SecurityMeta Fined €251 Million for 2018 Facebook Data Breach

Meta Fined €251 Million for 2018 Facebook Data Breach

Meta, the parent company of Facebook, has been fined €251 million by the European Union’s Data Protection Commission (DPC) for a 2018 security breach that compromised the personal data of approximately 29 million users worldwide, including 3 million within the EU. The breach involved the exploitation of vulnerabilities in Facebook’s “View As” feature, leading to unauthorized access to user profiles and sensitive information.

Key Points at a Glance:
  • Significant Fine Imposed: The DPC has levied a €251 million fine on Meta for violations of the General Data Protection Regulation (GDPR) related to the 2018 data breach.
  • Extent of the Breach: The security incident affected 29 million Facebook users globally, with about 3 million users based in the EU and European Economic Area.
  • Exploited Vulnerability: Attackers exploited a flaw in the “View As” feature, allowing unauthorized access to personal data, including names, contact details, locations, and more.
  • Meta’s Response: Meta promptly addressed the breach upon discovery and notified affected users and regulatory authorities. The company plans to appeal the DPC’s decision.
  • Ongoing Regulatory Scrutiny: This fine contributes to nearly €3 billion in total penalties imposed on Meta under the GDPR since 2018, reflecting ongoing regulatory scrutiny of the company’s data protection practices.

In September 2018, Facebook identified a security vulnerability in its “View As” feature, which allows users to see how their profiles appear to others. This flaw enabled attackers to obtain access tokens—digital keys that keep users logged in without re-entering passwords—granting control over user accounts. The breach compromised personal information, including full names, contact details, locations, places of work, dates of birth, religions, genders, and children’s personal data.

Upon discovering the breach, Meta took immediate action to rectify the issue and informed both the affected users and relevant regulatory bodies, including the DPC. Despite these measures, the DPC’s investigation concluded that Meta had violated GDPR provisions, leading to the substantial fine. The DPC cited the unauthorized exposure of profile information as posing a significant risk of misuse, warranting the financial penalty.

Meta has expressed its intention to appeal the DPC’s decision. A company spokesperson stated, “We took immediate action to fix the problem as soon as it was identified, and we proactively informed people impacted as well as the Irish Data Protection Commission.” The spokesperson emphasized that Meta has implemented a wide range of measures to protect users across its platforms.

This fine adds to the series of penalties Meta has faced under the GDPR framework. Notably, in May 2023, the company was fined a record €1.2 billion for data transfer violations, a decision it is currently appealing. The cumulative fines underscore the EU’s stringent stance on data protection and the importance of robust security measures to safeguard user information.

The DPC’s enforcement actions highlight the critical need for companies to adhere to data protection regulations and implement comprehensive security protocols. As data breaches continue to pose significant risks to user privacy, regulatory bodies remain vigilant in holding organizations accountable for lapses in data security.

Jacob Reed
Jacob Reed
A practical analyst specializing in cybersecurity. Delivers technical expertise with clarity and focus.

Subscribe

Get a weekly newsletter with the most intriguing articles of the week, straight to your inbox.

More from author

More like this

AI Simulates a Million Years of Evolution to Decode Life’s Mysteries

Researchers have achieved a breakthrough by using artificial intelligence to simulate a million years of evolution, offering profound insights into the mechanics of life and adaptation.

China’s AI Models Rival U.S. in Reasoning Capabilities

As China’s artificial intelligence industry advances rapidly, its reasoning AI models are now nearing the capabilities of their American counterparts, raising the stakes in the global AI race.

Aptiv and Telecom Advances Drive the Future of Software-Defined Vehicles

Emerging synergies between Aptiv and telecom innovations are accelerating the shift towards software-defined mobility, promising safer, smarter, and more sustainable transportation solutions.

Game-Changer for Green Hydrogen: Advancements in Seawater Electrolysis

Recent breakthroughs in seawater electrolysis technology promise to revolutionize the production of green hydrogen, offering a sustainable and scalable solution to the world’s energy needs.

Latest news

Catastrophic Coral Bleaching on the Great Barrier Reef: A Grim Warning

A new study reveals the devastating impact of marine heatwaves, with up to 95% mortality in some coral genera. The findings highlight the urgency of addressing climate change to protect one of the world’s most vital ecosystems.

Ultra-Fast Cancer Treatments: Revolutionizing Radiotherapy in Seconds

A groundbreaking innovation in cancer treatment promises to deliver life-saving radiotherapy in under a second, with fewer side effects and broader applications than traditional methods.

Hubble Captures Breathtaking 2.5-Gigapixel Image of Andromeda Galaxy

The Hubble Space Telescope has delivered a jaw-dropping 2.5-gigapixel image of the Andromeda Galaxy, showcasing unprecedented detail and revealing secrets about our closest galactic neighbor.

AI Simulates a Million Years of Evolution to Decode Life’s Mysteries

Researchers have achieved a breakthrough by using artificial intelligence to simulate a million years of evolution, offering profound insights into the mechanics of life and adaptation.

China’s AI Models Rival U.S. in Reasoning Capabilities

As China’s artificial intelligence industry advances rapidly, its reasoning AI models are now nearing the capabilities of their American counterparts, raising the stakes in the global AI race.

Marsquakes May Hold the Key to Solving Mars’ 50-Year-Old Mystery

Groundbreaking research suggests that seismic activity on Mars could help unravel the long-standing enigma surrounding the planet's geological and thermal history.

Trump Halts Federal Approvals for New Wind Energy Projects

In a sweeping executive order, President Donald Trump has paused federal approvals for new wind energy projects, both onshore and offshore, marking a significant shift in U.S. energy policy.

Aptiv and Telecom Advances Drive the Future of Software-Defined Vehicles

Emerging synergies between Aptiv and telecom innovations are accelerating the shift towards software-defined mobility, promising safer, smarter, and more sustainable transportation solutions.

Persistent DNA Damage: A New Frontier in Cancer Research

New findings reveal how DNA damage can endure for years, significantly increasing the risk of cancer and other diseases, reshaping our understanding of long-term genetic health.

Game-Changer for Green Hydrogen: Advancements in Seawater Electrolysis

Recent breakthroughs in seawater electrolysis technology promise to revolutionize the production of green hydrogen, offering a sustainable and scalable solution to the world’s energy needs.