* . * . . .
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • Cookie Privacy Policy
  • DMCA
  • California Consumer Privacy Act (CCPA)
Tuesday, May 13, 2025
Love Europe
  • Politics
  • Business
  • Culture
  • Opinion
  • Lifestyle
  • Sports
  • Travel
No Result
View All Result
  • Politics
  • Business
  • Culture
  • Opinion
  • Lifestyle
  • Sports
  • Travel
No Result
View All Result
Love Europe
No Result
View All Result
Home News

Europe fines Meta $106 million for storing user passwords in plaintext

September 29, 2024
in News
Europe fines Meta 6 million for storing user passwords in plaintext
Share on FacebookShare on Twitter
ADVERTISEMENT

Facepalm: Running a social media company the size of Meta may be technically complicated, but some mistakes simply should not happen. One example is storing user passwords in plaintext, which Meta claims it inadvertently did in 2019, violating the region’s GDPR regulations. The incident adds to a growing list of ways in which Meta has infringed upon this privacy regulation.

Following a lengthy investigation, Meta has been fined €91 million (nearly $106 million) by the Irish Data Protection Commissioner (DPC) for storing certain Facebook user passwords in plaintext on its internal systems – that is, without cryptographic protection or encryption. The DPC also issued a reprimand to the social media giant.

Meta informed the DPC in April 2019 that it had inadvertently stored “hundreds of millions” of passwords improperly. The DPC stated that the passwords were not accessible to external parties.

The Irish watchdog serves as Meta’s lead privacy regulator in the European Union, as the company’s headquarters are based in Dublin.

The investigation revealed that the parent company of Facebook infringed upon the EU’s General Data Protection Regulation (GDPR), which mandates that personal data be appropriately secured. This included failing to notify the DPC of the data breach.

Although Meta did inform the DPC about the password storage issue, the investigation found that this notification was not timely or comprehensive enough to meet GDPR requirements. The GDPR requires companies to report personal data breaches to the relevant supervisory authority within 72 hours of becoming aware of the breach.

The DPC also cited Meta for violating a GDPR requirement to document all personal data breaches, suggesting that even after notifying the DPC, Meta may not have maintained adequate records of the incident as required by law. It also found that Meta did not implement appropriate technical or organizational measures to protect users’ passwords against unauthorized processing.

Graham Doyle, deputy commissioner at the DPC, emphasized the seriousness of Meta’s misstep. “It is widely accepted that user passwords should not be stored in plaintext, considering the risks of abuse that arise from persons accessing such data,” he said in a statement.

A Meta spokesperson, Matthew Pollard, emailed a statement to TechCrunch claiming the company took “immediate action” regarding what had been an “error” in its password management processes. “We proactively flagged this issue to our lead regulator, the Irish Data Protection Commission, and have engaged constructively with them throughout this inquiry,” the statement said.

Meta has accrued not only the largest fine for violating the GDPR since it went into effect, but also the majority of the largest penalties overall, according to a list compiled by TechCrunch.

The largest fine came in May 2023, when it was penalized $1.31 billion by the DPC for violating rules on transferring Facebook users’ personal data outside the European Union. Earlier that year, in January, the company was fined $426 million for failing to have a valid legal basis to process user data for ad targeting on Instagram and Facebook. Additionally, in September 2021, it was fined $443 million for failings in its handling of minors’ data on Instagram.

Meta has also been found to have infringed upon the GDPR due to technical missteps, such as storing passwords in plaintext. In November 2022, the DPC fined it $290 million when platform features, including contact importer and search tools, made the personal data of hundreds of millions of users discoverable to all other users.

Source link : http://www.bing.com/news/apiclick.aspx?ref=FexRss&aid=&tid=66f993e9bda54b5a82ccbbca06b15a52&url=https%3A%2F%2Fwww.techspot.com%2Fnews%2F104913-europe-fines-meta-106-million-storing-user-passwords.html&c=8757806563892517189&mkt=de-de

Author :

Publish date : 2024-09-29 10:46:00

Copyright for syndicated content belongs to the linked Source.

Tags: Europe
ADVERTISEMENT
Previous Post

European foreign ministers weigh in on immigration policy, crisis

Next Post

Austria: Far right wins general election, boosting European rightwing surge

Related Posts

Kuehne+Nagel introduces new direct line hauls between Türkiye and Europe inside its groupage community – Kuehne + Nagel
News

Kuehne+Nagel introduces new direct line hauls between Türkiye and Europe inside its groupage community – Kuehne + Nagel

Europe slams ‘unlawful’ Trump tariffs, vows unified response – politico.eu
News

Europe slams ‘unlawful’ Trump tariffs, vows unified response – politico.eu

Report: Assaults on Catholics more and more widespread and tolerated in Europe and Latin America – Catholic Information Company
News

Report: Assaults on Catholics more and more widespread and tolerated in Europe and Latin America – Catholic Information Company

ADVERTISEMENT

Highlights

The Impact of Moscow on Moldova’s Future – EUROP INFO

Australia and the Netherlands Celebrate Historic Victory Against Russia in MH17 Tragedy Case – EUROP INFO

Norway Launches Exciting New Exploration Acreage Opportunity! – EUROP INFO

Vucic Seeks Affordable Gas in High-Stakes Meeting with Putin – EUROP INFO

Ukraine Slams Russia for Ignoring Ceasefire Demands as Tensions Surge – EUROP INFO

Categories

Archives

September 2024
MTWTFSS
 1
2345678
9101112131415
16171819202122
23242526272829
30 
« Aug   Oct »
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • Cookie Privacy Policy
  • DMCA
  • California Consumer Privacy Act (CCPA)
No Result
View All Result
  • Home
  • Politics
  • News
  • Business
  • Culture
  • Sports
  • Lifestyle
  • Travel
  • Opinion

© 2024 Love-Europe

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.
Go to mobile version