Facebook Collects Your Data Even If You Don’t Use Facebook

Ever since the Cambridge Analytica data breach scandal made headlines, there has been some new news or statement from Facebook. Now with Mark Zuckerberg’s testimony before Congress is going on, there are new revelations every day.

In the first hearing, Zuckerberg told the Congressmen that his own data was also compromised in the Cambridge Analytica Scandal. Now we here lot more interesting revelations.

The most revealing of them all is that Facebook collects user data even if a user doesn’t use Facebook or has ever signed up for the social media network.

When New Mexico’s representative Ben Ray Lujan asked Zuckerberg if Facebook maintains a detailed profile of people who never signed up for Facebook, Zuckerberg had no specific answer.

But from what he said, it was clear that Facebook does collect data of non-FB users. Zuckerberg replied that some data related to non-Facebook users is collected for security reasons and to prevent mass scrapping of user data on the platform.

While this was known in tech circles, Zuckerberg’s testimony puts all theories at rest. When Lujan asked Zuckerberg how many data points they have on Facebook and non-Facebook users. The CEO replied that he doesn’t know.

When asked that the term “shadow profiles” is used to refer profiles of non-Facebook users, Zuckerberg said he is not familiar with that.

When asked how a non-Facebook user opt-out of the data collection, Zuckerberg replied, “Congressman, anyone can turn off and opt out of any data collection for ads, whether they use our services or not.  But, in order to prevent people from scraping public information… We need to know when someone is trying to repeatedly access our services.”

If you are not a Facebook user Facebook does have a support page titled, “I don’t have a Facebook account and would like to request all personal data stored by Facebook.”

But the support page wants you to become an FB member first. If the user doesn’t want to register with Facebook, they are requested to send an email to: datarequests@support.facebook.com.

ThreatBrief:

You Might Also Read:

Snowden Says Social Media Is Surveillance 'Rebranded':

The Cambridge Analytica Row Shows Politics Are Moving In A Disturbing Direction:

 

« Leading Companies Pledge To Fight Cyber-Attacks
Blockchain And GDPR: A Rock And A Hard Place »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

Perimeter 81 / How to Select the Right ZTNA Solution

Perimeter 81 / How to Select the Right ZTNA Solution

Gartner insights into How to Select the Right ZTNA offering. Download this FREE report for a limited time only.

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall And Why Does It Matter

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall And Why Does It Matter

See how to use next-generation firewalls (NGFWs) and how they boost your security posture.

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

SAMATE

SAMATE

The Software Assurance Metrics And Tool Evaluation project is an inter-agency project between the US Department of Homeland Security and NIST.

International Security Management Association (ISMA)

International Security Management Association (ISMA)

ISMA is an international security association of senior security executives from major business organizations located worldwide.

StratoKey

StratoKey

StratoKey is an intelligent Cloud Access Security Broker (CASB) that secures your cloud and SaaS applications against data breaches, so you can do secure and compliant business in the cloud.

Atomicorp

Atomicorp

Atomicorp, the leader in Secure Linux, is a developer of solutions for the protection and support of cloud, virtual, shared, and dedicated web hosting environments.

DefCamp

DefCamp

DefCamp is the most important annual conference on Hacking & Information Security in Central Eastern Europe.

United Nations Office on Drugs & Crime (UNODC)

United Nations Office on Drugs & Crime (UNODC)

UNODC promotes long-term and sustainable capacity building in the fight against cybercrime through supporting national structures and action.

AimBrain

AimBrain

AimBrain tools detect and prevent fraud, faster and more accurately than ever before.

Quantstamp

Quantstamp

Quantstamp are experts in Smart Contract Security Audits. We provide verification that your decentralized system works as intended.

Atlantic Security Conference (AtlSecCon)

Atlantic Security Conference (AtlSecCon)

Atlantic Security Conference is a non-profit, annual, information security conference located in Halifax, Nova Scotia, Canada.

Quantum Generation

Quantum Generation

Quantum Cyber Security for a new age of communications. We are developing the largest decentralized orbital, and ground quantum mesh network based on blockchain technology.

Nameshield Group

Nameshield Group

Nameshield is one of most experienced domain name registrars, trademark protection specialists and managers of online reputational risk in the world today.

24By7Security

24By7Security

24By7Security are Cybersecurity & Compliance Specialists with extensive hands on experience helping businesses build a defensive IT Infrastructure against all cyber security threats.

CloudSphere

CloudSphere

CloudSphere’s flagship Cloud Governance Platform enables enterprises and cloud service providers to simplify and optimize cloud migration, management, and governance.

LocateRisk

LocateRisk

LocateRisk provides more efficiency, transparency and comparability in IT security with automated, KPI-based IT risk analyses.

Labaton Sucharow

Labaton Sucharow

Standing on the horizon of law and technology, our Cybersecurity and Data Privacy Practice helps to protect consumers who have been harmed by businesses’ failures to safeguard their customers' data.

SecurWeave

SecurWeave

SecurWeave's Configurable Hardware Enforced Safety and Security (CHESS) platform has been designed to meet the security and safety criticality needs of the evolving digital industry.