The Human Problem at the Heart of Snapchat's Employee Data Breach

Advertisement
By Andrea Peterson, The Washington Post | Updated: 2 March 2016 12:56 IST
Snapchat says it's "just impossibly sorry" for a recent data breach that exposed payroll information of some current and former employees on Friday.

The Snapchat data wasn't stolen by a coding mastermind who penetrated the company's servers using some unknown flaw. Instead, it was stolen by an attacker who exploited a much simpler, more human vulnerability: trust. The attacker pretended to be Snapchat chief executive Evan Spiegel and tricked an employee into emailing over the information, according to a blog post the company posted Sunday about the incident.

Roughly 700 current or former employees had information including their names, Social Security numbers and wage data compromised in the attack, according to the Los Angeles Times. Snapchat declined to confirm those details to The Washington Post or to comment further beyond the blog post.

The incident highlights one of the biggest challenges for companies struggling to protect sensitive information: Even if your technical security is up to snuff, your people may let you down.

Advertisement

It's no secret that people make bad security choices. Just look at the laughably bad passwords like "123456" and "password" that keep showing up in breached data troves. But companies are, of course, made up of people people who can make the same type of mistakes in the workplace that they make in their personal digital lives.

Advertisement

In fact, the "human element" was the root cause of more than half of security breaches according to a 2015 report from tech trade association CompTIA. Yet that same report, which was based on surveys of hundreds of US business executives and technology professionals, suggests that companies may not be doing enough to prepare their workers for a world where a new scam might be in their inbox everyday.

Despite the scope of the problem, only 30 percent of companies rated the "human element" as a serious concern and just 54 percent offered some sort of cyber-security training, most often as part of new employee orientation or an annual refresher course, according to the report.

Advertisement

The Snapchat case is a good reason why it's important for companies to think about their people as a key part of keeping their data safe. Just ask the social network, which is now working with the FBI to investigate the employee data breach and providing two years of identity theft protection to those affected.

"When something like this happens, all you can do is own up to your mistake, take care of the people affected, and learn from what went wrong," the company said in the blog post. "To make good on that last point, we will redouble our already rigorous training programs around privacy and security in the coming weeks."

Advertisement

Snapchat had security woes in the past. A few years ago, a bug left the usernames and phone numbers of users exposed and one group exploited it to release information about 4.6 million accounts, apparently in an effort to highlight the company's lax security practices. But the latest breach only affected current and former employees, according to the blog post.

© 2016 The Washington Post

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Apps, Data Breach, Snapchat, Social
Advertisement

Related Stories

Popular Mobile Brands
  1. Samsung Galaxy Tab A11, Tab A11+ Design, Features Leaked Ahead of Launch
  2. These New AI Features Are Coming to Your Updated iPhone, iPad and Mac
  3. iPhone 17 Pro Max Cosmic Orange Variant Out of Stock in the US, India: Report
  4. Google Pixel 10 Review: A Brilliant Phone We Wanted to Love
  5. iOS 26 Update Brings These New Features to AirPods Pro 3, Pro 2, AirPods 4
  6. Oppo Find X9 Pro Chipset, AnTuTu and Geekbench Scores Revealed
  7. Early Deals on PlayStation 5 and Accessories Revealed Ahead of Amazon Sale
  8. Samsung Galaxy S26 Ultra, Galaxy S26 Pro Charging Speed Leaked
  9. Vivo V60e 5G Design, Price Leaked; May Use Same Chip as Vivo V50e
  10. Check What's New for Your iPhone in Apple's Latest iOS 26 Update
  1. Sony Said to Be Planning State of Play Broadcast for Next Week
  2. France Could Block Crypto Firms With MiCA Licenses Due to Enforcement Gap Concerns
  3. Oppo Find X9 Pro With Dimensity 9500 SoC Scores 4 Million Points on AnTuTu; Spotted on Geekbench
  4. Xiaomi 17 Pro Design Render Gives Us a Good Look at Its Leica-Branded Rear Cameras, Secondary Display
  5. Clair Obscur: Expedition 33 Has Sold 4.4 Million Copies in Less Than Six Months of Launch
  6. Materialists Now Streaming on Netflix: What You Need to Know About Dakota Johnson’s Starrer Movie
  7. The Trial Season 2 OTT Release Date: When and Where to Watch Kajol’s Legal Drama Series Online
  8. Ghaati OTT Release Reportedly Revealed Online: When and Where to Watch Anushka Shetty-Starrer Movie Online?
  9. American Express Launches NFT Passport Stamps to Commemorate Travel Memories
  10. Huawei Watch GT 6, GT 6 Pro Price, Specifications Leak Ahead of September 19 Launch: Report
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.