Facebook Says Hackers 'Scraped' Data of 533 Mn Users in 2019 Leak

FILE PHOTO: A man poses with a magnifier in front of a Facebook logo on display in this illustration taken in Sarajevo, Bosnia and Herzegovina, December 16, 2015. REUTERS/Dado Ruvic/Illustration
FILE PHOTO: A man poses with a magnifier in front of a Facebook logo on display in this illustration taken in Sarajevo, Bosnia and Herzegovina, December 16, 2015. REUTERS/Dado Ruvic/Illustration
TT

Facebook Says Hackers 'Scraped' Data of 533 Mn Users in 2019 Leak

FILE PHOTO: A man poses with a magnifier in front of a Facebook logo on display in this illustration taken in Sarajevo, Bosnia and Herzegovina, December 16, 2015. REUTERS/Dado Ruvic/Illustration
FILE PHOTO: A man poses with a magnifier in front of a Facebook logo on display in this illustration taken in Sarajevo, Bosnia and Herzegovina, December 16, 2015. REUTERS/Dado Ruvic/Illustration

Facebook said Tuesday that hackers "scraped" personal data of some half-billion users back in 2019 by taking advantage of a feature designed to help people easily find friends using contact lists.

A trove of information about more than 530 million Facebook users was shared over the weekend at a hacker forum, prompting the leading social network to explain what happened and call on people to be vigilant about privacy settings.

"It is important to understand that malicious actors obtained this data not through hacking our systems but by scraping it from our platform prior to September 2019," Facebook product management director Mike Clark said in a post.

"This is another example of the ongoing, adversarial relationship technology companies have with fraudsters who intentionally break platform policies to scrape internet services."

The data included phone numbers, birth dates, and email addresses, and some of the data appeared to be current, according to US media reports.

The stolen data did not include passwords or financial data, according to Facebook.

Scraping is a tactic that involves using automated software to gather up information shared publicly online.

"All 533,000,000 Facebook records were just leaked for free," Alon Gal, chief technology officer at the Hudson Rock cybercrime intelligence firm, said Saturday on Twitter.

He denounced what he called the "absolute negligence" of Facebook.

"Bad actors will certainly use the information for social engineering, scamming, hacking and marketing," Gal said on Twitter.

Clark urged members of the social network to check their privacy settings to control what information can be seen publicly, and to tighten account security with two-factor authentication.

This is not the first time leaks or use of data from the world's largest social network -- with nearly two billion users -- has embroiled Facebook in controversy.

In 2016, a scandal around Cambridge Analytica, a British consulting firm that used the personal data of millions of Facebook users to target political ads, cast a shadow over the social network and its handling of private information.



SDAIA Builds Regulatory Environment for Data, AI to Promote Responsible Use

SDAIA Builds Regulatory Environment for Data, AI to Promote Responsible Use
TT

SDAIA Builds Regulatory Environment for Data, AI to Promote Responsible Use

SDAIA Builds Regulatory Environment for Data, AI to Promote Responsible Use

The Saudi Data and AI Authority (SDAIA) has contributed to building and enhancing the regulatory environment for data and artificial intelligence through governance frameworks that protect individual privacy, safeguard national data sovereignty, and promote the responsible use of AI tools and applications in line with international best practices, reflecting the Kingdom’s commitment to global leadership in data and AI governance, SPA reported.

As part of the Kingdom’s efforts to strengthen the regulatory environment for data and AI, SDAIA has developed a range of regulatory tools that serve as a national reference.

These include the Personal Data Protection Law and its executive regulations, national data governance policies, data management and protection standards, and the National Data Index (NDI), which assesses data management maturity among government entities.

In the field of AI governance, SDAIA has launched 10 regulatory documents covering the ethical and responsible use of AI, including AI ethics principles and generative AI principles for government entities.


Meta Takes Legal Action Against Israeli Spyware Firm NSO

The logo of Meta at the Meta Lab in Los Angeles, California, US, May 20, 2026. (Reuters)
The logo of Meta at the Meta Lab in Los Angeles, California, US, May 20, 2026. (Reuters)
TT

Meta Takes Legal Action Against Israeli Spyware Firm NSO

The logo of Meta at the Meta Lab in Los Angeles, California, US, May 20, 2026. (Reuters)
The logo of Meta at the Meta Lab in Los Angeles, California, US, May 20, 2026. (Reuters)

Meta said on Monday it is filing a federal court contempt order against Israeli spyware firm NSO Group for violating a permanent injunction that barred it from ever targeting WhatsApp and its users. 

The company said its WhatsApp messaging service disrupted new spear phishing attempts linked to NSO, an entity blacklisted by the US government for engaging in activities that are contrary to ‌the national ‌security or foreign policy interests. 

These ‌attempts ⁠were similar to ⁠previous "1-click phishing campaigns," aimed to trick users into clicking malicious links and direct them to external websites, Meta said in a blogpost. 

"1-click" is a type of cyberattack where a single click on a malicious link or attachment is sufficient ⁠to compromise a victim's device or ‌account, without requiring them ‌to enter their credentials. 

Meta said WhatsApp took down test ‌accounts and groups created by NSO on its ‌platform. NSO did not immediately respond to a Reuters request for comment. 

Last year, a US court ordered NSO to stop targeting Meta's WhatsApp, a development the ‌spyware company warned could put it out of business. 

While the ruling significantly ⁠reduced the ⁠punitive damages NSO owed Meta to $4 million from an initial $167 million, the injunction itself was seen as a substantial challenge for the company, which faces ongoing accusations of enabling human rights abuses through its Pegasus hacking tool. 

Meta said on Monday that last month it was joined by 12 prominent civil rights organizations, a coalition of security researchers, privacy advocates and digital rights experts, who filed their amicus briefs to fight NSO's appeal against the permanent injunction. 


SDAIA, World Bank to Discuss Global Best Practices in Data Governance and AI in Belgium and Germany

The events aim to enhance international cooperation and explore global best practices in AI governance
The events aim to enhance international cooperation and explore global best practices in AI governance
TT

SDAIA, World Bank to Discuss Global Best Practices in Data Governance and AI in Belgium and Germany

The events aim to enhance international cooperation and explore global best practices in AI governance
The events aim to enhance international cooperation and explore global best practices in AI governance

The Saudi Data and Artificial Intelligence Authority (SDAIA), in partnership with the World Bank, will organize 25 specialized sessions and meetings in Belgium and Germany from June 8 to 12.

The events aim to enhance international cooperation and explore global best practices in AI governance, with participation from leading experts, policymakers, and representatives of international organizations and entities concerned with AI governance.

The sessions aim to strengthen international cooperation and exchange expertise in data and artificial intelligence, showcase Saudi Arabia's experience in building a leading national data and AI ecosystem, and explore key enablers, policies, and legislation for AI governance.

The discussions are expected to contribute to international efforts to develop responsible governance frameworks for emerging technologies.

The sessions will address a range of key topics related to AI governance, including the EU AI Act, data governance and privacy, international cooperation in AI, European standards and regulations, and responsible AI applications, in line with global efforts to promote the safe and trustworthy use of these technologies.