Facebook Sues Analytics Firms That Stole User Data Through Third-Party Apps

Back in November, Facebook and Twitter reported about a security breach that allowed third-party analytics services to steal user data through third-party apps, without the user’s permission.

The breach was possible through malicious software development kits (SDKs) used by third-party apps, allowing the analytics firms to get users’ personal data without their permission.

Windows Intelligence In Your Inbox

Sign up for our new free newsletter to get three time-saving tips each Friday — and get free copies of Paul Thurrott's Windows 11 and Windows 10 Field Guides (normally $9.99) as a special welcome gift!

"*" indicates required fields

This field is for validation purposes and should be left unchanged.

[ad unit=’in_content_premium_block’]

At the time, both Facebook and Twitter took immediate actions against the developers of the malicious SDKs OneAudience and Mobiburn. The companies were paying app developers to use malicious SDKs on their apps. This week, Facebook announced that the company is suing OneAudience after the analytics firm refused to cooperate with Facebook as part of a security audit.

“Through these lawsuits, we will continue sending a message to people trying to abuse our services that Facebook is serious about enforcing our policies, including requiring developers to cooperate with us during an investigation, and advance the state of the law when it comes to data misuse and privacy,” said the company.

Facebook said the company disabled apps affected by the malicious SDKs immediately, and it also sent a cease and desist letter to OneAudience. The company then requested OneAudience to take part in an audit, which OneAudience had refused.

Tagged with

Share post

Please check our Community Guidelines before commenting

Conversation 4 comments

  • anoldamigauser

    Premium Member
    28 February, 2020 - 11:36 am

    <p>None of this will get the data back, though. This is the problem with the surveillance economy; you think you have a relationship with Facebook, and the application maker, but really there are a whole host of other companies like this that are paying to get your information.</p><p>The argument could be made that these SDKs are a type of fraud, which might allow the companies to be prosecuted under RICO statutes.</p>

  • Thretosix

    28 February, 2020 - 3:29 pm

    <p>Well Cambridge Analytica is back on the campaign trail. Facebook is such a crapshow.</p>

  • Greg Green

    29 February, 2020 - 8:28 am

    <p>Facebook is just disappointed they didn’t have a chance to sell it. Maybe that’ll be part of the out of court settlement. <span style="color: rgb(0, 0, 0);">OneAudience will pay damages, then get a receipt for the data they have.</span></p>

  • nbplopes

    02 March, 2020 - 8:33 am

    <p>“<span style="color: rgb(0, 0, 0);">Through these lawsuits, we will continue sending a message to people trying to abuse our services that Facebook is serious about enforcing our policies,&nbsp;“</span></p><p><br></p><p><span style="color: rgb(0, 0, 0);">So it’s about the message not the content :)</span></p>

Windows Intelligence In Your Inbox

Sign up for our new free newsletter to get three time-saving tips each Friday

"*" indicates required fields

This field is for validation purposes and should be left unchanged.

Thurrott © 2024 Thurrott LLC