I’ve been tweeting about latest Facebook breach because it seems to show it’s learned nothing since Cambridge Analytica. It’s refused to answer basic press inquiries. And now, it’s pulled out rest of Cambridge Analytica playbook. This isn’t FB’s fault. It’s ‘malicious actors’ 1/
Facebook failed to keep safe the data of half a billion people. But this isn’t a data breach, it’s ‘scraping’. Which is *exactly* how Facebook responded to me & @_EmmaGH in 2018.
That wasn’t a data breach either. Until it was. 2/
This is the playbook. Ignore, minimise, deflect, re-frame. Here’s the response of @intidc, an actual (ethical) hacker who reported this *exact security flaw* in 2017. Instead of fixing the breach, Facebook blamed it on its users. 3/
This isn’t just chutzpah or an Orwellian disregard for language. This is high high stakes. @ashk4n is the former CTO of the FTC - the body which fined Facebook a record $5bn - & he points out the timing of this breach looks really really bad for Facebook 4/
And this was the Irish DPC yesterday - Facebook’s regulator - in Europe. It hadn’t been able to get any sort of a straight answer from Facebook. Yet if Facebook failed to notify it of a breach - which this suggests - it risks a fine of up to 4% of Facebook’s global turnover 5/
It took Facebook 5 days to publish this. It’s refusing to even acknowledge journalists’s qs. It doesn’t appear to be cooperating with the regulator. And these are not ‘facts’. This is a high-stakes PR op that blames Facebook’s users for their shocking failure to protect them
• • •
Missing some Tweet in this thread? You can try to
force a refresh
Fascinating conversation live now with the leading experts on this new Facebook data dump including @intidc for first reported it, former FTC tech lead @ashk4n & the security researcher who first found it @UnderTheBreach
The timing of it and when & if Facebook reported this to FTC is absolutely critical, says @ashk4n. He also says his private telephone number that he only uses for 2-factor verification and has never been public is in the data breach
The idea that Facebook 'fixed' this problem in Aug 19 is so absurd. As @ashk4n says the data dump, which is still sitting on the open net, is 'the perfect harassment tool'
Last week, @nick_clegg published 5,000 words of pro-Facebook propaganda & did big interview to promote. But Facebook’s only response to massive data breach of 1/2 billion accounts has been to claim the breach is ‘old’. Everything about this is fucked up 1/
This is a massive breach of incredibly sensitive information. When was reported on Friday & FB’s comms people took to Twitter to say this breach was ‘old’ & had been ‘fixed’ in August 2019. And since then..nothing. Not a word. 2/
Facebook - like all companies - has an obligation under GDPR to tell the regulator & inform users. Users like @zamaan_qureshi are discovering their data is in there. But FB never said a word.
It’s easy to become a bit immune to Facebook scandals - there’s so many of them! - but Facebook’s comms admitting they knew of this latest breach - of 533 million people - almost 2 years ago *but did not inform users* is pretty breathtaking
Facebook: ‘We found & fixed this issue in August 2019.’ Fixed it how?? That data - your tel number, email, DOB, r’ship status, gender - is sitting exposed on internet for absolutely anyone to see. Extraordinary response. Has Facebook learned anything since Cambridge Analytica?!?
Thrilling to hear Nick Clegg say in this podcast that the Cambridge Analytica scandal rocked Facebook to its core. But it paid the record FTC $5bn fine, it settled with the SEC for $100m & ICO for £500k. *It got away with it.* It learned nothing
You only have to look at the replies to @DavidLammy’s tweets to understand how this government is not just ignoring the reality of racism in Britain, it’s *actively fuelling it*. Yesterday’s report was a dog whistle to racist trolls. This is not an accident. It’s incitement
There are people & organisations in this country who know exactly how this works. How certain words & phrases mobilise an online army. This report will provide rocket fuel for this racist abuse against figures in public life for months to come. It mainstreams it. It licences it.
Platforms have failed to deal with this abuse. And governments have failed to make them. Racism (& antisemitism & misogyny) is encoded into public life through this technology which fuels & is fuelled by ‘real life’ interventions like this report. You can’t separate them.
I’m glad that @Jennifer_Arcuri is finally telling her story on her terms. She was framed as scarlet woman, accused of fraud, had her privacy destroyed. But she’s not the baddie here. That’s the man who failed to disclose his r’ship to the relevant parties mirror.co.uk/news/politics/…
If Johnson had disclosed his r’ship with Arcuri to city hall, the funding she received would not be in question. But he didn’t. And so she’s carried the can of all the qs around impropriety. But the impropriety was *his*. She was just some wannabe startup. He was mayor of london
Disclosure: I met Arcuri in London before GE2019. I tried to persuade her to come forward then. Before the election. When it might have made a difference. I showed her @MonicaLewinsky’s amazing @tedtalks on how she’d been abused & shamed & silenced