Accounts On Url Shortener Bitly Compromised: All You Need To Know


Users account credentials on URL shortening service Bitly have been compromised, according to an official statement from the company’s CEO. For users who have connected their Facebook or Twitter accounts to the service, they need to re-connect their account at the next login.

Bitly has updated the account security measures, specifically to the OAuth token and API key.

A post on Bitly’s official blog, existing users will need to reset their account password, change their API key and OAuth token and reconnect their Facebook and Twitter profiles with their Bitly account.

The post further adds, “We have reason to believe that Bitly account credentials have been compromised. We have no indication at this time that any accounts have been accessed without permission. For our users’ protection, we have taken proactive steps to ensure the security of all accounts, including disconnecting all users’ Facebook and Twitter accounts.”

To reset OAuth key and API key Bitly users will need to go “Advanced” tab which they can access by clicking on the “Your Setting” tab in their account. In the “Advanced” tab they will need to select “Reset” option for “Legacy API Key”. A new API key will be generated which the user will need to change in all applications.

Users will find the password reset option under “Profile” tab. They will also need to disconnect and reconnect all the applications that are being used by Bitly. Under the “Connected Accounts” tab users can know which accounts are connected to their Bitly account.

Bitly has further clarified that all the credentials within Facebook and Twitter have been nullified. This means users will not be able to post through Bitly to their Twitter and Facebook accounts until they reconnect them.
As Per := tech

Also Like