Saturday, March 8, 2025
HomeCyber Security NewsHere is How to Find that Your Facebook Account Affected With Recent...

Here is How to Find that Your Facebook Account Affected With Recent Massive Facebook Hack

Published on

SIEM as a Service

Follow Us on Google News

Facebook announced a massive security breach on September 28, 2018, initially it was said more than 50 million accounts access tokens was stolen by exploiting the software vulnerability in “View As” feature between July 2017 and September 2018.

Now after further investigation, Facebook now announced that attackers have stolen 29 million Facebook accounts.

The bug was discovered on September 25, 2018, and the attackers have exploited a vulnerability caused by the complex interaction of three bugs in our system to obtain access tokens.

15 million people – name and contact details (phone number, email, or both, depending on what people had on their profiles).

14 million people – the same two sets of information, as well as other details people had on their profiles. This included username, gender, locale/language, relationship status, religion, hometown, self-reported current city, birth date, device types used to access Facebook, education, work, the last 10 places they checked into or were tagged in, website, people or Pages they follow, and the 15 most recent searches.

Facebook Account Affected

Now you can check that your Facebook account affected by this security issue. Facebook set up a page to check that your account was compromised by the security breach, you can visit the page to check the status.

“Based on what we’ve learned so far, your Facebook account has not been impacted by this security incident. If we find more Facebook accounts were impacted, we will reset their access tokens and notify those accounts.”

If you got this message then nothing to worry, if you account affected then Facebook tell you what kind of details the hackers stole.

Changing the password is not a fix, because the passwords are not compromised. Now as the hackers having your personal data you should carefully handle the spam calls, Email, and messages. The Risk of spear-phishing attacks may on the rise.

Last week Google announced Google+ shut down following the security breach that exposed 500,000 Google+ accounts. The bug allows third-party developers to access user’s name, email address, occupation, gender, and age.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

10 Best Penetration Testing Companies in 2025

Penetration testing companies play a vital role in strengthening the cybersecurity defenses of organizations...

Lumma Stealer Using Fake Google Meet & Windows Update Sites to Launch “Click Fix” Style Attack

Cybersecurity researchers continue to track sophisticated "Click Fix" style distribution campaigns that deliver the...

Fake BianLian Ransom Demands Sent via Physical Letters to U.S. Firms

In a novel and concerning development, multiple U.S. organizations have reported receiving suspicious physical...

Strela Stealer Malware Attack Microsoft Outlook Users for Credential Theft

The cybersecurity landscape has recently been impacted by the emergence of the Strela Stealer...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

10 Best Penetration Testing Companies in 2025

Penetration testing companies play a vital role in strengthening the cybersecurity defenses of organizations...

Lumma Stealer Using Fake Google Meet & Windows Update Sites to Launch “Click Fix” Style Attack

Cybersecurity researchers continue to track sophisticated "Click Fix" style distribution campaigns that deliver the...

Fake BianLian Ransom Demands Sent via Physical Letters to U.S. Firms

In a novel and concerning development, multiple U.S. organizations have reported receiving suspicious physical...