Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

turbinetree

(24,688 posts)
Thu Mar 21, 2019, 02:45 PM Mar 2019

Facebook left millions of passwords readable by employees

By BARBARA ORTUTAY 43 minutes ago

SAN FRANCISCO (AP) — Facebook left millions of user passwords readable by its employees for years, the company said Thursday , an acknowledgement it offered after a security researcher posted about the issue online.

“Security rule 101 dictates that under no circumstances passwords should be stored in plain text, and at all times must be encrypted,” said cybersecurity expert Andrei Barysevich of Recorded Future. “There is no valid reason why anyone in an organization, especially the size of Facebook, needs to have access to users’ passwords in plain text.”

Facebook said there is no evidence its employees abused access to this data. But thousands of employees could have searched them. The company said the passwords were stored on internal company servers, where no outsiders could access them. But the incident reveals a huge oversight for the company amid a slew of bruises and stumbles in the last couple of years.

The security blog KrebsOnSecurity said some 600 million Facebook users may have had their passwords stored in plain text. Facebook said in a blog post Thursday it will likely notify “hundreds of millions” of Facebook Lite users, millions of Facebook users and tens of thousands of Instagram users that their passwords were stored in plain text. Facebook Lite is designed for users with older phones or low-speed internet connections and is used primarily in developing countries.

https://apnews.com/3bc16c0e8df04fa380d9a1b2eeafb8bc

They have no rules at Facebook they have some BS and how to make billions off advertisement and other Zuckerurg BS ...............................I hate Facebook , never used it, but I am being tracked by it................on sites, that have ads and such..........................

1 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Facebook left millions of passwords readable by employees (Original Post) turbinetree Mar 2019 OP
if facebook is that stupid (or malevolent) Hermit-The-Prog Mar 2019 #1

Hermit-The-Prog

(33,318 posts)
1. if facebook is that stupid (or malevolent)
Thu Mar 21, 2019, 07:44 PM
Mar 2019

Facebook cannot guarantee those passwords for 600 million users have not been harvested just like the other data that organizations like Cambridge Analytica obtained.

Latest Discussions»General Discussion»Facebook left millions of...