Security News

200,000 Facebook Marketplace user records leaked on hacking forum
2024-02-13 19:30

A threat actor leaked 200,000 records on a hacker forum, claiming they contained the mobile phone numbers, email addresses, and other personal information of Facebook Marketplace users. IntelBroker claims this partial Facebook Marketplace database was stolen by someone using the 'algoatson' Discord handle after hacking the systems of a Meta contractor.

Facebook ads push new Ov3r_Stealer password-stealing malware
2024-02-07 21:24

A new password-stealing malware named Ov3r Stealer is spreading through fake job advertisements on Facebook, aiming to steal account credentials and cryptocurrency. The fake job ads are for management positions and lead users to a Discord URL where a PowerShell script downloads the malware payload from a GitHub repository.

Beware: Fake Facebook Job Ads Spreading 'Ov3r_Stealer' to Steal Crypto and Credentials
2024-02-06 14:09

Threat actors are leveraging bogus Facebook job advertisements as a lure to trick prospective targets into installing a new Windows-based stealer malware codenamed Ov3r_Stealer. "This malware is...

Facebook’s Extensive Surveillance Network
2024-02-01 12:06

Using a panel of 709 volunteers who shared archives of their Facebook data, Consumer Reports found that a total of 186,892 companies sent data about them to the social network. On average, each participant in the study had their data sent to Facebook by 2,230 companies.

Watch out for "I can't believe he is gone" Facebook phishing posts
2024-01-21 16:19

A widespread Facebook phishing campaign stating, "I can't believe he is gone. I'm gonna miss him so much," leads unsuspecting users to a website that steals your Facebook credentials. The phishing campaign started around a year ago, with Facebook having trouble blocking the posts as they continue to this day.

Facebook, Instagram now mine web links you visit to fuel targeted ads
2024-01-08 07:27

Link history stores records for 30 days, can be used to recall pages previously read, and excludes links sent in messages. Less prominently mentioned on help pages describing the feature on Facebook and Instagram is, of course, perhaps the real reason for the capability: "We may use link history information from our browser to improve your ads across Meta technologies."

Facebook Enables Messenger End-to-End Encryption by Default
2023-12-11 12:10

It’s happened. Details here, and tech details here (for messages in transit) and here (for messages in storage) Rollout to everyone will take months, but it’s a good day for both privacy and...

Meta introduces default end-to-end encryption for Messenger and Facebook
2023-12-08 12:01

Meta is introducing default end-to-end encryption for chats and calls across Messenger and Facebook, the company revealed on Wednesday. "We've introduced new privacy, safety and control features along the way like delivery controls that let people choose who can message them, as well as app lock, alongside existing safety features like report, block and message requests," said Loredana Crisan, Head of Messenger at Meta.

Meta rolls out default end-to-end encryption on Messenger, Facebook
2023-12-07 14:27

Meta has announced that the immediate availability of end-to-end encryption for all chats and calls made through the Messenger app, as well as the Facebook social media platform.E2EE has been available in the Messenger app as an optional feature called "Secret Conversations" since 2016 but Meta says it now enables it by default for all users as an additional layer of security.

NodeStealer Malware Hijacking Facebook Business Accounts for Malicious Ads
2023-11-03 12:12

Compromised Facebook business accounts are being used to run bogus ads that employ "revealing photos of young women" as lures to trick victims into downloading an updated version of a malware...