SHARE
Facebook X Pinterest WhatsApp

Skype Disables Password Resets to Fix Security Vulnerability

Microsoft has temporarily disabled password resets for Skype in order to prevent users’ accounts from being hijacked. Several months ago, Russian hackers warned the service that anyone could take over another user’s account if they knew their email address. CNET’s Lance Whitney reported, “Skype has resolved a nasty e-mail and password security bug and reinstated […]

Nov 14, 2012
Datamation content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

Microsoft has temporarily disabled password resets for Skype in order to prevent users’ accounts from being hijacked. Several months ago, Russian hackers warned the service that anyone could take over another user’s account if they knew their email address.

CNET’s Lance Whitney reported, “Skype has resolved a nasty e-mail and password security bug and reinstated its password reset page. Revealed by Skype earlier today, the vulnerability allowed someone to create a Skype account using the same e-mail address as that of the intended victim. That person was then able to reset the password for all accounts associated with that address, thereby locking out the account owner from Skype.”

The Next Web’s Emil Protalinski explained, “A new security hole has been discovered in Microsoft’s Skype that allows anyone to change your password and thus take over your account. The issue was first posted on a Russian forum two months ago and has been confirmed by The Next Web (we have not linked to any of the blogs or posts detailing the exploit because it is very easy to reproduce)…. To exploit this flaw, all you need to know is your victim’s email address tied to their Skype account. To protect yourself, you would have to change your email address to one that nobody knows or could easily guess, but most likely Microsoft will get around to fixing the problem before that becomes necessary.”

CNN’s Brandon Griggs noted, “The issue was posted on a Russian forum two months ago, but did not become widely known until it gained traction recently on Reddit and was confirmed by The Next Web, a tech-news blog.”

TGDaily posted Skype’s statement on the issue, which said, “We suspended the password reset feature temporarily this morning as a precaution and have made updates to the password reset process today so that it is now working properly. We are reaching out to a small number of users who may have been impacted to assist as necessary. Skype is committed to providing a safe and secure communications experience to our users and we apologize for the inconvenience.”

  SEE ALL
ARTICLES
 
CH

Cynthia Harvey is a freelance writer and editor based in the Detroit area. She has been covering the technology industry for more than fifteen years.

Recommended for you...

What Is Sentiment Analysis? Essential Guide
11 Top Data Collection Trends Emerging In 2024
Kaye Timonera
Feb 8, 2024
6 Top Data Classification Trends
Avya Chaudhary
Oct 13, 2023
7 Data Management Trends: The Future of Data Management
Mary Shacklett
Aug 2, 2023
Datamation Logo

Datamation is the leading industry resource for B2B data professionals and technology buyers. Datamation's focus is on providing insight into the latest trends and innovation in AI, data security, big data, and more, along with in-depth product recommendations and comparisons. More than 1.7M users gain insight and guidance from Datamation every year.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.