Facebook Inc said on Friday attackers stole names and contact details of 29 million users in the mass security breach disclosed by the social media network late last month.

The breach, Facebook’s worst ever, has exacerbated concerns among users, lawmakers and investors that the company is not doing enough to safeguard data, particularly in the wake of the Cambridge Analytica data scandal.

Still, hackers neither accessed personal messages nor financial data and did not use Facebook logins to access other websites, all of which would have been a cause for greater concern. Facebook originally had said in late September hackers stole digital log-in codes to take over nearly 50 million user accounts.

On Friday, the company revealed that stolen data on 14 million users included birth dates, employers, education and lists of friends. For 15 million users, it was restricted to just name and contact details.

All of those could help a fraudster pose as Facebook, the employer or a friend. They could then craft a more sophisticated email aimed at tricking users into providing login information on a fake page or into clicking on an attachment that would infect their computers.

Facebook said it will send customised messages in the coming days to affected users to explain what information the attackers accessed and how they can protect themselves, including from suspicious emails, text messages or calls.

A company executive said on a conference call that Facebook will not provide country-by-country breakdowns of the affected users. The hackers used an automated program to move from account to account and harvest the data quickly.

“We’re cooperating with the FBI, which is actively investigating and asked us not to discuss who may be behind this attack,” Facebook said on a blog post https://newsroom.fb.com/news/2018/10/update-on-security-issue.

The social network in late September did not confirm if information had actually been stolen.

“There’s not much more that Facebook can do,” said Michael Pachter, an analyst with Wedbush Securities. “The stolen data is likely to be used by the hackers, so this problem is likely to persist for quite some time.”

Facebook’s latest vulnerability has existed since July 2017, but the company first identified it in mid-September after spotting a fairly large increase in use of its “view as” feature. It determined that it was an attack on Sept. 25.

“Within two days, we closed the vulnerability, stopped the attack and secured people’s accounts by restoring the access tokens for people who were potentially exposed,” Facebook said.

The “view as” feature allows users to check their privacy settings by giving them a glimpse of what their profile looks like to others. But a trio of errors in Facebook’s software enabled someone accessing the feature to post and browse from Facebook accounts of other users.

Facebook did not rule out the possibility of smaller-scale attacks and said it would continue to investigate.

Facebook shares fell 2.6 percent after the breach was announced last month and they were down 0.5 percent following the updated disclosures on Friday.

Courtesy: www.hindustantimes.com

Let the Truth be known. If you read VB and like VB, please be a VB Supporter and Help us deliver the Truth to one and all.



Hyderabad, Dec 22: Top Telugu actor Allu Arjun did not leave the theatre during the screening of 'Pushpa-2' on December 4 despite being told to do so in view of a stampede in which a woman died, police officials claimed on on Sunday.

Speaking at a press conference on the annual round-up of 2024, city police commissioner C V Anand showed a video, made by police, on the situation that prevailed when the stampede occurred.

The video was made by collating footage, including from news channels and cell phone clips. It suggests the actor remained in the theatre till the midnight.

Anand did not make any comment on the video, but said the media can draw its own conclusions.

A police official talked about the sequence of events on the fateful night of December 4.

He said that he and other police officials informed a manager of Allu Arjun about the death of the woman and told him that the situation was out of control. He indicated that they were not allowed to meet the actor.

Allu Arjun's staff members told them that they would convey the matter to the actor but did not do so, he said.

The official said he later managed to reach the actor, told him about the woman's death and asked him to leave the theatre so that the fans don't harm each other while trying to catch a glimpse of him.

The official also told the actor that security arrangements would be made for his exit.

However, the actor said he would go only after watching the film, the police official said.

Later, accompanied by a senior officer, the official went inside and brought the actor out, he said.

Amid allegations that bouncers hired by Allu Arjun pushed crowds as well as policemen when the stampede occurred at the cinema hall, the police commissioner warned that stringent action as per law would be taken if THE bouncers indeed misbehaved with the police on duty.

The VIPs would be made responsible for the behaviour of the bouncers hired by them, he said.

Asked if the police would appeal against the interim bail granted to Allu Arjun, the commissioner refused to give a direct response, just saying it is part of the investigation.

What course of action is taken would be known in the days to come, he said.

He also declined to comment when asked if the family of the deceased told him about Allu Arjun's team or film production team allegedly threatening them not to speak on the issue.

Meanwhile, state Cinematography Minister Komatireddy Venkat Reddy found fault with Allu Arjun responding on Saturday to the debate in the Legislative Assembly.

The minister, who observed that the actor should have respect for the government and the chief minister, demanded an apology from Allu Arjun to the government and the CM.

"This government is never vindictive. As Cinematography Minister, we allowed benefit shows and hiking ticket prices to promote the film industry," he said.

However, Union Minister of State for Home Bandi Sanjay Kumar found fault with CM Revanth Reddy for his comments on Allu Arjun in the Assembly on Saturday.

The comments of the CM sounded like character assassination of Allu Arjun and hurting the Telugu film industry, he alleged in a statement.

Later in the day, Sanjay Kumar visited a boy who is undergoing treatment in a hospital after being injured in the stampede.

"Consoled his father over the heartbreaking loss of his wife, Revathi. I pray to god that Sritej recovers at the earliest. Assured support to the family in this difficult time," Kumar said on X.

Earlier in the day, state DGP Jitender told reporters in Karimnagar district that film personalities and all others should understand that safety and security of citizens is utmost important, and also conduct themselves accordingly.