{"id":220175,"date":"2021-04-06T15:59:18","date_gmt":"2021-04-06T12:59:18","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/what-happened-and-why-its-hard-to-know-if-your-data-was-leaked\/"},"modified":"2021-04-06T15:59:18","modified_gmt":"2021-04-06T12:59:18","slug":"what-happened-and-why-its-hard-to-know-if-your-data-was-leaked","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/what-happened-and-why-its-hard-to-know-if-your-data-was-leaked\/","title":{"rendered":"#What happened and why it&#8217;s hard to know if your data was leaked"},"content":{"rendered":"<p>&#8220;<strong>#What h<a href=\"https:\/\/buradabiliyorum.com\/en\/category\/download-scripts-themes-apps\/\" data-internallinksmanager029f6b8e52c=\"9\" title=\"Download Scripts &amp; Themes &amp; Apps\" target=\"_blank\" rel=\"noopener\">app<\/a>ened and why it&#8217;s hard to know if your data was leaked<\/strong>&#8221;<\/p>\n<div>\n<div class=\"article-gallery lightGallery\">\n<div data-thumb=\"https:\/\/scx1.b-cdn.net\/csz\/news\/tmb\/2021\/facebookdata.jpg\" data-src=\"https:\/\/scx2.b-cdn.net\/gfx\/news\/hires\/2021\/facebookdata.jpg\" data-sub-html=\"Credit: Alon Gal\/Twitter\">\n<figure class=\"article-img\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/scx1.b-cdn.net\/csz\/news\/800a\/2021\/facebookdata.jpg\" alt=\"Facebook data breach: what happened and why it's hard to know if your data was leaked\" title=\"Credit: Alon Gal\/Twitter\" width=\"800\" height=\"394\"\/><figcaption class=\"text-darken text-low-up text-truncate-js text-truncate mt-3\">\n                Credit: Alon Gal\/<a href=\"https:\/\/buradabiliyorum.com\/en\/category\/social-mediaa\/\" data-internallinksmanager029f6b8e52c=\"1\" title=\"Social Media\" target=\"_blank\" rel=\"noopener\">Twitter<\/a><br \/>\n            <\/figcaption><\/figure>\n<\/div>\n<\/div>\n<p>Over the long weekend <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.businessinsider.com.au\/stolen-data-of-533-million-facebook-users-leaked-online-2021-4?r=US&amp;IR=T\">reports<\/a> emerged of an alleged data breach, impacting half a billion Facebook users from 106 countries.<\/p>\n<p>                                                                                And while this figure is staggering, there&#8217;s more to the story than 533 million sets of data. This breach once again highlights how many of the systems we use aren&#8217;t designed to adequately protect our information from cyber criminals. <\/p>\n<p>Nor is it always straightforward to figure out whether your data have been compromised in a breach or not.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">In early 2020 a vulnerability that enabled seeing the phone number linked to every Facebook account was exploited, creating a database containing the information 533m users across all countries.<\/p>\n<p>&#13;<br \/>\nIt was severely under-reported and today the database became much more worrisome 1\/2 <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/t.co\/ryQ5HuF1Cm\">pic.twitter.com\/ryQ5HuF1Cm<\/a><\/p>\n<p>\u2014 Alon Gal (Under the Breach) (@UnderTheBreach) <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/UnderTheBreach\/status\/1349671294808285184?ref_src=twsrc%5Etfw\">January 14, 2021<\/a><\/p><\/blockquote>\n<p><b>What happened?<\/b><\/p>\n<p>More than <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.theguardian.com\/technology\/2021\/apr\/05\/facebook-data-leak-2021-breach-check-australia-users\">500 million Facebook users&#8217; details<\/a> were published online on an underground website used by cyber criminals.<\/p>\n<p>It quickly became clear this was not a new data breach, but an older one which had come back to haunt Facebook and the millions of users whose data are now available to purchase online. <\/p>\n<p>The data breach is believed to relate to a vulnerability which Facebook reportedly <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.businessinsider.com.au\/stolen-data-of-533-million-facebook-users-leaked-online-2021-4?\">fixed in August of 2019<\/a>. While the exact source of the data can&#8217;t be verified, it was likely acquired through the misuse of <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/edition.cnn.com\/2019\/09\/04\/tech\/facebook-phone-numbers-exposed\">legitimate functions in the Facebook systems<\/a>. <\/p>\n<p>Such misuses can occur when a seemingly innocent feature of a website is used for an unexpected purpose by attackers, as was the case with a PayID attack in 2019.<\/p>\n<p>In the case of Facebook, criminals can mine Facebook&#8217;s systems for users&#8217; personal information by using techniques which automate the process of harvesting data.<br \/>\n                                            <!-- Google middle Adsense block --><\/p>\n<p>This may sound familiar. In 2018 Facebook was reeling from the <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.theguardian.com\/news\/series\/cambridge-analytica-files\">Cambridge Analytica scandal<\/a>. This too was not a <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.abc.net.au\/news\/2018-03-22\/facebook-mark-zuckerberg-admits-mistakes-in-protecting-data\/9574778\"><i>hacking<\/i> incident<\/a>, but a misuse of a perfectly legitimate function of the Facebook platform. <\/p>\n<p>While the data were initially obtained legitimately\u2014as least, as far as Facebook&#8217;s rules were concerned\u2014it was then passed on to a third party <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/about.fb.com\/news\/2018\/03\/suspending-cambridge-analytica\/\">without the appropriate consent<\/a> from users.