Slack, the work-chatting service is sending an email to select users, requesting to them reset their account password via a link (that is not a phishing link). The email is being sent to Slack's Android app users after the company discovered a vulnerability that may have impacted their online security. As per the email (via Android Police), Slack Android app was accidentally storing credentials in plain text that may have exposed sensitive login ID and password. The vulnerability existed between December 21 to January 21, the report adds. Slack has clarified to the publication that the email is not a scam, but rather a legitimate alert from the company.
The San Francisco-based company adds that the vulnerability affected only select Android customers, therefore not all Slack users are likely to receive the password reset email. Impacted users will need to open the link attached to the mail, and reset the password manually after providing the registered email ID. Affected customers are also asked to wipe their Android app's data to get rid of those logs, which are still hanging around your phone's storage, storing your login credentials in plain text. Notably, it is still a good practice to change your password time to time, and Slack users on other devices must also ensure this for the sake of their online security. Users can update the password manually by heading to profile by clicking on the profile picture > Account Settings > change password.
To clear data from Slack, customers need to go to Settings > Apps > Slack > Storage > Clear Data or Storage. If that doesn't work, users can try long-pressing the Slack app or its icon in the multitasking menu and tap App Info > Storage > Clear Data or Storage, or search for the app in Settings. Users would need to sign back in after this process. The company adds in the email that Android users must update the app to the latest version from Google Play Store to enjoy all the new security updates.
In March last year, Slack received a new design to make remote collaboration easier. As part of the redesign for both apps and web client, the work-messenger introduced a new navigation bar at the top and a drag-and-drop feature. Notably, business software pioneer Salesforce announced its decision to purchase Slack for $27.7 billion.