{"id":2842,"date":"2018-10-03T18:49:58","date_gmt":"2018-10-03T18:49:58","guid":{"rendered":"http:\/\/www.styledeals.co.uk\/blog\/facebook-data-breach-probe-launched-by-irish-watchdog\/"},"modified":"2018-10-03T18:49:58","modified_gmt":"2018-10-03T18:49:58","slug":"facebook-data-breach-probe-launched-by-irish-watchdog","status":"publish","type":"post","link":"https:\/\/www.styledeals.co.uk\/blog\/facebook-data-breach-probe-launched-by-irish-watchdog\/","title":{"rendered":"Facebook data breach probe launched by Irish watchdog"},"content":{"rendered":"\n<div property=\"articleBody\">\n<figure class=\"media-landscape has-caption full-width lead\"><span class=\"image-and-copyright-container\"><\/p>\n<p>                <img loading=\"lazy\" decoding=\"async\" class=\"js-image-replace\" alt=\"Facebook\" src=\"https:\/\/ichef.bbci.co.uk\/news\/320\/cpsprodpb\/A682\/production\/_103662624_hand2.jpg\" width=\"976\" height=\"549\"\/><span class=\"off-screen\">Image copyright<\/span><br \/>\n                 <span class=\"story-image-copyright\">Getty Images\/Facebook<\/span><\/p>\n<p>            <\/span><figcaption class=\"media-caption\"><span class=\"off-screen\">Image caption<\/span><br \/>\n                <span class=\"media-caption__text\"><br \/>\n                    The Irish Data Commission will decide whether the EU should penalise Facebook rather than there being country-by-country reviews<br \/>\n                <\/span><br \/>\n            <\/figcaption><\/figure>\n<p class=\"story-body__introduction\">The Irish Data Protection Commission has formally begun an investigation into Facebook&#8217;s recent data breach.<\/p>\n<p>It will now decide whether the firm should be fined for failing to prevent hackers from being able to access up to 50 million users&#8217; accounts.<\/p>\n<p>Earlier this year, the social network picked the regulator to be its &#8220;one-stop shop&#8221; for oversight of its compliance with EU privacy rules.<\/p>\n<p>In theory, the watchdog can fine the US firm up to 4% of its global turnover.<\/p>\n<p>Earlier, Facebook had declared that third-party apps and services which let users log in using their accounts had not appeared to have been compromised <a href=\"https:\/\/www.bbc.co.uk\/news\/technology-45686890\" class=\"story-body__link\">in the security attack.<\/a><\/p>\n<p>Tinder and Airbnb are among those which accept Facebook log-ins as an alternative to creating an account.<\/p>\n<p>Initially Facebook had suggested it was possible platforms such as these could also have been compromised.<\/p>\n<p>The firm&#8217;s former security chief said this was a consequence of having to report a breach at an early stage of the investigation.<\/p>\n<p>The breach was announced on Friday 28 September, one day after Facebook notified the Irish data regulator, but with many unanswered questions .<\/p>\n<p>Alex Stamos, who left his post as the firm&#8217;s chief security officer in August, tweeted that new European privacy laws mean that firms must report data breaches before they know full details themselves.<\/p>\n<p>The General Data Protection Regulation (GDPR) legislation, introduced in May 2018, states that a firm must report any security breach within 72 hours.<\/p>\n<div class=\"social-embed\">\n<div class=\"social-embed-post social-embed-twitter\">\n<div class=\"embed embed-twitter\">\n<div class=\"embed-region\" role=\"region\" aria-label=\"Twitter post by @alexstamos\">\n            <a class=\"off-screen jump-link\" href=\"#jump-linkhttps:\/\/twitter.com\/alexstamos\/status\/1046783533220421632\">Skip Twitter post  by @alexstamos<\/a><\/p>\n<div class=\"twitter-wrap\">\n<blockquote class=\"twitter-tweet\" data-lang=\"en\">\n<p lang=\"en\" dir=\"ltr\">Interesting impact of the GDPR 72-hour deadline: companies announcing breaches before investigations are complete.<\/p>\n<p>1) Announce &amp; cop to max possible impacted users.<br \/>2) Everybody is confused on actual impact, lots of rumors.<br \/>3) A month later truth is included in official filing. <a href=\"https:\/\/t.co\/VSCVfYB8om\">https:\/\/t.co\/VSCVfYB8om<\/a><\/p>\n<p>\u2014 Alex Stamos (@alexstamos) <a href=\"https:\/\/twitter.com\/alexstamos\/status\/1046783533220421632?ref_src=twsrc%5Etfw\">October 1, 2018<\/a><\/p><\/blockquote><\/div>\n<p class=\"off-screen\" id=\"jump-linkhttps:\/\/twitter.com\/alexstamos\/status\/1046783533220421632\" tabindex=\"-1\">End of Twitter post  by @alexstamos<\/p>\n<\/p><\/div>\n<\/p><\/div>\n<\/div>\n<\/div>\n<p>&#8220;You can do incident response quickly or not correctly, but not both!