Charts
DataOn-chain
VIP
Market Cap
API
Rankings
CoinOSNew
CoinClaw🦞
Language
  • 简体中文
  • 繁体中文
  • English
Leader in global market data applications, committed to providing valuable information more efficiently.

Features

  • Real-time Data
  • Special Features
  • AI Grid

Services

  • News
  • Open Data(API)
  • Institutional Services

Downloads

  • Desktop
  • Android
  • iOS

Contact Us

  • Chat Room
  • Business Email
  • Official Email
  • Official Verification

Join Community

  • Telegram
  • Twitter
  • Discord

© Copyright 2013-2026. All rights reserved.

简体繁體English
|Legacy

Instagram Data From 2024 Leak Reappears, Exposing 17.5M Accounts

CN
bitcoin.com
Follow
2 months ago
AI summarizes in 5 seconds.

According to a security notice from cybersecurity firm Malwarebytes, data tied to roughly 17.5 million Instagram users is circulating freely on Breachforums after resurfacing in early January 2026, courtesy of a threat actor using the handle “Solonik.” The twist: this wasn’t a brand-new breach. The data reportedly traces back to a misconfigured Instagram API from late 2024 that allowed large-scale scraping of user profiles, quietly collecting structured information before disappearing—until now.

“Beware of emails and messages that claim to come from Instagram, as they could be sent by malicious hackers trying to trick you into handing over your password,” Malwarebytes explained in a distributed alert email. “If you’re concerned, sign into your Instagram account and reset your password to a new, strong, unique password.”

Instagram Data From 2024 Leak Reappears, Exposing 17.5M Accounts

The freshly reposted dataset is said to include usernames, emails, phone numbers, physical addresses, and account metadata, making it catnip for scammers and identity thieves. As of Jan. 10, Meta had not issued a public statement, while reports of unsolicited password reset emails has spiked. Old data, new damage—because the internet never forgets, and neither do cybercriminals. What makes this leak especially irritating is how it’s being used.

Attackers aren’t blasting obvious scam emails; instead, they’re triggering legitimate Instagram password reset messages from the platform’s real security domain, banking on confusion to do the dirty work. With enough personal details in hand, bad actors can escalate from phishing to even SIM swapping and targeted fraud, particularly for users who recycle passwords across sites.

Malwarebytes flagged the breach during routine dark web monitoring, showcasing how recycled data can still fuel very current attacks. While the exposure appears global—with confirmed impacts in parts of Europe—the risk profile is universal: account takeovers, financial fraud, and a fresh reminder that scraped data ages like milk, not wine. The fix is unglamorous but effective: stronger passwords, two-factor authentication, and a healthy suspicion of any “urgent” email demanding clicks.

  • Was this a new Instagram hack?
    No, the data reportedly originates from a 2024 API scraping issue and only resurfaced publicly in January 2026.
  • What information was exposed?
    Usernames, emails, phone numbers, partial or full addresses, and account metadata were included.
  • Why are users getting real password reset emails?
    Attackers are abusing Instagram’s legitimate reset system to make phishing attempts seem authentic.
  • What should affected users do now?
    Change passwords immediately, enable two-factor authentication, and monitor accounts for suspicious activity.

免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。

返20%!Boost新规,参与平分+交易量多赚
广告
|
|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

|
|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

Selected Articles by bitcoin.com

1 hour ago
REAL and Redstone Collaborate to Enhance Data Integrity for Tokenized Assets
3 hours ago
US Attorney Connecticut Forfeits $600,000 in Tether Linked to Ledger Phishing Letter
4 hours ago
Ripple Expands RLUSD Access in South Korea With Coinone Listing
View More

Table of Contents

|
|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

Related Articles

avatar
avatarbitcoin.com
1 hour ago
REAL and Redstone Collaborate to Enhance Data Integrity for Tokenized Assets
avatar
avatarbitcoin.com
3 hours ago
US Attorney Connecticut Forfeits $600,000 in Tether Linked to Ledger Phishing Letter
avatar
avatarbitcoin.com
4 hours ago
Ripple Expands RLUSD Access in South Korea With Coinone Listing
avatar
avatarbitcoin.com
6 hours ago
Premier League’s Last Gambling Shirt Season: £140M and a UK Crackdown
avatar
avatarbitcoin.com
6 hours ago
Trump’s $1.5T Defense Budget Push, Iran Warning Send Stocks, Gold, and Bitcoin Lower
APP
Windows
Mac

X

Telegram

Facebook

Reddit

CopyLink