Customize Consent Preferences

We use cookies to help you navigate efficiently and perform certain functions. You will find detailed information about all cookies under each consent category below.

The cookies that are categorized as "Necessary" are stored on your browser as they are essential for enabling the basic functionalities of the site. ... 

Always Active

Necessary cookies are required to enable the basic features of this site, such as providing secure log-in or adjusting your consent preferences. These cookies do not store any personally identifiable data.

No cookies to display.

Functional cookies help perform certain functionalities like sharing the content of the website on social media platforms, collecting feedback, and other third-party features.

No cookies to display.

Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics such as the number of visitors, bounce rate, traffic source, etc.

No cookies to display.

Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.

No cookies to display.

Advertisement cookies are used to provide visitors with customized advertisements based on the pages you visited previously and to analyze the effectiveness of the ad campaigns.

No cookies to display.

admin
Pinned November 13, 2021

<> Embed

@  Email

Report

Uploaded by user
Facebook sues programmer who allegedly scraped data for 178 million users
<> Embed @  Email Report

Facebook sues programmer who allegedly scraped data for 178 million users

Data-scraping tool can link millions of Facebook profiles to email addresses

And it can do so even if the users chose to make their email addresses private.

Mariella Moon
M. Moon
April 21st, 2021
Facebook sues programmer who allegedly scraped data for 178 million users | DeviceDaily.com
Sundry Photography via Getty Images

Facebook has another privacy issue in its hands. A security researcher shared a video with Vice, Ars Technica and others, showing how a tool can match email addresses to Facebook profiles in bulk — even if the users chose to keep their email details hidden from the public. According to the original source, they reported the front-end vulnerability that the tool exploits to Facebook but was apparently told that the company wouldn’t be taking action against it. 

In a statement sent to the publications, the social network said that it “erroneously closed out [the] bug bounty report [for the vulnerability] before routing to the appropriate team.” It’s now “taking initial actions to mitigate this issue.”

Alon Gal, the co-founder of cybercrime intelligence firm Hudson Rock, tweeted about the tool along with a copy of the video. Technologist Ashkan Soltani also tweeted a transcript of the original video, wherein the source talked about how they were able to use the tool to match 5 million addresses to Facebook accounts within a day. They also said that the tool is available in hacking groups and that bad actors are using it to target Page and advertising account owners with mail access attacks with the purpose of taking over their Pages and accounts for monetary gain. 

Facebook didn’t say what it has already done to prevent the tool from exploiting the vulnerability. Hopefully, it has taken the steps needed to patch the flaw, because the source said there’s a large-scale campaign to create one massive database for malicious purposes. The database, if completed, will be populated with email data gathered using this tool and the personal details of the 533 million Facebook members who were affected by a breach that was revealed last month.

Engadget is a web magazine with obsessive daily coverage of everything new in gadgets and consumer electronics 

(21)