London Daily

Focus on the big picture.
Tuesday, Aug 19, 2025

Researcher: Data on 267 million Facebook users exposed

Researcher: Data on 267 million Facebook users exposed

A Ukrainian security researcher reported finding a database with the names, phone numbers and unique user IDs of more than 267 million Facebook users - nearly all U.S.-based - on the open internet. That data was likely harvested by criminals, said researcher Bob Diachenko, an independent security consultant in Kyiv.
The database, which Diachenko discovered with a search engine, was freely accessible online for at least 10 days beginning Dec. 4, he said. He notified the internet provider where it was hosted when he found it on Dec. 14; five days later it was no longer available.

Diachenko said someone downloaded the database to a hacker forum two days before he discovered it so it may have been shared among online thieves.

He first reported the finding Thursday in partnership with the U.K. tech news website Comparitech, which editor Paul Bischoff said has been helping write up Diachenko’s discoveries of unsecured databases for about a year.

The researcher provided the AP with a 10-record sample from the database and the IDs -and two phone numbers that were answered -checked out against real Facebook users.

The evidence suggests the data was collected illegally, most likely by criminals in Vietnam who may have “scraped” it from public Facebook pages or by somehow obtaining privileged access to the service. Scraping is automated data-harvesting done by bots. A small fraction of the database include details on Vietnam-based users.

Diachenko said he did not share the database with Facebook, which did not directly confirm the finding. In a statement, the social network said it was investigating the issue and that the finding “likely” involved information obtained before Facebook took unspecified data-protection measures in recent years.

In 2018, the social media giant disabled a feature that allowed users to search for one another via phone number following revelations that the political firm Cambridge Analytica had accessed information on up to 87 million Facebook users without their knowledge or consent.

Diachenko said he had not determined when the data was collected. He said all the records had time stamps from January to June 2019 but that it was unclear who generated them.

Security experts say the affected Facebook users are at higher risk of being targeted by spam, password-stealing phishing attacks and identity theft attempts. The information can be cross-referenced with physical and email addresses and other data obtained in other data breaches. Facebook user IDs are unique numbers associated with individual accounts.

In September, the news site TechCrunch reported that Facebook IDs and phone numbers for more than 400 million users were similarly found exposed online by a researcher.

In March, Facebook disclosed that it had left hundreds of millions of user passwords readable by its employees on internal severs for years after a security researcher exposed the lapse.
Newsletter

Related Articles

0:00
0:00
Close
Taylor Swift on the Way to the Super Bowl? All the Clues Stirring Up Fans
Dogfights in the Skies: Airbus on Track to Overtake Boeing and Claim Aviation Supremacy
Tim Cook Promises an AI Revolution at Apple: "One of the Most Significant Technologies of Our Generation"
Apple Expands Social Media Presence in China With RedNote Account Ahead of iPhone 17 Launch
Are AI Data Centres the Infrastructure of the Future or the Next Crisis?
Cambridge Dictionary Adds 'Skibidi,' 'Delulu,' and 'Tradwife' Amid Surge of Online Slang
Bill Barr Testifies No Evidence Implicated Trump in Epstein Case; DOJ Set to Release Records
Zelenskyy Returns to White House Flanked by European Allies as Trump Pressures Land-Swap Deal with Putin
The CEO Who Replaced 80% of Employees for the AI Revolution: "I Would Do It Again"
Emails Worth Billions: How Airlines Generate Huge Profits
Character.ai Bets on Future of AI Companionship
China Ramps Up Tax Crackdown on Overseas Investments
Japanese Office Furniture Maker Expands into Bomb Shelter Market
Intel Shares Surge on Possible U.S. Government Investment
Hurricane Erin Threatens U.S. East Coast with Dangerous Surf
EU Blocks Trade Statement Over Digital Rule Dispute
EU Sends Record Aid as Spain Battles Wildfires
JPMorgan Plans New Canary Wharf Tower
Zelenskyy and his allies say they will press Trump on security guarantees
Beijing is moving into gold and other assets, diversifying away from the dollar
Escalating Clashes in Serbia as Anti-Government Protests Spread Nationwide
The Drought in Britain and the Strange Request from the Government to Delete Old Emails
Category 5 Hurricane in the Caribbean: 'Catastrophic Storm' with Winds of 255 km/h
"No, Thanks": The Mathematical Genius Who Turned Down 1.5 Billion Dollars from Zuckerberg
The surprising hero, the ugly incident, and the criticism despite victory: "Liverpool’s defense exposed in full"
Digital Humans Move Beyond Sci-Fi: From Virtual DJs to AI Customer Agents
YouTube will start using AI to guess your age. If it’s wrong, you’ll have to prove it
Jellyfish Swarm Triggers Shutdown at Gravelines Nuclear Power Station in Northern France
OpenAI’s ‘PhD-Level’ ChatGPT 5 Stumbles, Struggles to Even Label a Map
Zelenskyy to Visit Washington after Trump–Putin Summit Yields No Agreement
High-Stakes Trump-Putin Summit on Ukraine Underway in Alaska
The World Economic Forum has cleared Klaus Schwab of “material wrongdoing” after a law firm conducted a review into potential misconduct of the institution’s founder
The Mystery Captivating the Internet: Where Has the Social Media Star Gone?
Man Who Threw Sandwich at Federal Agents in Washington Charged with Assault – Identified as Justice Department Employee
A Computer That Listens, Sees, and Acts: What to Expect from Windows 12
Iranian Protection Offers Chinese Vehicle Shipments a Cost Advantage over Japanese and Korean Makers
UK has added India to a list of countries whose nationals, convicted of crimes, will face immediate deportation without the option to appeal from within the UK
Southwest Airlines Apologizes After 'Accidentally Forgetting' Two Blind Passengers at New Orleans Airport and Faces Criticism Over Poor Service for Passengers with Disabilities
Russian Forces Advance on Donetsk Front, Cutting Key Supply Routes Near Pokrovsk
It’s Not the Algorithm: New Study Claims Social Networks Are Fundamentally Broken
Sixty-Year-Old Claims: “My Biological Age Is Twenty-One.” Want the Same? Remember the Name Spermidine
Saudi Arabia accelerates renewables to curb domestic oil use
U.S. Investigation Reports No Russian Interference in Romanian Election First Round
Oasis Reunion Tour Linked to Temporary Rise in UK Inflation
Musk Alleges Apple Favors OpenAI in App Store Rankings
Denmark Revives EU ‘Chat Control’ Proposal for Encrypted Message Scanning
US Teen Pilot Reaches Deal to Leave Chile After Unauthorized Antarctic Landing
Trump considers lawsuit against Powell over Fed renovation costs
Trump Criticizes Goldman Sachs Over Tariff Cost Forecasts
Perplexity makes unsolicited $34.5 billion all-cash offer for Google’s Chrome browser
×