<\/p>\n<p><b>Were you targeted?<\/b><\/p>\n<p>There&#8217;s no easy way to determine if your details were breached in the recent leak. If the website concerned is acting in your best interest, you should at least receive a notification. But this isn&#8217;t guaranteed. <\/p>\n<p>Even a tech-savvy user would be limited to hunting for the leaked data themselves on underground websites.<\/p>\n<p>The data being sold online contain plenty of key information. <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/haveibeenpwned.com\/PwnedWebsites#Facebook\">According to<\/a> haveibeenpwned.com, most of the records include names and genders, with many also including dates of birth, location, relationship status and employer.<\/p>\n<div class=\"article-gallery lightGallery\">\n<div data-thumb=\"https:\/\/scx1.b-cdn.net\/csz\/news\/tmb\/2021\/1-facebookdata.jpg\" data-src=\"https:\/\/scx2.b-cdn.net\/gfx\/news\/2021\/1-facebookdata.jpg\" data-sub-html=\"Chief technology officer of cybercrime intelligence firm Hudson Rock, Alon Gal, discovered the leaked database, posting screenshots on Twitter. Credit: Twitter\">\n<figure class=\"article-img text-center\"><img decoding=\"async\" src=\"https:\/\/scx1.b-cdn.net\/csz\/news\/800a\/2021\/1-facebookdata.jpg\" alt=\"Facebook data breach: what happened and why it's hard to know if your data was leaked\"\/><figcaption class=\"text-left text-darken text-truncate text-low-up mt-3\">\n                Chief <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/technology\/\" data-internallinksmanager029f6b8e52c=\"4\" title=\"Technology\" target=\"_blank\" rel=\"noopener\">technology<\/a> officer of cybercrime intelligence firm Hudson Rock, Alon Gal, discovered the leaked database, posting screenshots on Twitter. Credit: Twitter<br \/>\n            <\/figcaption><\/figure>\n<\/div>\n<\/div>\n<p>Although, it has been <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.theverge.com\/2021\/4\/4\/22366822\/facebook-personal-data-533-million-leaks-online-email-phone-numbers\">reported<\/a> only a small proportion of the stolen data contained a valid email address (about 2.5 million records).<\/p>\n<p>This is important since a user&#8217;s data are less valuable without the corresponding email address. It&#8217;s the combination of date of birth, name, phone number and email which provides a useful starting point for <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.theguardian.com\/technology\/2021\/apr\/05\/facebook-data-leak-2021-breach-check-australia-users\">identity theft and exploitation<\/a>. <\/p>\n<p>If you&#8217;re not sure why these details would be valuable to a criminal, think about how you confirm your identity over the phone with your bank, or how you last reset a password on a website.<\/p>\n<p>Haveibeenpwned.com creator and web security expert Troy Hunt has said a secondary use for the data could be to enhance phishing and SMS-based spam attacks.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">I&#8217;ve had a heap of queries about this. I&#8217;m looking into it and yes, if it&#8217;s legit and suitable for <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/haveibeenpwned?ref_src=twsrc%5Etfw\">@haveibeenpwned<\/a> it&#8217;ll be searchable there shortly. <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/t.co\/QPLZdXATpt\">https:\/\/t.co\/QPLZdXATpt<\/a><\/p>\n<p>\u2014 Troy Hunt (@troyhunt) <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/troyhunt\/status\/1378463581604220931?ref_src=twsrc%5Etfw\">April 3, 2021<\/a><\/p><\/blockquote>\n<p><b>How to protect yourself<\/b><\/p>\n<p>Given the nature of the leak, there is very little Facebook users could have done proactively to protect themselves from this breach. As the attack targeted Facebook&#8217;s systems, the responsibility for securing the data lies entirely with Facebook.<\/p>\n<p>On an individual level, while you can opt to withdraw from the platform, for many this isn&#8217;t a simple option. That said, there are certain changes you can make to your social media behaviors to help reduce your risk from data breaches.<\/p>\n<p><b>(1) Ask yourself if you need to share all your <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.theguardian.com\/technology\/askjack\/2019\/mar\/07\/is-there-a-way-to-use-facebook-without-giving-up-my-privacy\">information with Facebook<\/a><\/b><\/p>\n<p>There are some bits of information we inevitably have to forfeit in exchange for using Facebook, including mobile numbers for new accounts (as a security measure, ironically). But there are plenty of details you can withhold to retain a modicum of control over your data.<\/p>\n<p><b> (2) Think about what you share<\/b> <\/p>\n<p>Apart from the leak being reported, there are plenty of other ways to harvest user data from Facebook. If you use a fake birth date on your account, you should also avoid posting birthday party photos on the real day. Even our <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.smh.com.au\/technology\/why-you-shouldn-t-post-a-picture-of-your-boarding-pass-on-social-media-20200918-p55wvf.html\">seemingly innocent photos<\/a> can reveal sensitive information.<\/p>\n<p><b> (3) Avoid using Facebook to sign in to other websites<\/b><\/p>\n<p>Although the &#8220;sign-in with Facebook&#8221; feature is potentially time-saving (and reduces the number of accounts you have to maintain), it also increases <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/threatpost.com\/sneaky-phishing-scam-facebook\/141869\/\">potential risk<\/a> to you\u2014especially if the site you&#8217;re signing into isn&#8217;t a trusted one. If your Facebook account is compromised, the attacker will have automatic access to all the linked websites.<\/p>\n<p><b> (4) Use unique passwords<\/b><\/p>\n<p>Always use a different password for each online account, even if it is a pain. Installing a password manager will help with this (and this is how I have more than 400 different passwords). While it won&#8217;t stop your data from ever being stolen, if your password for a site is leaked it will only work for that <i>one<\/i> site.<\/p>\n<p>If you really want a scare, you can always download a copy of all the <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.facebook.com\/help\/212802592074644\">data Facebook has on you<\/a>. This is useful if you&#8217;re considering leaving the platform and want a copy of your data before closing your account.\n                                                                                                                        <\/p>\n<hr\/>\n<div class=\"article-main__explore my-4 d-print-none\">\n<p>                                            Data from 500 mn Facebook accounts posted online: reports\n                                        <\/p><\/div>\n<hr class=\"mb-4\"\/>\n<div class=\"d-inline-block text-medium my-4\">\n                                                Provided by<br \/>\n                                                                                                    The Conversation<br \/>\n                                                                                                        <a rel=\"nofollow noopener\" target=\"_blank\" class=\"icon_open\" href=\"https:\/\/theconversation.com\"><br \/>\n                                                        <svg><use href=\"https:\/\/techx.b-cdn.net\/tmpl\/v2\/img\/svg\/sprite.svg#icon_open\" x=\"0\" y=\"0\"\/><\/svg><\/a><\/p><\/div>\n<p class=\"article-main__note mt-4\">\n                                                This article is republished from <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/theconversation.com\">The Conversation<\/a> under a Creative Commons license. Read the <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/theconversation.com\/facebook-data-breach-what-happened-and-why-its-hard-to-know-if-your-data-was-leaked-158417\">original article<\/a>.<img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/counter.theconversation.com\/content\/158417\/count.gif?distributor=republish-lightbox-advanced\" alt=\"The Conversation\" width=\"1\" height=\"1\"\/><\/p>\n<p>                                        <!-- print only --><\/p>\n<div class=\"d-none d-print-block\">\n<p>                                                 <strong>Citation<\/strong>:<br \/>\n                                                 Facebook data breach: What happened and why it&#8217;s hard to know if your data was leaked (2021, April  6)<br \/>\n                                                 retrieved  6 April 2021<br \/>\n                                                 from https:\/\/techxplore.com\/<a href=\"https:\/\/buradabiliyorum.com\/en\/category\/news\/\" data-internallinksmanager029f6b8e52c=\"2\" title=\"News\" target=\"_blank\" rel=\"noopener\">news<\/a>\/2021-04-facebook-breach-hard-leaked.html<\/p>\n<p>                                            This document is subject to copyright. Apart from any fair dealing for the purpose of private study or research, no<br \/>\n                                            part may be reproduced without the written permission. The content is provided for information purposes only.<\/p><\/div>\n<\/p><\/div>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><script id=\"facebook-jssdk\" async=\"\" src=\"https:\/\/connect.facebook.net\/en_US\/sdk.js\"><\/script><\/p>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMLG0nwswvr63Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more Like this articles, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/science\/\" target=\"_blank\" rel=\"noopener\">Science category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/techxplore.com\/news\/2021-04-facebook-breach-hard-leaked.html\" target=\"_blank\" rel=\"noopener\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;#What happened and why it&#8217;s hard to know if your data was leaked&#8221; Credit: Alon Gal\/Twitter Over the long weekend reports emerged of an alleged data breach, impacting half a billion Facebook users from 106 countries. And while this figure is staggering, there&#8217;s more to the story than 533 million sets of data. This breach&#8230;<\/p>\n","protected":false},"author":1,"featured_media":220176,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/scx2.b-cdn.net\/gfx\/news\/hires\/2021\/facebookdata.jpg","fifu_image_alt":"","footnotes":""},"categories":[16],"tags":[],"class_list":["post-220175","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-sciencee"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/220175","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=220175"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/220175\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/220176"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=220175"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=220175"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=220175"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}