Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Compliance

France Closes ‘Cookies’ Case Against Facebook

French privacy regulators on Thursday closed a case against Facebook after determining the US tech giant had changed the way it collected user data to comply with the law.

French privacy regulators on Thursday closed a case against Facebook after determining the US tech giant had changed the way it collected user data to comply with the law.

Facebook was slapped with a 60-million-euro ($61-million) fine last December when the French regulator CNIL ruled it was failing to allow users to easily opt out of cookies, tiny data files that track online browsing.

CNIL told the firm’s parent company Meta to fix the issue within three months or face further punishment.

On Thursday, the regulator announced that “the company had complied with the injunction issued” by installing a button labelled “only allow essential cookies”.

Cookies are installed on a user’s computer when they visit a website, allowing web browsers to save information about their session.

They are hugely valuable for tech platforms as ways to personalise advertising — the primary source of revenue for the likes of Facebook and Google.

But privacy advocates have long pushed back.

Since the European Union passed a 2018 law on personal data, internet companies have faced stricter rules that oblige them to seek consent from users before installing cookies.

Advertisement. Scroll to continue reading.

Both Facebook and Google continue to face a slew of cases across Europe.

The French regulator stressed in its statement on Thursday that the end of this procedure did not rule out further scrutiny of Facebook, particularly of the requirement to give users “clear and complete” information on data collection.

“The CNIL therefore reserves the right to check the compliance of the facebook.com website with these other requirements in the future and, if necessary, to resort to enforcement actions,” it said.

In response, Meta said Facebook’s cookie consent controls “provide people with meaningful options over their data, and the ability to revisit and manage their decisions at any time”.

“We continue to develop and improve these controls, including in response to regulator feedback,” a spokesperson said.

The French regulator hit Google with a 150-million-euro fine at the same time as Facebook was sanctioned.

Google said in April it had “completely overhauled” its approach as a result, though CNIL told AFP on Thursday that the case against Google was still open.

*updated with statement from Meta

Related: Facebook Agrees to Pay Fine in Cambridge Analytica Scandal

Related: France Fines Google, Amazon 135 Mn Euros

Related: Irish Regulator Fines Facebook for Privacy Law Violations

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Kim Larsen is new Chief Information Security Officer at Keepit

Professional services company Slalom has appointed Christopher Burger as its first CISO.

Allied Universal announced that Deanna Steele has joined the company as CIO for North America.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Data Protection

The cryptopocalypse is the point at which quantum computing becomes powerful enough to use Shor’s algorithm to crack PKI encryption.

CISO Strategy

SecurityWeek spoke with more than 300 cybersecurity experts to see what is bubbling beneath the surface, and examine how those evolving threats will present...

CISO Conversations

Joanna Burkey, CISO at HP, and Kevin Cross, CISO at Dell, discuss how the role of a CISO is different for a multinational corporation...

Artificial Intelligence

The CRYSTALS-Kyber public-key encryption and key encapsulation mechanism recommended by NIST for post-quantum cryptography has been broken using AI combined with side channel attacks.

CISO Conversations

In this issue of CISO Conversations we talk to two CISOs about solving the CISO/CIO conflict by combining the roles under one person.

CISO Strategy

Security professionals understand the need for resilience in their company’s security posture, but often fail to build their own psychological resilience to stress.