&#8221; he wrote.<\/p>\n<p>However, some people responding argued that the public had a right to know sooner rather than later.<\/p>\n<p>&#8220;The 72-hour notification brings the customer needs to the forefront, rather than shareholder value,&#8221; tweeted James.<\/p>\n<div class=\"social-embed\">\n<div class=\"social-embed-post social-embed-twitter\">\n<div class=\"embed embed-twitter\">\n<div class=\"embed-region\" role=\"region\" aria-label=\"Twitter post by @jamgia\">\n            <a class=\"off-screen jump-link\" href=\"#jump-linkhttps:\/\/twitter.com\/jamgia\/status\/1046889359729930243\">Skip Twitter post  by @jamgia<\/a><\/p>\n<div class=\"twitter-wrap\">\n<blockquote class=\"twitter-tweet\" data-conversation=\"none\" data-lang=\"en\">\n<p lang=\"en\" dir=\"ltr\">If I was in charge of <a href=\"https:\/\/twitter.com\/hashtag\/IncidentResponse?src=hash&amp;ref_src=twsrc%5Etfw\">#IncidentResponse<\/a> I would want more time. But normally I&#8217;m the customer (or victim) &#8211; and I&#8217;d like to know asap, so I know what data\/credentials etc are at risk. The 72hr notification brings the customer needs to the forefront, rather than shareholder value.<\/p>\n<p>\u2014 James (@jamgia) <a href=\"https:\/\/twitter.com\/jamgia\/status\/1046889359729930243?ref_src=twsrc%5Etfw\">October 1, 2018<\/a><\/p><\/blockquote><\/div>\n<p class=\"off-screen\" id=\"jump-linkhttps:\/\/twitter.com\/jamgia\/status\/1046889359729930243\" tabindex=\"-1\">End of Twitter post  by @jamgia<\/p>\n<\/p><\/div>\n<\/p><\/div>\n<\/div>\n<\/div>\n<h2 class=\"story-body__crosshead\">The background<\/h2>\n<p>Up to 50 million Facebook accounts are believed to have been left exposed in the breach, announced last week.<\/p>\n<p>An additional 40 million users were also logged out as a precautionary measure.<\/p>\n<p>The issue, which was based on a weakness in a feature allowing Facebook members to view how their profile appeared to others, has now been fixed.<\/p>\n<p><a href=\"https:\/\/newsroom.fb.com\/news\/2018\/10\/facebook-login-update\/\" class=\"story-body__link-external\">In a blog publicising the latest information on the attack<\/a>, Guy Rosen, vice-president of product management, wrote that there was no evidence &#8220;so far&#8221; that attackers had accessed any apps using Facebook log-ins.<\/p>\n<p>The breach was a result of a change made by Facebook in July 2017.<\/p>\n<p>It is not yet known whether the hack affected its corporate chat app, Workplace.<\/p>\n<p>The firm has no evidence yet to suggest that it has, reports Reuters. <\/p>\n<\/p><\/div>\n<p><script async src=\"http:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><br \/>\n<br \/>\n<br \/><a href=\"https:\/\/www.bbc.co.uk\/news\/technology-45732071\">Source<\/a> by <a href=\"\">[author_name]<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Image copyright Getty Images\/Facebook Image caption The Irish Data Commission will decide whether the EU should penalise Facebook rather than there being country-by-country reviews The Irish Data Protection Commission has formally begun an investigation into Facebook&#8217;s recent data breach. It will now decide whether the firm should be fined for failing to prevent hackers from &hellip; <\/p>\n","protected":false},"author":0,"featured_media":2843,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-2842","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-general"],"_links":{"self":[{"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/posts\/2842","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/comments?post=2842"}],"version-history":[{"count":0,"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/posts\/2842\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/media\/2843"}],"wp:attachment":[{"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/media?parent=2842"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/categories?post=2842"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.styledeals.co.uk\/blog\/wp-json\/wp\/v2\/tags?post=2842"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}