Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

After Data Breach Exposes 530 Million, Facebook Says It Will Not Notify Users
NPR ^ | April 9, 202111:58 PM ET | Emma Bowman

Posted on 04/10/2021 8:20:38 AM PDT by BenLurkin

Facebook decided not to notify over 530 million of its users whose personal data was lifted in a breach sometime before August 2019 and was recently made available in a public database. Facebook also has no plans to do so, a spokesperson said.

Phone numbers, full names, locations, some email addresses, and other details from user profiles were posted to an amateur hacking forum on Saturday, Business Insider reported last week.

The leaked data includes personal information from 533 million Facebook users in 106 countries.

In response to the reporting, Facebook said in a blog post on Tuesday that "malicious actors" had scraped the data by exploiting a vulnerability in a now-defunct feature on the platform that allowed users to find each other by phone number.

The social media company said it found and fixed the issue in August 2019 and its confident the same route can no longer be used to scrape that data.

"We don't currently have plans to notify users individually," a Facebook spokesman told NPR.

According to the spokesman, the company does not have complete confidence in knowing which users would need to be notified. He also said that in deciding whether to notify users, Facebook weighed the fact that the information was publicly available and that it was not an issue that users could fix themselves.

The information did not include financial information, health information or passwords, Facebook said, but the data leak still leaves users vulnerable, security experts say.

"Scammers can do an enormous amount with little information from us," says CyberScout founder Adam Levin, a cybersecurity expert and consumer protection advocate. In the case of this breach, he said, "It's serious when phone numbers are out there. The danger when you have phone numbers in particular is a universal identifier."

Phone numbers are increasingly used to connect people to their digital presence, including the use of two-factor authentication via text message and phone calls to verify one's identity.

The misuse of its user data is a familiar battle for Facebook, and its handling of user privacy has endured scrutiny.

In July 2019, months before patching up the aforementioned issue, Facebook reached a $5 billion settlement with the U.S. Federal Trade Commission for violating an agreement with the agency to protect user privacy.

To find out whether your personal information was leaked in the breach, you can check the data tracking tool, HaveIBeenPwnd. Its creator, Troy Hunt, updated the site with the latest data from the Facebook leak. Hunt said that 65% of the latest batch of data had already been added to the tracker from previous leaks.


TOPICS: Computers/Internet
KEYWORDS: august2019; breach; data; databreach; defundnpr; facebook; fascistbook; npr
Navigation: use the links below to view more comments.
first previous 1-2021-4041-43 next last
To: BenLurkin

Facebook has never had my phone number, address, financial data or personal data other than birth date.

I checked and found my phone number was not in any known data breaches. My email address was in five data breaches but was not searched within them.

https://haveibeenpwned.com/


21 posted on 04/10/2021 8:57:42 AM PDT by Wuli
[ Post Reply | Private Reply | To 1 | View Replies]

To: Wuli

“Birth date?” I gave them a date...yes...


22 posted on 04/10/2021 9:00:39 AM PDT by goodnesswins (The issue is never the issue. The issue is always the revolution." -- Saul Alinksy)
[ Post Reply | Private Reply | To 21 | View Replies]

To: phoneman08

Maybe he learned from Hillary Clinton and decided that the way you sell information is you “grant access” and then close the loopholes.


23 posted on 04/10/2021 9:00:54 AM PDT by a fool in paradise (Lean on Joe Biden to follow Donald Trump's example and donate his annual salary to charity. )
[ Post Reply | Private Reply | To 6 | View Replies]

To: Donnafrflorida

Maybe it does, but probably it doesn’t.

The scammers use computer software that dials every number for a given exchange to figure out which numbers are active.

Then they robo-call those numbers, using the software to spoof known active numbers on the same exchange, or some fake 1-800 number. If someone picks up the scammer attempts to phish them.

That’s when the real trouble starts.


24 posted on 04/10/2021 9:01:35 AM PDT by Augie
[ Post Reply | Private Reply | To 16 | View Replies]

To: kiryandil

Ha! I was right.


25 posted on 04/10/2021 9:02:13 AM PDT by phoneman08 (qwiyrqweopigradfdzcm,.dadfjl,dz )
[ Post Reply | Private Reply | To 19 | View Replies]

To: fwdude

I have a bud who creates FB accounts for his affiliate marketing business. ALL FAKE from names, account emails and even phone numbers, including IP address.

Only idiots would actually give their real names online unless you want to create your own brand or you are a celeb etc.

2 of them were deleted but he mad more than 10. He found that odd. He knows FB sells the information anyway but what FB should do is at least give some money to the users for their info.


26 posted on 04/10/2021 9:13:39 AM PDT by max americana (FIRED LEFTARD employees at our office every election since 2008 and enjoyed seeing them cry.)
[ Post Reply | Private Reply | To 17 | View Replies]

Zuckencuck should drink breach


27 posted on 04/10/2021 9:14:03 AM PDT by dsrtsage (Complexity is merely simplicity lacking imagination)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Augie

“ The scammers use computer software that dials every number for a given exchange to figure out which numbers are active.”

