Site icon WinCert

Facebook database with 267 million user accounts leaked online!

<p>A database holding personal data of 267 million Facebook user accounts including user IDs&comma; phone numbers and names was recently exposed on the web&period;<&sol;p>&NewLine;<p><img class&equals;"alignnone size-full wp-image-3449" src&equals;"https&colon;&sol;&sol;www&period;wincert&period;net&sol;wp-content&sol;uploads&sol;2019&sol;12&sol;facebook-1903445&lowbar;640&period;jpg" alt&equals;"" width&equals;"640" height&equals;"341" &sol;><&sol;p>&NewLine;<p><a href&equals;"https&colon;&sol;&sol;www&period;comparitech&period;com&sol;blog&sol;information-security&sol;267-million-phone-numbers-exposed-online&sol;" target&equals;"&lowbar;blank" rel&equals;"noopener noreferrer">Comparitech partnered with Bob Diachenko<&sol;a> has spotted a repository of Facebook users&&num;8217&semi; data exposed online for several weeks&period; Researches have found that the Facebook database initially appeared on Elasticsearch and was later published on a hacker forum&period; Two days after database leak discovery Diachenko sent an abuse report to the ISP associated with the AP address&period; On December&comma; 19 the leaked database was removed from Elasticsearch&period;<&sol;p>&NewLine;<p>Luckily the database records did not include user passwords&comma; but rather names&comma; IDs and phone numbers that could potentially be used for conducting large-scale SMS spam and phishing scams&comma; not to mention other possible threats to Facebook users&period;<&sol;p>&NewLine;<p>Unfortunately&comma; we can only assume that a large number of online criminals and hackers were able to and grab the leaked database information before it went offline&period; No one knows how the data actually leaked online&comma; but researches suspect that a group could have gained access to Facebook&&num;8217&semi;s system through a security flaw or using Facebook&&num;8217&semi;s developer APIs&period;<&sol;p>&NewLine;<p>While investigating this incident Facebook believes that the data was taken before they have changed the API rules last year&period;<&sol;p>&NewLine;

Exit mobile version