Data of 267 million Facebook users leaked online

Agencies
December 21, 2019

A database containing personal details of more than 267 million Facebook users was allegedly left exposed on the web, according to a report from Britain-based tech research firm Comparitech and security researcher Bob Diachenko.

Diachenko believes the trove of data -- including Facebook user IDs, phone numbers and names -- is most likely the result of an illegal scraping operation or Facebook API abuse by criminals in Vietnam.

"Scraping" is a term used to describe a process in which automated bots quickly sift through large numbers of web pages, copying data from each one into a database.

The information contained in the database could be used to conduct large-scale SMS spam and phishing campaigns, among other threats to end users, said the report on Thursday, adding that most of the affected users were from the US.

Facebook is reportedly investigating the issue.

"We are looking into this issue, but believe this is likely information obtained before changes we made in the past few years to better protect people's information," a Facebook spokesperson told Engadget.

The revelations come at a time when Facebook is trying to regain the trust of its users with protection of their data following the Cambridge Analytica scandal that badly hit its reputation.

More than one and a half years after the Cambridge Analytica scandal first became public, the US Federal Trade Commission (FTC) earlier this month said that the now-defunct British data analytics and consulting company engaged in deceptive practices to harvest personal information from tens of millions of Facebook users for voter profiling and targeting.

After discovering that personal details of 267 million Facebook users were exposed online, Diachenko notified the Internet service provider managing the IP address of the server so that access could be removed.

However, the data was also posted to a hacker forum as a download, said the security researcher.

Facebook IDs are unique, public numbers associated with specific accounts, which can be used to discern an account's username and other profile info.

While how criminals obtained the user IDs and phone numbers is not entirely clear, one possibility is that the data was stolen from Facebook's developer API before the company restricted access to phone numbers in 2018.

Facebook's API is used by app developers to add social context to their applications by accessing users' profiles, friends list, groups, photos and event data. Phone numbers were available to third-party developers prior to 2018.

Facebook's API could also have a security hole that would allow criminals to access user IDs and phone numbers even after access was restricted, Diachenko said.

Another possibility is that the data was stolen without using the Facebook API at all, and instead scraped from publicly visible profile pages, according to the report.

This isn't the first time such a database has been exposed. In September 2019, 419 million records across several databases were exposed, including phone numbers and Facebook IDs.

The report warned that Facebook users should be on the lookout for suspicious text messages.

Even if the sender knows your name or some basic information about you, be sceptical of any unsolicited messages, it added.

Comments

Helpful info. Lucky me I found your site by accident, and I'm stunned why this coincidence didn't happened in advance!
I bookmarked it.

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
February 12,2020

Saint Martin's Island, Feb 12: At least 15 women and children drowned and more than 50 others were missing after a boat overloaded with Rohingya refugees sank off southern Bangladesh as it tried to reach Malaysia Tuesday, officials said.

Some 138 people -- mainly women and children -- were packed on a trawler barely 13 metres (40 feet) long, trying to cross the Bay of Bengal, a coast guard spokesman told news agency.

"It sank because of overloading. The boat was meant to carry maximum 50 people. The boat was also loaded with some cargo," another coast guard spokesman, Hamidul Islam, added.

Nearly one million Rohingya live in squalid camps near Bangladesh's border with Myanmar, many fleeing the neighbouring country after a 2017 brutal military crackdown.

With few opportunities for jobs and education in the camps, thousands have tried to reach other countries like Malaysia and Thailand by attempting the hazardous 2,000-kilometre journey.

In the latest incident, 71 people have been rescued including 46 women. Among the dead, 11 were women and the rest children.

Anwara Begum said two of her sons, aged six and seven, drowned in the tragedy.

"We were four of us in the boat... Another child (son, aged 10) is very sick," the 40-year-old told news agency.

Fishermen tipped off the coast guard after they saw survivors swimming and crying for help in the sea.

The boat's keel hit undersea coral in shallow water off Saint Martin's Island, Bangladesh's southernmost territory, before it sank, survivors said.

"We swam in the sea before boats came and rescued us," said survivor Mohammad Hossain, 20.

Coast guard commander Sohel Rana said three survivors, including a Bangladeshi, were detained over human trafficking allegations.

An estimated 25,000 Rohingya left Bangladesh and Myanmar on boats in 2015 trying to get to Thailand, Malaysia and Indonesia. Hundreds drowned when overloaded boats sank.

Begum said her family paid a Bangladeshi trafficker $450 per head to be taken to Malaysia.

"We're first taken to a hill where we stayed for five days. Then they used three small trawlers to take us to a large trawler, which sank," she said.

Shakirul Islam, a migration expert whose group works with Rohingya to raise awareness against trafficking, said desperation in the camps was making refugees want to leave.

"It was a tragedy waiting to happen," he said.

"They just want to get out, and fall victim to traffickers who are very active in the camps."

Islam said in the past two months dozens of Rohingya reported approaches from traffickers to his OKUP migration rights group.

"Human smuggling and trafficking in the Bay of Bengal is particularly difficult to address as it requires concerted effort from multiple states," the Bangladesh head of UN agency the International Organization for Migration, Giorgi Gigauri, told news agency.

"The gaps in coordination are easily exploited by criminal networks."

Since last year, Bangladeshi authorities have picked up over 500 Rohingya from rickety fishing trawlers or coastal villages as they waited to board boats.

Trafficking often increases during the November-March period when the sea is safest for the small trawlers used by traffickers.

Bangladesh and Myanmar signed a repatriation deal to send back some Rohingya to their homeland, but none have agreed to return because of safety fears.

The charity Save the Children called on Myanmar to "take all necessary steps to ensure the Rohingya community can return to their homes in a safe and dignified manner".

"The tragic drowning of women and children... should be a wake-up call for us all," the group's Athena Rayburn said in a statement.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
February 20,2020

Tokyo, Feb 20: One more Indian on board the cruise ship Diamond Princess quarantined off the coast of Japan was tested positive for novel coronavirus, the Indian Embassy in Tokyo said on Wednesday, adding that all seven Indian nationals infected with the virus have been shifted to hospitals in Japan for treatment.

"1 Indian crew who tested positive for #COVID19 among 88 new cases yesterday on #DiamondPrincess taken to hospital for treatment. Indians receiving treatment responding well. From today, the disembarkation of passengers only started, likely to continue till 21 Feb," the embassy tweeted.

"As of 2100 JST, altogether 7 Indian nationals (crew members on board #DiamondPrincess) are receiving treatment in hospitals in Japan, after testing positive for #COVID19 over last few days. Their health conditions are improving. 
@MEAIndia," the following tweet read.

A total of 138 Indians, including 132 crew and 6 passengers, were among the 3,711 people on board the luxury cruise ship which was quarantine off Japan on February 5 after it emerged that a former passenger had tested positive for the virus.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
March 31,2020

Washington, Mar 31: The United States has performed over one million coronavirus tests so far, said President Donald Trump on Monday.

"Today, we reached a historic milestone in our war against coronavirus. Over 1 million Americans have now been tested, more than any other country by far, not even close," Trump said during a press briefing.

US Health Secretary Alex Azar said that approximately 100,000 samples are tested for coronavirus daily.

The number of novel coronavirus (COVID-19) cases within the United States surpassed 150,000 and the death toll has reached 2828, according to Johns Hopkins University. 

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.