Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Compliance

German Court Orders Facebook to Rein in Data Collection

A top German court on Tuesday ordered Facebook to stop merging data collected through its Whatsapp and Instagram subsidiaries or other websites unless users explicitly agree, in a legal victory for competition authorities.

A top German court on Tuesday ordered Facebook to stop merging data collected through its Whatsapp and Instagram subsidiaries or other websites unless users explicitly agree, in a legal victory for competition authorities.

Germany’s Federal Cartel Office (FCO) had told Facebook to rein in the data collecting in a landmark decision in 2019, but the social media giant appealed the order.

In a fast-track proceeding on Tuesday, Germany’s Federal Court of Justice (BGH) sided with the FCO watchdog in finding that Facebook was abusing its dominant position to force users to consent to all their data being collected.

“Facebook does not allow for any choice,” presiding judge Peter Meier-Beck said in the Karlsruhe courtroom.

He said the Silicon Valley company must comply with the order while its appeal is pending in a lower court.

It is a major setback for the social media giant, which has long been under scrutiny in privacy-conscious Germany.

Facebook insisted however there would be “no immediate changes” for users in Germany and stressed that the main appeals proceedings were still ongoing.

“We will continue to defend our position that there is no anti-trust abuse,” a spokesman said.

Advertisement. Scroll to continue reading.

The FCO criticised Facebook in February 2019 for making the “unrestricted” data harvesting part of the website’s terms of use. That meant people had to tick the box or opt out of being on Facebook altogether.

The personal data picked up through Facebook’s own platform, Whatsapp, Instagram and third-party websites serve to build up a user’s profile for the purposes of targeted advertising, a key income source for the group.

The Federal Cartel Office ordered the tech giant to stop combining information from Facebook and non-Facebook sources unless users gave “voluntary consent”.

It also said Facebook was not allowed to exclude people from its services if they chose to refuse permission.

Facebook said at the time it disagreed with the decision, arguing the German anti-trust body was setting rules that applied “to only one company” and that it underestimated the competition it faced from rivals.

– ‘Abuse of power’ –

The FCO however found that Facebook was by far the biggest social network in Germany, with over 23 million daily active users representing 95 percent of the market.

Rivals like Snapchat, YouTube or Twitter “only offer parts of the services of a social network” and are not directly comparable, the authority said.

Facebook lodged an appeal against the FCO ruling with the higher regional court in Duesseldorf that is ongoing.

But Tuesday’s fast-tracked decision at the BGH was aimed at settling a row about whether Facebook can keep combining data in the meantime.

FCO chief Andreas Mundt welcomed the preliminary outcome.

“When data is collected and used illegally, an anti-trust intervention must be possible to prevent an abuse of market power,” he said in a statement.

Professor Rupprecht Podszun, an expert in competition law at Heinrich Heine University Duesseldorf, called Tuesday’s decision a “big win” for the FCO.

The German battle against Facebook is seen as a legal first and is being closely watched at home and abroad as concern mounts about the power held by tech behemoths.

The Californian firm led by Mark Zuckerberg has repeatedly come under fire in recent years over data protection and privacy.

In one major scandal in 2018, it emerged that data belonging to tens of millions of Facebook users had been harvested by consulting firm Cambridge Analytica, and used in part to support Donald Trump’s 2016 election campaign.

Related: Canada Fines Facebook Over Misleading Privacy Claims

Related: Aussie Watchdog Sues Facebook Over Cambridge Analytica Breach

Related: Facebook Sues 12 Fraudulent Domain Names

Related: Facebook Sues Analytics Firm for Data Misuse

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Data Protection

The cryptopocalypse is the point at which quantum computing becomes powerful enough to use Shor’s algorithm to crack PKI encryption.

CISO Strategy

SecurityWeek spoke with more than 300 cybersecurity experts to see what is bubbling beneath the surface, and examine how those evolving threats will present...

CISO Conversations

Joanna Burkey, CISO at HP, and Kevin Cross, CISO at Dell, discuss how the role of a CISO is different for a multinational corporation...

Artificial Intelligence

The CRYSTALS-Kyber public-key encryption and key encapsulation mechanism recommended by NIST for post-quantum cryptography has been broken using AI combined with side channel attacks.

CISO Conversations

In this issue of CISO Conversations we talk to two CISOs about solving the CISO/CIO conflict by combining the roles under one person.

CISO Strategy

Security professionals understand the need for resilience in their company’s security posture, but often fail to build their own psychological resilience to stress.