Facebook finds ‘no evidence’ hackers accessed connected apps

Facebook has said it’s found “no evidence” that third-party apps were affected by the data breach it revealed last week.

Hackers stole account access tokens on at least 50 million users by exploiting a chain of three vulnerabilities inadvertently introduced by Facebook last year. Another 40 million may have been also been affected by the attack. Facebook revoked those tokens — which keep users logged in when they enter their username and password — forcing users to log back into the site again.

But there was concern that third-party apps, sites and services that rely on Facebook to log in — like Spotify, Tinder and Instagram — may have also been affected, prompting companies that use Facebook Login to seek answers from the social networking giant.

“We have now analyzed our logs for all third-party apps installed or logged during the attack we discovered last week,” said Guy Rosen, Facebook’s vice president of product management, in a blog post. “That investigation has so far found no evidence that the attackers accessed any apps using Facebook Login.”

“Any developer using our official Facebook SDKs — and all those that have regularly checked the validity of their users’ access tokens – were automatically protected when we reset people’s access tokens,” he said.

Admittedly, Rosen said that not all developers use Facebook’s developer tools, so the social network is “building a tool to enable developers to manually identify the users of their apps who may have been affected, so that they can log them out.”

Facebook didn’t say when the tool would become available. TechCrunch has reached out for comment and will update when we hear back.



from www.tech-life.in
Share:

No comments:

Post a Comment

Search This Blog

Blog Archive

Powered by Blogger.

Edo raises $12M from Breyer Capital to measure TV ad effectiveness

Edo , an ad analytics startup founded by Daniel Nadler and actor Edward Norton, announced today that it has raised $12 million in Series A f...

Blog Archive

Recent Posts

Unordered List

  • Lorem ipsum dolor sit amet, consectetuer adipiscing elit.
  • Aliquam tincidunt mauris eu risus.
  • Vestibulum auctor dapibus neque.

Sample Text

Lorem ipsum dolor sit amet, consectetur adipisicing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation test link ullamco laboris nisi ut aliquip ex ea commodo consequat.

Pages

Theme Support

Need our help to upload or customize this blogger template? Contact me with details about the theme customization you need.