB employee) can do a lot of harm by browsing one’s personal information there, even if those bad actors are unable to access other accounts elsewhere.
Especially if they also got from a user the email account password, as already mentioned. What has not been mentioned is exactly how that would create a most dire risk to that user, something I think needs to be spelled out very clearly, as not everybody may realize just how bad a risk this can be. I hope others may be able to offer further information on this particular. It could be of real service to some loungers.
Ex-Windows user (Win. 98, XP, 7); since mid-2017 using also macOS. Presently on Monterey 12.15 & sometimes running also Linux (Mint).
MacBook Pro circa mid-2015, 15" display, with 16GB 1600 GHz DDR3 RAM, 1 TB SSD, a Haswell architecture Intel CPU with 4 Cores and 8 Threads model i7-4870HQ @ 2.50GHz.
Intel Iris Pro GPU with Built-in Bus, VRAM 1.5 GB, Display 2880 x 1800 Retina, 24-Bit color.
macOS Monterey; browsers: Waterfox "Current", Vivaldi and (now and then) Chrome; security apps. Intego AV
-
madhatter
AskWoody PlusSteve
AskWoody PlusApril 20, 2019 at 11:50 pm #654241OscarCP wrote: annual local Lions’ Club barbecue.
I’ll have you know we have them more often that that, but a pancake breakfast is more likely.
{Henry McGee to Fred Scuttle (Benny Hill) And what is your main function?
“Oh. Well, our main function is our annual dinner dance, which we hold twice a year.” ;)}
Every day, another report comes across that makes me glad I never surrendered to the lure of F**ebook and Ins**gram. People, this is how you will be compromised. Not via some ransomware or DDoS attack. Get off there NOW. {There would be an emoji here – but I can’t find it rapidly enough – so I’ll try these.} ❗ 😯 X-)
Important links you can use, without the monetization pitch = https://pqrs-ltd.xyz/bookmark4.htmlViewing 10 reply threads -

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
A Funny Thing Happened on the Way to the Forum
by
bbearren
2 hours, 21 minutes ago -
Download speeds only 0.3Mbps after 24H2 upgrade on WiFi and Ethernet
by
John
8 hours, 3 minutes ago -
T-Mobile 5G Wireless Internet
by
WSmmi16
7 hours, 4 minutes ago -
Clock missing above calendar in Windows 10
by
WSCape Sand
5 hours, 28 minutes ago -
Formula to Calculate Q1, Q2, Q3, or Q4 of the Year?
by
WSJon5
6 hours, 11 minutes ago -
The time has come for AI-generated art
by
Catherine Barrett
14 hours, 53 minutes ago -
Hackers are using two-factor authentication to infect you
by
B. Livingston
14 hours, 53 minutes ago -
23 and you
by
Max Stul Oppenheimer
3 hours, 9 minutes ago -
April’s deluge of patches
by
Susan Bradley
7 hours, 20 minutes ago -
Windows 11 Windows Updater question
by
Tex265
13 hours, 7 minutes ago -
Key, Key, my kingdom for a Key!
by
RetiredGeek
1 day, 12 hours ago -
Registry Patches for Windows 10
by
Drcard:))
1 day, 16 hours ago -
Cannot get line length to NOT wrap in Outlining in Word 365
by
CWBillow
23 hours, 5 minutes ago -
DDU (Display Driver Uninstaller) updates
by
Alex5723
8 hours, 24 minutes ago -
Align objects on a OneNote page
by
CWBillow
1 day, 21 hours ago -
OneNote Send To button?
by
CWBillow
1 day, 22 hours ago -
WU help needed with “Some settings are managed by your organization”
by
Peobody
2 days, 7 hours ago -
No Newsletters since 27 January
by
rog7
11 hours, 51 minutes ago -
Linux Mint Debian Edition 7 gets OEM support, death of Ubuntu-based Mint ?
by
Alex5723
1 day, 7 hours ago -
Windows Update “Areca Technology Corporation – System – 6.20.0.41”
by
Bruce
1 day, 6 hours ago -
Google One Storage Questions
by
LHiggins
14 hours, 27 minutes ago -
Button Missing for Automatic Apps Updates
by
pmcjr6142
21 hours, 42 minutes ago -
Ancient SSD thinks it’s new
by
WSila
1 day, 12 hours ago -
Washington State lab testing provider exposed health data of 1.6 million people
by
Nibbled To Death By Ducks
2 days, 22 hours ago -
WinRE KB5057589 fake out
by
Susan Bradley
8 hours, 40 minutes ago -
The April 2025 Windows RE update might show as unsuccessful in Windows Update
by
Susan Bradley
2 days, 6 hours ago -
Firefox 137
by
Charlie
8 hours, 38 minutes ago -
Whisky, a popular Wine frontend for Mac gamers, is no more
by
Alex5723
3 days, 10 hours ago -
Windows 11 Insider Preview build 26120.3863 (24H2) released to BETA
by
joep517
3 days, 10 hours ago -
Windows 11 Insider Preview build 26200.5551 released to DEV
by
joep517
3 days, 10 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.