Facebook is warning 1 million users about stolen usernames, passwords

According to Meta Platforms Inc., it will alert around 1 million Facebook users that their account information may have been exposed as a result of security flaws with apps downloaded from Apple Inc. and Alphabet Inc.

The business revealed on Friday that it had discovered more than 400 malicious Android and iOS apps this year that prey on internet users in an effort to steal their login credentials. In order to expedite the removal of the apps, according to Meta, it alerted both Apple and Google to the problem.

According to Facebook, the apps functioned by passing themselves off as mobile games, photo editors, or fitness trackers.

Apple claimed that 45 of the 400 problematic apps had been taken down from the App Store. According to a representative, Google uninstalled all of the fraudulent apps in question.

According to David Agranovich, head of global threat disruption at Meta, “Cybercriminals know how popular these types of apps are and they’ll utilise similar themes to deceive customers and steal their accounts and information.” It’s likely that an app has hidden agendas if it makes too-good-to-be-true claims about previously undisclosed capabilities for another platform or social network platform.

For instance, a typical fraud would start once a consumer downloaded one of the harmful apps. The user would be tricked into supplying their username and password since the software would need a Facebook connection to perform any tasks that went beyond the bare minimum. After that, users might submit an updated photo, for instance, to their Facebook account. But by granting the app’s creator access, they unintentionally compromised their account.

In order to prevent being “re-compromised,” Meta said it would provide advice to potential victims on how to recognise problematic apps that steal login information, whether for Facebook or other accounts. According to Agranovich, the malicious activity took place outside of Meta systems, and not all 1 million users’ passwords were necessarily exposed.

Leave a Reply

Your email address will not be published. Required fields are marked *

UCEED 2025 IIT-Bombay Releases Exam Schedule, Registration Starts Today
Latest

UCEED 2025: IIT-Bombay Releases Exam Schedule, Registration Starts Today

The Indian Institute of Technology, Bombay (IIT-Bombay releases exam schedule) for the Undergraduate Common Entrance Exam for Design (UCEED) 2025, with registration beginning today at 1 PM on the official website— uceed.iitb.ac.in. The UCEED 2025 exam is scheduled to take place on January 19, from 9 AM to noon, in a single shift. IIT-Bombay releases […]

Read More
CBSE Holds Principals’ Workshop
Education Latest News

CBSE Holds Principals’ Workshop on Role of Parenting for Students’ Well-Being

In a significant move to enhance student welfare, the CBSE holds principals’ workshop titled ‘Parenting for Students’ Well-Being’ on September 26 at Sardar Patel Vidyalaya, New Delhi. The workshop brought together around 150 principals from CBSE schools across Delhi and NCR, focusing on strategies to support students’ emotional and psychological health through effective parenting. According […]

Read More
Online courses by IIT where JEE scores are not required
Latest Education News

Online Courses by IIT Where JEE Scores Are Not Required

Looking for online courses by IIT where JEE scores are not required? Here’s great news for aspirants! While cracking the JEE is essential for most IIT admissions, there are several IIT online courses that don’t require a JEE score. These short-duration and certification programmes allow students and professionals to access world-class education without going through […]

Read More