Another day,watch Lady Chatterley's Daughter (2011) another Facebook privacy scandal.
Hundreds of millions of Facebook user records — including some plain text passwords — were found exposed online free and open for the taking. So reports UpGuard, a cybersecurity risk assessment company, which notes in an April 3 press release that the two data sets in question were configured for public download. Yes, that means that anyone who knew where to look could have pulled them.
SEE ALSO: Facebook backs away from asking for some users' email passwordsAt the heart of the matter are two third-party app datasets stored on Amazon S3 buckets containing reams of Facebook users' info. One such set, from Cultura Colectiva, reportedly had "540 million records detailing comments, likes, reactions, account names, FB IDs and more."
According to UpGuard, the second dataset, from a third-party Facebook app titled At the Pool, "contained columns for fk_user_id, fb_user, fb_friends, fb_likes, fb_music, fb_movies, fb_books, fb_photos, fb_events, fb_groups, fb+checkins, fb_interests, password, and more."
In other words, presumably a list of users' friends, likes, groups, and check-in locations — an incredibly revealing amount of data.
While stating that the passwords in the latter data set were "presumably for the 'At the Pool' app rather than for the user’s Facebook account," the UpGuard press release goes on to add that it still "contains plaintext (i.e. unprotected) Facebook passwords for 22,000 users."
You don't reuse passwords across sites, do you?
Notably, this data is no longer in Facebook's control. By allowing third-party apps to scrape Facebook users' information (remember Cambridge Analytica?) the company essentially loses control of it. UpGuard said it notified Cultura Colectiva about the exposed data, starting with an email on Jan. 10 of this year, but has received no response from the company.
UpGuard writes that it was only when Bloomberg reached out to Facebook on April 3 that the data was finally secured. The At The Pool data set, on the other hand, was miraculously pulled offline shortly after UpGuard discovered it. What nice timing.
We reached out to Facebook to determine if At The Pool did in fact have access to, and then expose, the Facebook passwords of 22,000 users. We also asked the company how it intends to prevent this kind of third-party app privacy failure in the future.
A Facebook spokesperson provided the following statement in response:
Facebook's policies prohibit storing Facebook information in a public database. Once alerted to the issue, we worked with Amazon to take down the databases. We are committed to working with the developers on our platform to protect people's data.
In other words, yeah, it's as bad as it sounds.
Topics Cybersecurity Facebook Privacy Social Media
15 people reveal their wildest misconceptions about sex10 hidden features in Apple macOS MojaveFacebook already hit with a lawsuit tied to the latest data breachWhich of 'Maniac's' pill hallucination stories was the best?'Fortnite' Season 6 brings Halloween content and adorable petsTurns out Ross and Rachel from 'Friends' were initially never meant to go on a breakTurns out Ross and Rachel from 'Friends' were initially never meant to go on a breakSpotify asks delinquent Family Plan customers for GPS coordinatesSophie Turner says 'Game of Thrones' finale will divide fansHighlights from the Senate hearing on consumer data protectionNamibian teen model is a doppelganger for Regina George from 'Mean Girls'Your Instagram account may have been compromised by hackers, tooThis window art dedicated to the Queen in Westminster Abbey was designed on an iPadFacebook briefly blocked breaking news stories about its security breach — and that’s a problemHow supporters of Christine Blasey Ford are showing solidaritySophie Turner says 'Game of Thrones' finale will divide fansBlac Chyna reDyson spent over 10 years developing the 360 eye robot vacuum. How does it rank?How images like #DonDaleKids let us 'perform' our shock and outrageWomen of all ages are empowered by Hillary Clinton's nomination ‘Malicious software attack’ knocked the Weather Channel off Google bans embedded in Bernie Sanders told Stephen Colbert America needs to 'stand together and fight' Trump’s 'Game of Thrones' response to the Mueller report is his worst meme yet Samsung will investigate the Galaxy Fold's screen problems Edward Snowden rethinks that tweet about voting third party The 5 most surprising things from Donald Trump's '60 Minutes' interview Samsung Galaxy Fold launch may be delayed in China Apple plans to bring more iOS features to the Mac New site helps you turn rage Instagram could start hiding like counts Netflix's 'Something Great' is something just okay: Review 'Game of Thrones' reached new levels of horny in Season 8 Episode 2 Verizon increases fees in stores, reduces them online People are wasting their good tortillas on supermoon memes Trump says he'll deport 2 Cersei and Tyrion Lannister meet their 'Sesame Street' Muppet doubles Frisky lizard climbs on CNN reporter during live shot Facebook brings on 'Daily Caller' affiliate as fact Before and after photos of the cast of 'Avengers: Endgame': PHOTOS
2.4743s , 10134.6328125 kb
Copyright © 2025 Powered by 【watch Lady Chatterley's Daughter (2011)】,Unobstructed Information Network