That Instagram hack is shaping up to be way bigger than anyone thought

Regular users — not just "high-profile" ones — appear to have had their contact info stolen as well.
 By 
Jack Morse
 on 
Original image replaced with Mashable logo
Original image has been replaced. Credit: Mashable

Turns out we all may be "high profile" in the eyes of Instagram.

A bug in the social media company's API reportedly allowed hackers to gain access to account holders' phone numbers and email addresses, with Instagram assuring everyone on Aug. 30 that it was the celebs of the world who were targeted. But that was then.

Things are looking just a tad bit different now, with reports suggesting that as many as 6 million accounts were possibly affected and that regular old users may have fallen victim as well.

The company issued a new statement on Sept. 1, copping to the fact that things may be worse than it originally admitted.

"After additional analysis, we have determined that this issue potentially impacted some non-verified accounts as well," a spokesperson told Mashable via email. "Although we cannot determine which specific accounts may have been impacted, we believe it was a low percentage of Instagram accounts."

A "low percentage" of 700 million accounts — the current number of monthly active users on Instagram — is still quite a lot of accounts.

According to The Daily Beast, the person or persons responsible for the hack have gone so far as to create a searchable database allowing anyone to find the contact details of any affected user — all for the low low price of approximately $10 (paid in Bitcoin, of course).

"Out of an abundance of caution, we encourage you to be vigilant about the security of your account, and exercise caution if you observe any suspicious activity such as unrecognized incoming calls, texts, or emails," wrote CTO Mike Krieger in a Sept. 1 blog post. "Additionally, we’re encouraging you to report any unusual activity through our reporting tools."

In other words, this hack didn't just affect "high-profile Instagram users" as the company initially suggested. You and I are at risk as well — so much so that Instagram is warning us all to be on the lookout.

So look out, because this is shaping up to be way worse than anyone initially thought.

Mashable Image
Jack Morse

Professionally paranoid. Covering privacy, security, and all things cryptocurrency and blockchain from San Francisco.

Mashable Potato

Recommended For You


The top 10 most-followed Instagram accounts
Instagram logo

Instagram reportedly deletes Bellesa sex toy shop account for using the word 'clitoris'
illustration showing screenshot of email banning bellesa instagram account

'Jury Duty Presents: Company Retreat' review: Prank show's return is comedy magic
The ensemble of "Jury Duty Presents: Company Retreat."

More in Tech

Trending on Mashable
NYT Connections hints today: Clues, answers for April 3, 2026
Connections game on a smartphone

Wordle today: Answer, hints for April 3, 2026
Wordle game on a smartphone

NYT Connections hints today: Clues, answers for April 4, 2026
Connections game on a smartphone

Google launches Gemma 4, a new open-source model: How to try it
Google Gemma

Wordle today: Answer, hints for April 4, 2026
Wordle game on a smartphone
The biggest stories of the day delivered to your inbox.
These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up. See you at your inbox!