Data of 267 million Facebook users leaked online

Agencies
December 21, 2019

A database containing personal details of more than 267 million Facebook users was allegedly left exposed on the web, according to a report from Britain-based tech research firm Comparitech and security researcher Bob Diachenko.

Diachenko believes the trove of data -- including Facebook user IDs, phone numbers and names -- is most likely the result of an illegal scraping operation or Facebook API abuse by criminals in Vietnam.

"Scraping" is a term used to describe a process in which automated bots quickly sift through large numbers of web pages, copying data from each one into a database.

The information contained in the database could be used to conduct large-scale SMS spam and phishing campaigns, among other threats to end users, said the report on Thursday, adding that most of the affected users were from the US.

Facebook is reportedly investigating the issue.

"We are looking into this issue, but believe this is likely information obtained before changes we made in the past few years to better protect people's information," a Facebook spokesperson told Engadget.

The revelations come at a time when Facebook is trying to regain the trust of its users with protection of their data following the Cambridge Analytica scandal that badly hit its reputation.

More than one and a half years after the Cambridge Analytica scandal first became public, the US Federal Trade Commission (FTC) earlier this month said that the now-defunct British data analytics and consulting company engaged in deceptive practices to harvest personal information from tens of millions of Facebook users for voter profiling and targeting.

After discovering that personal details of 267 million Facebook users were exposed online, Diachenko notified the Internet service provider managing the IP address of the server so that access could be removed.

However, the data was also posted to a hacker forum as a download, said the security researcher.

Facebook IDs are unique, public numbers associated with specific accounts, which can be used to discern an account's username and other profile info.

While how criminals obtained the user IDs and phone numbers is not entirely clear, one possibility is that the data was stolen from Facebook's developer API before the company restricted access to phone numbers in 2018.

Facebook's API is used by app developers to add social context to their applications by accessing users' profiles, friends list, groups, photos and event data. Phone numbers were available to third-party developers prior to 2018.

Facebook's API could also have a security hole that would allow criminals to access user IDs and phone numbers even after access was restricted, Diachenko said.

Another possibility is that the data was stolen without using the Facebook API at all, and instead scraped from publicly visible profile pages, according to the report.

This isn't the first time such a database has been exposed. In September 2019, 419 million records across several databases were exposed, including phone numbers and Facebook IDs.

The report warned that Facebook users should be on the lookout for suspicious text messages.

Even if the sender knows your name or some basic information about you, be sceptical of any unsolicited messages, it added.

Comments

Helpful info. Lucky me I found your site by accident, and I'm stunned why this coincidence didn't happened in advance!
I bookmarked it.

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
November 27,2025

imrankhan.jpg

Authorities at Pakistan’s high-security Adiala Jail in Rawalpindi on Wednesday dismissed speculation about the condition of imprisoned former Pakistan Prime Minister Imran Khan, rejecting rumours that he had been moved out of the facility or was in danger. Officials said Khan was in “good health” and described the viral death claims as “baseless.”

“There is no truth to reports about his transfer from Adiala Jail,” the Rawalpindi prison administration said in a statement, according to Geo News. “He is fully healthy and receiving complete medical attention.”

Amid swirling rumours on social media, Imran Khan’s party, Pakistan Tehreek-e-Insaf (PTI), urged the federal government to issue an official clarification and demanded that authorities allow his family to meet him immediately, Dawn reported.

The frenzy began after Khan’s three sisters called for an impartial probe into what they described as a “brutal” police assault on them and other PTI supporters outside Adiala Jail last week. Soon after, several social media handles circulated unverified claims alleging that Khan had been “killed” inside the prison.

The rumours intensified when a handle named “Afghanistan Times” claimed that “credible sources” had confirmed Khan’s “murder” and that his body had been moved out of the jail — allegations that have not been verified by any credible agency.

Imran Khan, PTI’s patron-in-chief, has been lodged in the Rawalpindi prison since August 2023 in multiple cases. For over a month, an undeclared restriction has prevented family members and senior PTI leaders from meeting him. Khyber-Pakhtunkhwa Chief Minister Sohail Afridi has reportedly been denied access despite making seven attempts.

In a letter to Punjab Police Chief Usman Anwar, Khan’s sisters — Noreen Niazi, Aleema Khan, and Dr. Uzma Khan — said they were “peacefully protesting” outside the jail when police allegedly launched an unprovoked assault after streetlights were switched off.

“At 71, I was seized by my hair, thrown to the ground and dragged across the road,” Noreen Niazi said, alleging that other women present were also slapped and manhandled.

Adiala Jail officials reiterated that speculation over Imran Khan’s health was unfounded and insisted that his well-being was being ensured, Geo News reported.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.