Settings

Theme

Someone hijacked Spotify's Share-to-Instagram asset for a 2004 track

ercanermis.com

1 points by ermis 2 months ago · 2 comments

Reader

ermisOP 2 months ago

I was sharing an old Turkish pop track on Spotify (“Füsun Önal – Ah Nerede”, 2004). Instead of the expected album art, Instagram showed a completely unrelated person’s Instagram profile screenshot, basically a silent injected ad.

I dug into how Spotify generates Instagram story assets and mapped possible attack vectors in the legacy catalog pipeline. Curious if anyone’s seen similar behavior with older metadata ingestion paths.

Nextgrid 2 months ago

Despite all the AI slop I don't quite get it, was the track metadata pushing an incorrect cover image (a screenshot of someone's Insta profile) or was it linking to an Insta profile (meaning the track/artist metadata had a field for their Insta and it was hijacked)?

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection