!!!Did Facebook know about “View As” bug before 2018 breach?!!!

in #tech5 years ago

Hello guys im up fully recovered. so im gonna post something different that i read just a couple of min ago.
Facebook, we all use it, well i kinda use it, atleast i am now glad i didnt put my real info there, but millions have so, if youre a user of FACEBOOK and have been following whats been happeing to it. this interest you, even if you just use Facebook to chat, "a normal user" you might have heard about the prosecutions that facebook is dealing, like manipulating, selling data... the NEWS about is just CUTS of the real one MAKE SURE TO READ THE FULL NEWS IN THE WEBSITE THAT I'LL PROVIDE, I GIVE THEM FULLY CREDIT HERE.

facebook-bug-1.jpg

A recent court filing indicates that Facebook knew about the bug in its View As feature that led to the 2018 data breach – a breach that would turn out to affect nearly 29 million accounts – and that it protected its employees from repercussions of that bug, but that it didn’t bother to warn users.

The breach

As Naked Security’s Paul Ducklin explained at the time, the View As feature lets you preview your profile as other people would see it.

This is supposed to be a security feature that helps you check whether you’re oversharing information you meant to keep private. But crooks figured out to how to exploit a bug (actually, a combination of three different bugs) so that when they logged in as user X and did View As user Y, they essentially became user Y. From Paul:

If user Y was logged into Facebook at the time, even if they weren’t actually active on the site, the crooks could recover the Facebook access token for user Y, potentially giving them access to lots of data about that user.

That’s exactly what attackers did: they took the profile details belonging to some 14 million users, including birth dates, employers, education history, religious preference, types of devices used, pages followed and recent searches and location check-ins.

facebook.jpg

Facebook knew about it and “failed to fix it for years”

On Thursday, in a heavily redacted section of the filing in the US District Court for Northern California, the plaintiffs said that Facebook knew about, and failed to fix, the vulnerability for years.

GO AND READ COMPLETE NEWS:

https://nakedsecurity.sophos.com/2019/08/19/did-facebook-know-about-view-as-bug-before-2018-breach/?utm_source=Naked+Security+-+Sophos+List&utm_campaign=7f1bb71f92-Naked+Security+-+Aug+2019+-+ad+B+

Adfly Link:

http://tenteaea.com/1CSx

thanks for reading, thats all for now, upvote comment your thoughts about this ill read and answer asap and be carefull with the social media. OUT.

Sort:  

Hi! I am a robot. I just upvoted you! I found similar content that readers might be interested in:
https://nakedsecurity.sophos.com/2019/08/19/did-facebook-know-about-view-as-bug-before-2018-breach/

Congratulations @clevercoin2! You have completed the following achievement on the Steem blockchain and have been rewarded with new badge(s) :

You published more than 30 posts. Your next target is to reach 40 posts.

You can view your badges on your Steem Board and compare to others on the Steem Ranking
If you no longer want to receive notifications, reply to this comment with the word STOP

Vote for @Steemitboard as a witness to get one more award and increased upvotes!