Another day,Watch Don’t Believe The Hole Online another Facebook privacy scandal.
Hundreds of millions of Facebook user records — including some plain text passwords — were found exposed online free and open for the taking. So reports UpGuard, a cybersecurity risk assessment company, which notes in an April 3 press release that the two data sets in question were configured for public download. Yes, that means that anyone who knew where to look could have pulled them.
SEE ALSO: Facebook backs away from asking for some users' email passwordsAt the heart of the matter are two third-party app datasets stored on Amazon S3 buckets containing reams of Facebook users' info. One such set, from Cultura Colectiva, reportedly had "540 million records detailing comments, likes, reactions, account names, FB IDs and more."
According to UpGuard, the second dataset, from a third-party Facebook app titled At the Pool, "contained columns for fk_user_id, fb_user, fb_friends, fb_likes, fb_music, fb_movies, fb_books, fb_photos, fb_events, fb_groups, fb+checkins, fb_interests, password, and more."
In other words, presumably a list of users' friends, likes, groups, and check-in locations — an incredibly revealing amount of data.
While stating that the passwords in the latter data set were "presumably for the 'At the Pool' app rather than for the user’s Facebook account," the UpGuard press release goes on to add that it still "contains plaintext (i.e. unprotected) Facebook passwords for 22,000 users."
You don't reuse passwords across sites, do you?
Notably, this data is no longer in Facebook's control. By allowing third-party apps to scrape Facebook users' information (remember Cambridge Analytica?) the company essentially loses control of it. UpGuard said it notified Cultura Colectiva about the exposed data, starting with an email on Jan. 10 of this year, but has received no response from the company.
UpGuard writes that it was only when Bloomberg reached out to Facebook on April 3 that the data was finally secured. The At The Pool data set, on the other hand, was miraculously pulled offline shortly after UpGuard discovered it. What nice timing.
We reached out to Facebook to determine if At The Pool did in fact have access to, and then expose, the Facebook passwords of 22,000 users. We also asked the company how it intends to prevent this kind of third-party app privacy failure in the future.
A Facebook spokesperson provided the following statement in response:
Facebook's policies prohibit storing Facebook information in a public database. Once alerted to the issue, we worked with Amazon to take down the databases. We are committed to working with the developers on our platform to protect people's data.
In other words, yeah, it's as bad as it sounds.
Topics Cybersecurity Facebook Privacy Social Media
'The Last of Us' episode 6 features a heartbreaking musical callbackWatch this Australian magpie perfectly mimic the sound of emergency sirens'Quordle' today: See each 'Quordle' answer and hints for February 19Ariana DeBose's rap about Angela Bassett did the thing at the BAFTAsCollege students demand universities ban facial recognitionAI Bing chatbot added to Microsoft Edge and Skype with voice inputSeth Rogen knows he looks like this dog and thanks you for the complimentHere's the deal with the White House's confusing 'first snow of the year' tweetThe FDA just banned mint Juul pods'The Last of Us' has one detail it needs to fixApple receives patent for color'Quordle' today: See each 'Quordle' answer and hints for February 24This video of Al Pacino meeting Guy Fieri might be better than 'The Irishman'I deepfaked myself into a bunch of popular GIFs and the results are sincerely cursed'Luther: The Fallen Sun' review: A James Bond audition that only passes half the testsStormzy sums up the exact reason Brits don't like Meghan MarkleHarry and Meghan announce plan to 'step back' from senior Royal Family rolesStar Wars' Mark Hamill deletes Facebook, condemns Mark ZuckerbergRefresh your kitchen with up to 25% off small appliances at The Home DepotWhat movie is Ellie watching in episode 6 of "The Last of Us"? Airbnb bans 'party houses' following Halloween shooting Federal safety agency wants answers on Tesla battery fires Tesla's street visualization screen now displays traffic cones Amazon's high Here's a bunch of politicians 'dancing' to Daft Punk, and you're welcome Holiday takes an anti The new Microsoft Edge browser logo sure does look familiar Amazon's 'Alexa Answers' is a hot mess, surprising exactly no one The Dos and don’ts of the Disney+ 'Lizzie McGuire' reboot Reese Witherspoon, Mindy Kaling and Oprah Winfrey are having a blast in New Zealand 'Death Stranding' is a haunting sci AirPods Pro and Android: Is it worth it? Lovable prankster helps cats get adopted by giving them relatable name tags 'Little Monsters': The sneaky, heart Streaming services guide 2019: Disney+, Apple TV+, HBO Max, and more Tesla Model S takes on Porsche Taycan Turbo S in 'Top Gear' drag race Sweden's embassy in the U.S. is looking forward to schooling Trump 10 extremely cursed foods to serve at your Halloween party #PoCLove hashtag floods timelines with celebrations of diverse love Dozens of companies in China have filed trademark claims on Ivanka Trump's name
2.0833s , 10133.7265625 kb
Copyright © 2025 Powered by 【Watch Don’t Believe The Hole Online】,Creation Information Network