100 app developers may have accessed users' data: Facebook

Agencies
November 7, 2019

In yet another data breach, Facebook on Wednesday revealed that at least 100 app developers may have accessed Facebook users' data for months, confirming that at least 11 partners "accessed group members' information in the last 60 days".

The social networking giant found that the apps -- primarily social media management and video streaming apps -- retained access to group member information, like names and profile pictures in connection with group activity, from the Groups API (application programming interface).

"Although we've seen no evidence of abuse, we will ask them to delete any member data they may have retained and we will conduct audits to confirm that it has been deleted," the company said in a statement.

"We've removed or restricted a number of our developer APIs, such as the Groups API, which provides an interface between Facebook and apps that can integrate with a group," it added.

Facebook is facing scrutiny after personal data of 87 million users were harvested by UK-based political consulting firm Cambridge Analytica. The Federal Trade Commission (FTC) has slapped Facebook with a $5 billion fine as a result of the breach.

According to the company, the apps designed to make it easier for group admins to manage their groups more effectively and help members share videos to their groups.

"For example, if a business managed a large community consisting of many members across multiple groups, they could use a social media management app to provide customer service, including customized responses, at scale."

"But while this access provided benefits to people and groups on Facebook, we made the decision to remove it and are following through on that approach," said Facebook.

According to Facebook's director of platform partnerships, Konstantinos Papamiltiadis, the new framework under their agreement with the FTC means more accountability and transparency into how it builds and maintains products.

"As we continue to work through this process we expect to find more examples of where we can improve, either through our products or changing how data is accessed. We are committed to this work and supporting the people on our platform," said the company.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
July 9,2020

New Delhi, Jul 9: The Central Board of Secondary Education has strongly defended its decision to drop topics like democratic rights, citizenship, federalism, secularism etc in the name of reducing the syllabus for Classes 9 to 12 due to COVID-19 pandemic. 

The board has claimed that the dropped lessons "are either being covered by the rationalised syllabus or in the Alternative Academic Calendar of NCERT".

The CBSE said it had to come up with the clarification after realizing its decision was "interpreted differently".

"The rationalisation of syllabus up to 30 per cent has been undertaken by the Board for nearly 190 subjects of class 9 to 12 for the academic session 2020-21 as a one-time measure only. The objective is to reduce the exam stress of students due to the prevailing health emergency situation and prevent learning gaps," it said.

While it has said that no questions can be asked from the reduced syllabus in the next board exams, the CBSE has also directed schools to follow alternative calendars prepared by the NCERT.

"Therefore each of the topics that have been wrongly mentioned in media as deleted have been covered under Alternative Academic Calendar of NCERT which is already in force for all the affiliated schools of the Board," it clarified.

On Wednesday, West Bengal CM Mamata Banerjee tweeted: "Shocked to know that the central Government has dropped topics like citizenship, federalism, secularism and partisan in the name of reducing CBSE course during the COVID crisis."

"We strongly object to this and appeal the HRD Ministry to ensure these vital lessons aren't curtailed at any cost," Banerjee added.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
July 18,2020

New Delhi, Jul 18: India's national cybersecurity agency CERT-in, has warned people of credit card skimming spreading across the world through e-commerce platforms.

Attackers are typically targeting e-commerce sites because of their wide presence, popularity and the environment LAMP (Linux, Apache, MySQL, and PHP), the Computer Emergency Response Team (CERT-In) said in a notice on Thursday.

Recently, attackers targeted sites which were hosted on Microsoft's IIS server running with the ASP.NET web application framework, it said.

Some of the sites affected by the attack were found to be running ASP.NET version 4.0.30319, which is no longer officially supported by Microsoft and may contain multiple vulnerabilities, CERT-In said.

The notice also included a list of best practices for website developers including the use of the latest version of ASP.NET web framework, IIS web server and database server.

The advisory is based on research by Malwarebytes which found that this skimming campaign likely began sometime in April this year.

Credit card skimming has become a popular activity for cybercriminals over the past few years, and the increase in online shopping during the pandemic means additional business for them, too, Malwarebytes said in a blog post, adding that attackers do not need to limit themselves to the most popular e-commerce platforms.

Researchers from global cybersecurity and anti-virus brand Kaspersky had warned in December last year that more cybercriminal groups will target online payment processing systems in 2020. 

It said that over the past couple of years, so-called JS-skimming (the method of stealing of payment card data from online stores), has gained immense popularity among attackers. 

Kaspersky researchers in their report said they are currently aware of at least 10 different actors involved in these type of attacks.

Their number will continue to grow during the next year, the report said, adding that the most dangerous attacks will be on companies that provide services such as e-commerce as-a-service, which will lead to the compromise of thousands of companies.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
July 29,2020

New Delhi, Jul 29: The new National Education Policy (NEP) approved by the Union Cabinet on Wednesday is set to usher in a slew of changes with the vision of creating an education system that contributes directly to transforming the country, providing high-quality education to all, and making India a global knowledge superpower.

The draft of the NEP by a panel headed by former Indian Space Research Organisation (ISRO) chief Kasturirangan and submitted to the Union Human Resource Development Minister Ramesh Pokhriyal when he took charge last year. The new NEP replaces the one formulated in 1986.

Some of the key highlights of the New Education Policy are:-

The policy aims to enable an individual to study one or more specialized areas of interest at a deep level, and also develop character, scientific temper, creativity, spirit of service, and 21st century capabilities across a range of disciplines including sciences, social sciences, arts, humanities, among others.

It identified the major problems facing the higher education system in the country and suggested changes such as moving towards multidisciplinary universities and colleges, with more institutions across India that offer medium of instruction in local/Indian languages, a more multidisciplinary undergraduate education, among others. 

The governance of such institutions by independent boards having academic and administrative autonomy has also been suggested.

Under the suggestions for institutional restructuring and consolidation, it has suggested that by 2040, all higher education institutions (HEIs) shall aim to become multidisciplinary institutions, each of which will aim to have 3,000 or more students, and by 2030 each or near every district in the country there will be at least one HEI.

The aim will be to increase the Gross Enrolment Ratio in HEIs including vocational education from 26.3 per cent (2018) to 50 per cent by 2035.

Single-stream HEIs will be phased out over time, and all will move towards becoming vibrant multidisciplinary institutions or parts of vibrant multidisciplinary HEI clusters.

It also pushes for more holistic and multidisciplinary education to be provided to the students.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.