That is one nice thing about having an out of area phone number. I have had a work cell number since the early 90s from chicago but I live in Nevada. So in general if I get called by a 312 number I am pretty sure it is bs, but if I get 312 plus my exchange I am 100% sure it is a scam. Sometimes I get calls from my own number


28 posted on 04/10/2021 9:21:18 AM PDT by dsrtsage (Complexity is merely simplicity lacking imagination)
[ Post Reply | Private Reply | To 24 | View Replies]

To: BenLurkin

TRANASLATION: “We already sell it to everybody anyway.”


29 posted on 04/10/2021 9:24:18 AM PDT by E. Pluribus Unum (Anti-racism looks suspiciously like racism.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin; a fool in paradise; acapesket; Baynative; beef; BullDog108; Califreak; cgbg; ...
If you're using FB, visit https://haveibeenpwned.com/ to see if your email or password has been hacked.



h/t pookie18's cartoons

Facebook is a perfect example of socialism:
You get it for free but the quality sucks.
You have no say in how it works.
The guy who runs it gets rich.
There's no real competition.
You have no privacy.
And if you say one thing they don't like
they'll shut you up.

This is the Farcebook Is Evil ping list.

If you'd like to be on or off this list, please click Private Reply below and drop me a FReepmail

30 posted on 04/10/2021 10:02:36 AM PDT by upchuck (Corporations don’t pay taxes. They collect them. From us. ~ h/t Little Ray)
[ Post Reply | Private Reply | To 1 | View Replies]

To: max americana

Well, I dont have Farcebook so all’s well..


Use a credit card?
Have a phone?
Use public utilities?
Have magazine subscription?
Have a driver’s license?
Registered to vote?
Gave a contribution to anything?

...the list is endless.

All have the same thing in common, they are gathering (and sharing) your personal information.

Not being on facebook does not make you invisible.


31 posted on 04/10/2021 10:13:39 AM PDT by CIB-173RDABN (I am not an expert in anything, and my opinion is just that, an opinion. I may be wrong.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: BenLurkin

Many lawsuits coming I suspect.
LinkedIn announced 500 million accounts exposed too this past week.


32 posted on 04/10/2021 10:21:30 AM PDT by minnesota_bound (I need more money. )
[ Post Reply | Private Reply | To 1 | View Replies]

To: Alberta's Child

What do you use 6 different accounts for?


33 posted on 04/10/2021 10:45:28 AM PDT by FamiliarFace
[ Post Reply | Private Reply | To 15 | View Replies]

To: FamiliarFace
1. Sign up for “Reader Comments” sections of online media websites without revealing my identity.

2. Compete with multiple teams in Facebook-linked online sports leagues.

34 posted on 04/10/2021 10:59:16 AM PDT by Alberta's Child ("And once in a night I dreamed you were there; I canceled my flight from going nowhere.")
[ Post Reply | Private Reply | To 33 | View Replies]

To: BenLurkin

https://www.howtogeek.com/722194/everything-you-need-to-know-about-the-facebook-data-breach/

The above article has two links in it. One to check and see if your phone number was part of the breach and the other to check if your email was part of the breach.


35 posted on 04/10/2021 11:23:11 AM PDT by Pollard ( )
[ Post Reply | Private Reply | To 1 | View Replies]

To: phoneman08

The hacker(s) didn’t sell it. They stuck it on the web but you have to know where it is. Probably the dark web.


36 posted on 04/10/2021 11:24:18 AM PDT by Pollard ( )
[ Post Reply | Private Reply | To 6 | View Replies]

To: max americana

Ditto


37 posted on 04/10/2021 11:41:26 AM PDT by SMARTY ( "Force always attracts men of low morality. " Albert Einstein)
[ Post Reply | Private Reply | To 3 | View Replies]

To: BenLurkin

Privacy and use of the internet are almost mutually exclusive. Every time you send a message across the internet, your device’s identity is in the message and probably recorded. Unless encrypted your entire message is visible to snoopers.


38 posted on 04/10/2021 12:01:57 PM PDT by cymbeline
[ Post Reply | Private Reply | To 1 | View Replies]

To: Starboard

“We don’t currently have plans to notify users individually,”
= = =

Maybe they can’t.

The users’ contact info is co-opted, could go to the wrong person.


39 posted on 04/10/2021 12:57:46 PM PDT by Scrambler Bob (This is not /s. It is just as viable as any MSM 'information', maybe more so!)
[ Post Reply | Private Reply | To 5 | View Replies]

To: BenLurkin

It’s not their job.


40 posted on 04/10/2021 1:38:51 PM PDT by Renkluaf
[ Post Reply | Private Reply | To 1 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-43 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson