Millions of Facebook passwords exposed internally

Millions of Facebook passwords exposed internally

March 22, 2019   02:00 pm

The passwords of millions of Facebook users were accessible by up to 20,000 employees of the social network, it has been reported.

Security researcher Brian Krebs broke the news about data protection failures, which saw up to 600 million passwords stored in plain text.

The passwords that were exposed could date back to 2012, he said.

In a statement, Facebook said it had now resolved a “glitch” that had stored the passwords on its internal network.

In a detailed expose, Mr Krebs said a Facebook source had told him about “security failures” that had let developers create applications that logged and stored the passwords without encrypting them.

Commenting on Mr Krebs’s story Facebook engineer, Scott Renfro said an internal investigation started after Facebook had uncovered the logs had not revealed any “signs of misuse”.

In public comments, Facebook said it had discovered the issue in January as part of a routine security review.

And its investigation showed that most of the people affected were users of Facebook Lite, which tends to be used in nations where net connections are sparse and slow.

“We estimate that we will notify hundreds of millions of Facebook Lite users, tens of millions of other Facebook users, and tens of thousands of Instagram users,” the company told Reuters.

But it added it would enforce a password re-set only if its taskforce looking into the issue uncovered abuse of the login credentials.

The news caps a long period of trouble for Facebook over the way it handles and protects user data.

In September last year, it said information on 50 million users had been exposed by a security flaw.

And earlier in 2018 it revealed that data on millions of users had been harvested by data science company Cambridge Analytica.

Source: BBC

Disclaimer: All the comments will be moderated by the AD editorial. Abstain from posting comments that are obscene, defamatory or slanderous. Please avoid outside hyperlinks inside the comment and avoid typing all capitalized comments. Help us delete comments that do not follow these guidelines by flagging them(mouse over a comment and click the flag icon on the right side). Do use these forums to voice your opinions and create healthy discourse.

Most Viewed Video Stories

LIVE🔴Ada Derana Lunch Time News Bulletin 12.00 pm

LIVE🔴Ada Derana Lunch Time News Bulletin 12.00 pm

Injunction issued preventing Maithripala from functioning as SLFP chairman extended

Retired Army Major arrested for swindling money promising jobs with Russian army ප්‍

Politicians from various parties pay final respects to former MP Palitha Thewarapperuma

Electricity sector reforms gazetted, to be tabled in parliament (English)

Injunction issued preventing Maithripala from functioning as SLFP chairman extended (English)

Sri Lankan govt reveals shortlisted bidders for key SOEs; transactions to end by August (English)

Ada Derana Prime Time News Bulletin 6.55 pm - 2024.04.18