Data of 267 million Facebook users leaked online

Agencies
December 21, 2019

A database containing personal details of more than 267 million Facebook users was allegedly left exposed on the web, according to a report from Britain-based tech research firm Comparitech and security researcher Bob Diachenko.

Diachenko believes the trove of data -- including Facebook user IDs, phone numbers and names -- is most likely the result of an illegal scraping operation or Facebook API abuse by criminals in Vietnam.

"Scraping" is a term used to describe a process in which automated bots quickly sift through large numbers of web pages, copying data from each one into a database.

The information contained in the database could be used to conduct large-scale SMS spam and phishing campaigns, among other threats to end users, said the report on Thursday, adding that most of the affected users were from the US.

Facebook is reportedly investigating the issue.

"We are looking into this issue, but believe this is likely information obtained before changes we made in the past few years to better protect people's information," a Facebook spokesperson told Engadget.

The revelations come at a time when Facebook is trying to regain the trust of its users with protection of their data following the Cambridge Analytica scandal that badly hit its reputation.

More than one and a half years after the Cambridge Analytica scandal first became public, the US Federal Trade Commission (FTC) earlier this month said that the now-defunct British data analytics and consulting company engaged in deceptive practices to harvest personal information from tens of millions of Facebook users for voter profiling and targeting.

After discovering that personal details of 267 million Facebook users were exposed online, Diachenko notified the Internet service provider managing the IP address of the server so that access could be removed.

However, the data was also posted to a hacker forum as a download, said the security researcher.

Facebook IDs are unique, public numbers associated with specific accounts, which can be used to discern an account's username and other profile info.

While how criminals obtained the user IDs and phone numbers is not entirely clear, one possibility is that the data was stolen from Facebook's developer API before the company restricted access to phone numbers in 2018.

Facebook's API is used by app developers to add social context to their applications by accessing users' profiles, friends list, groups, photos and event data. Phone numbers were available to third-party developers prior to 2018.

Facebook's API could also have a security hole that would allow criminals to access user IDs and phone numbers even after access was restricted, Diachenko said.

Another possibility is that the data was stolen without using the Facebook API at all, and instead scraped from publicly visible profile pages, according to the report.

This isn't the first time such a database has been exposed. In September 2019, 419 million records across several databases were exposed, including phone numbers and Facebook IDs.

The report warned that Facebook users should be on the lookout for suspicious text messages.

Even if the sender knows your name or some basic information about you, be sceptical of any unsolicited messages, it added.

Comments

Helpful info. Lucky me I found your site by accident, and I'm stunned why this coincidence didn't happened in advance!
I bookmarked it.

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
March 4,2020

Tokyo, Mar 4: Takeda Pharmaceutical Co said on Wednesday it was developing a drug to treat COVID-19, the flu-like illness that has struck more than 90,000 people worldwide and killed over 3,000.

The Japanese drugmaker is working on a plasma-derived therapy to treat high-risk individuals infected with the new coronavirus and will share its plans with members of the U.S. Congress on Wednesday, it said in a statement.

Takeda is also studying whether its currently marketed and pipeline products may be effective treatments for infected patients.

"We will do all that we can to address the novel coronavirus threat...(and) are hopeful that we can expand the treatment options," Rajeev Venkayya, president of Takeda's vaccine business, said in the statement.

Takeda said it was in talks with various health and regulatory agencies and healthcare partners in the United States, Asia and Europe to move forward its research into the drug.

Its research requires access to the blood of people who have recovered from the respiratory disease or who have been vaccinated, once a vaccine is developed, Takeda said.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
May 27,2020

Geneva, May 27: The number of confirmed cases of COVID-19 worldwide has increased by nearly 100,000 over the past 24 hours to surpass 5.4 million, the World Health Organisation (WHO) said.

According to the WHO, the global case tally currently stands at 5,404,512 -- a rise by 99,780 over the past day.

The death count worldwide amounts to 343,514 -- an increase by 1,486.

Most cases of infection are recorded in the Americas -- 2,454,452, with 143,739 deaths.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
July 15,2020

Washington, Jul 15: The Trump administration has agreed to rescind its July 6 rule, which temporarily barred international students from staying in the United States unless they attend at least one in-person course, a federal district court judge said on Tuesday.

The U-turn by the Trump administration comes following a nationwide outrage against its July 6 order and a series of lawsuits filed by a large number of educational institutions, led by the prestigious Harvard University and Massachusetts Institute of Technology (MIT), seeking a permanent injunctive relief to bar the Department of Homeland Security (DHS) and the US Immigration and Customs Enforcement (ICE) from enforcing the federal guidelines barring international students attending colleges and universities offering only online courses from staying in the country.

As many as 17 US states and the District of Columbia, along with top American IT companies such as Google, Facebook and Microsoft, joined MIT and Harvard in the US District Court in Massachusetts against the DHS and the ICE in seeking an injunction to stop the entire rule from going into effect.

"I have been informed by the parties that they have come to a resolution. They will return to the status quo," Judge Allison Burroughs, the federal district judge in Boston, said in a surprise statement at the top of the hearing on the lawsuit.

The announcement comes as a big relief to international students, including those from India. In the 2018-2019 academic year, there were over 10 lakh international students in the US. According to a recent report of the Student and Exchange Visitor Program (SEVP), 1,94,556 Indian students were enrolled in various academic institutions in the US in January.

Judge Burroughs said the policy would apply nationwide.

"Both the policy directive and the frequently asked questions would not be enforced anyplace," she said, referring to the agreement between the US government and MIT and Harvard.

Congressman Brad Scneider said this is a great win for international students, colleges and common sense.

"The Administration needs to give us a plan to tackle our public health crisis - it can't be recklessly creating rules one day and rescinding them the next," he said in a tweet.

Last week, more than 136 Congressmen and 30 senators wrote to the Trump administration to rescind its order on international students.

"This is a major victory for the students, organisers and institutions of higher education in the #MA7 and all across the country that stood up and fought back against this racist and xenophobic rule," said Congresswoman Ayanna Pressley.

"Taking online classes shouldn't force international students out of our country," Congressman Mikie Sherrill said in a tweet.

In its July 6 notice, the ICE had said all student visa holders, whose university curricula were only offered online, "must depart the country or take other measures, such as transferring to a school with in-person instruction to remain in lawful status".

"If not, they may face immigration consequences, including but not limited to the initiation of removal proceedings," it had said.

In their lawsuit, the 17 states and the District of Columbia said for many international students, remote learning in the countries and communities they come from would impede their studies or be simply impossible.

The lawsuit alleged that the new rule imposes a significant economic harm by precluding thousands of international students from coming to and residing in the US and finding employment in fields such as science, technology, biotechnology, healthcare, business and finance, and education, and contributing to the overall economy.

In a separate filing, companies like Google, Facebook and Microsoft, along with the US Chamber of Commerce and other IT advocacy groups, asserted that the July 6 ICE directive will disrupt their recruiting plans, making it impossible to bring on board international students that businesses, including the amici, had planned to hire, and disturb the recruiting process on which the firms have relied on to identify and train their future employees.

The July 6 directive will make it impossible for a large number of international students to participate in the CPT and OPT programmes. The US will "nonsensically be sending...these graduates away to work for our global competitors and compete against us...instead of capitalising on the investment in their education here in the US", they said.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.