San Francisco, Sept 28 (AFP) Facebook announced Friday that up to 50 million accounts were breached in a security flaw exploited by hackers. Also Read - Requested PM Modi to Release US Order of Hydroxychloroquine Stockpile, Says Trump
The large social network said it learned this week of the attack that allowed hackers to steal “access tokens,” the equivalent of digital keys that enable them to access their accounts. Also Read - 'Agreed to Deploy Full Strength of India-US Partnership to Fight COVID-19,' PM Modi Dials Trump
“It’s clear that attackers exploited a vulnerability in Facebook’s code,” vice president of product management Guy Rosen said in a blog post. Also Read - US Sets New Global Record With 1,480 Deaths in 24 Hours; President Trump Recommends Face Masks
“We’ve fixed the vulnerability and informed law enforcement.” Facebook chief executive Mark Zuckerberg said engineers discovered the breach on Tuesday, and patched it on Thursday night.
“We don’t know if any accounts were actually misused,” Zuckerberg said. “This is a serious issue.” As a precaution, Facebook is temporarily taking down the “view as” feature — described as a privacy tool to let user see how their own profiles would look to other people.
“We face constant attacks from people who want to take over accounts or steal information around the world,” Zuckerberg said on his Facebook page.
“While I’m glad we found this, fixed the vulnerability, and secured the accounts that may be at risk, the reality is we need to continue developing new tools to prevent this from happening in the first place.” Facebook said it took an additional “precautionary step” of resetting access tokens for another 40 million accounts where the vulnerable feature was used. This will require those users to log back in to Facebook.
“We’re taking this incredibly seriously and wanted to let everyone know what’s happened and the immediate action we’ve taken to protect people’s security,” Rosen said.
“People’s privacy and security is incredibly important , and we’re sorry this happened.” The breach is the latest privacy embarrassment for Facebook, wich earlier this year acknowledged that tens of millions of users had personal data hijacked by a political firm working for Donald Trump in 2016. AFP NSA
This is published unedited from the PTI feed.