Previous All Posts Next

Unprotected Amazon Cloud Puts Half Billion Facebook Users at Risk

Posted: April 10, 2019 to Cybersecurity.

Tags: Data Breach, Compliance, Cloud Security

Third party Facebook app developers have caused yet another database leak.  Unprotected Amazon cloud servers put more than half a billion Facebook user information at risk. UpGuard, a cybersecurity firm, discovered that two datasets were publicly accessible—Coltura Colectiva, a Mexican media company, and “At the pool”, a Facebook-integrated ap. Researchers at the cybersecurity firm UpGuard today revealed that they discovered two datasets—one from a Mexican media company called Cultura Colectiva and another from a Facebook-integrated app called "At the pool"—both left publicly accessible on the Internet.  “At the pool” contained information about users’ friends, groups, check-in locations, names, and plain text passwords for over 22,000 people. "As Facebook faces scrutiny over its data stewardship practices, they have made efforts to reduce third-party access,” experts at UpGuard say, “But as these exposures show, the data genie cannot be put back in the bottle. Data about Facebook users have been spread far beyond the bounds of what Facebook can control today." Facebook is still trying to recover from a rash of security issues, including the Cambridge Analytica scandal that has Facebook facing a £500,000 UK fine. Both unsecured Amazon S3 buckets containing the datasets have now been secured and taken offline.
Craig Petronella
Craig Petronella
CEO & Founder, Petronella Technology Group | CMMC Registered Practitioner

Craig Petronella is a cybersecurity expert with over 24 years of experience protecting businesses from cyber threats. As founder of Petronella Technology Group, he has helped over 2,500 organizations strengthen their security posture, achieve compliance, and respond to incidents.

Related Service
Protect Your Business with Our Cybersecurity Services

Our proprietary 39-layer ZeroHack cybersecurity stack defends your organization 24/7.

Explore Cybersecurity Services
Previous All Posts Next