Twitter and christina, princess of eroticismFacebook have confirmed millions of users may have had their personal information compromised by malicious software hidden in third-party apps. This includes names, genders, emails, usernames, and potentially people's last tweets.
"We recently received a report about a malicious mobile software development kit (SDK) maintained by oneAudience," Twitter announced in a blog post on Monday. Concealed in apps downloaded from the Google Play Store, the SDK could "exploit a vulnerability in the mobile ecosystem" to expose users' personal data to third-party developers.
Apps often ask for access to users' social media, linking to Twitter and Facebook accounts to provide features such as in-game leaderboards and the ability to share achievements. However, doing so in an app using this SDK potentially allowed third-party developers to access much more data than users had agreed to.
"While we have no evidence to suggest that this was used to take control of a Twitter account, it is possible that a person could do so," wrote Twitter.
Fortunately, there is nothing to suggest iOS users were impacted. Unfortunately, the vulnerability was exploited to access the data of some Twitter users on Android.
Twitter says it has informed Google and Apple of the issue, and will be notifying those who may have been impacted. However, there isn't much people can do other than delete unused apps, clean up their app permissions, and hope they weren't affected.
SEE ALSO: Facebook wants to pay you for your opinions. What could go wrong?Facebook users were similarly affected by the oneAudience SDK, as well as a similar SDK from MobiBurn. "[Both] were paying developers to use malicious software developer kits (SDKs) in a number of apps available in popular app stores," said Facebook.
The company will also notify potentially affected users, who number a whopping 9.5 million. In a statement to CNBC, Facebook claimed it has since removed the offending apps, as well as issued a cease and desist to both oneAudience and MobiBurn.
In response, oneAudience released a statement on Monday saying it will be shutting down its SDK immediately, though noted it had already pushed an update to prevent such data collection once informed of the vulnerability. "This data was never intended to be collected, never added to our database and never used," said oneAudience.
MobiBurn also released a statement asserting it had not "collected, shared or monetised" any data from Facebook, and characterised itself as a mere middleman who introduces app developers to third-party data monetisation companies.
Even so, MobiBurn will cease all activities until it completes its investigation into the matter.
All of this is another reminder to be mindful of what you download, and never link apps to your social media accounts if you can avoid it. Your friends probably don't care about your high score anyway.
Topics Cybersecurity Facebook Privacy X/Twitter
Mitú launches Snapchat Discover channelFinally there's proof that Britain's 4G is as bad as you thought'We are all human': AntiThis very NSFW nativity scene is causing outrage in SpainAirbnb says it's down to play by the rules in Australia, as regulation looms'Pokémon Go' is now officially live in India, Pakistan and Sri Lanka19 tattoos that'll leave you nostalgic for your childhoodThis is why your internet is slow today, IndiaDenzel Washington shares thoughts about journalism and fake newsEverything you need to know to master Snapchat GroupsAfter long delay Apple's AirPods are finally on saleSnapchat finally releases Groups feature'Pokémon Go' is now officially live in India, Pakistan and Sri LankaClimate scientists vow to stand up to TrumpThe Arctic is reeling from its warmest year since at least 1900Nonprofit offering mobile showers to the homeless is now way more than thatNo more hazing MLB rookies by making them dress as womenSatanic Temple stands up to Ohio's heartbeat billJill Stein wants moral high ground after cashing in on Trump fearNigerian bobsled team hopes to make a push at history The Beauty of Meaningless Writing Kingsley Amis’s James Bond Novel Apple Watch 7 to get redesign, but big health updates may be coming later Tinder launches profile videos, Hot Takes, and an Explore page Recapping Dante: Canto 27 or Let’s Make a Deal with the Pope How to add an admin to a Facebook page The Dark Galleries An Oral Biography of García Márquez, Part Four On Talking in One’s Sleep Robert Indiana and the Meaning of Love How to block someone on Facebook Before You Watch Mad Men Tonight The cartoon gorilla that taught a generation to not click 'download' An Oral Biography of García Márquez, Part Five Meta's news blackout sparks some Canadian advertisers to boycott The Morning News Roundup for April 22, 2014 The Morning News Roundup for May 5, 2014 The Morning News Roundup for April 17, 2014 The Morning News Roundup for April 24, 2014 The pandemic has fundamentally changed the way we find a job
3.2526s , 10196.9375 kb
Copyright © 2025 Powered by 【christina, princess of eroticism】,Miracle Information Network