Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
This is really really bad. This is nowhere fixed. What will people do? Change their email addresses, phone numbers etc etc, etc? They haven‘t communicated each individual about their situation.

The idea that this data is not encrypted and decrypted on the fly, or that keys were easily available to decrypt it is absolutely incredible. It suggests a relatively large number of employees have access to personal information In FB.

This company is nowhere near taking security and privacy seriously for such a market share. They should be flushed In legal stuff. Govs should intervene on behalf of its citizens given their scale.

Hopefully this situation will wake institutions up.
 
This is a bit of a low bar news story for Mac Rumours :(

NEWS:

Facebook Data for Over 535 Million Users Leaked on Hacker Website


If you read the article:
"This is old data that was previously reported on in 2019," a Facebook spokesperson said. "We found and fixed this issue in August 2019.

Whilst I'm not in any way whatsoever a Facebook fan, and don't use Facebook, it's a pretty low bar to have such a headline as basically a "New breaking news" story.

:(
 
When do we the people finally say ENOUGH?!
Apparently not yet, given how many people still use Facebook. Not saying that you do, but there are enough people outside of the MacRumors Forums that use it. And I do not doubt that some people who visit and post at MacRumors probably have a Facebook account.
 
It's now been included on the database of http://haveibeenpwned.com so you can check there
careful as this sites not going to be overly useful unless they allow searching based on phone numbers. Of the 533 million users details leaked, only 2.5 million unique email addresses are included in the leaked data. That’s roughly an email address per 1 in every 200 leaked records. The vast majority of people whose account was compromised will not show up in a search based on email address which is what the site uses right now.

Source: https://www.theverge.com/2021/4/4/2...-533-million-leaks-online-email-phone-numbers

Troy Hunt, the creator of the Have I Been Pwned database, said on Saturday that “I haven’t seen anything yet to suggest this breach isn’t legit.” In the data, he found only about 2.5 million unique email addresses (which is still a lot!), but apparently, “the greatest impact here is the phone numbers.

HaveIBeenPwnd is a great site and database, but I wouldn’t rely on it in this case unless they go through with the possible inclusion of phone number search. The leaked data has the wrong dataset.
 
There should be penalties for large (revenue 100mil and up perhaps) companies that have security breaches due to negligence. All they get is some minor public shaming and a promise to do better. They make money hand over fist with our data so penalizing them for being cavalier with it should be done accordingly.
 
  • Love
Reactions: justperry
Are you saying no one should use a website that has even been breached?

Maybe you should add "After 2013, if anyone has their data on MacRumors, then they are themselves to be blamed"?
I am not saying that and you very well know it. You can defend this breach anyway you want. Good luck.
 
Apparently not yet, given how many people still use Facebook. Not saying that you do, but there are enough people outside of the MacRumors Forums that use it. And I do not doubt that some people who visit and post at MacRumors probably have a Facebook account.
Most people know little about this stuff. Very little. We know because we follow this.
 
FB continues to seem like a leaky faucet that no plumber has been able to fix
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.