Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Privacy

US Probe Finds Cambridge Analytica Misled Facebook Users on Data

US regulators concluded Friday that British consultancy Cambridge Analytica — at the center of a massive scandal on hijacking of Facebook data — deceived users of the social network about how it collected and handled their personal information.

US regulators concluded Friday that British consultancy Cambridge Analytica — at the center of a massive scandal on hijacking of Facebook data — deceived users of the social network about how it collected and handled their personal information.

The Federal Trade Commission said its investigation launched in March 2018 concluded that the now-defunct political consulting firm “engaged in deceptive practices to harvest personal information from tens of millions of Facebook users for voter profiling and targeting.”

The FTC said the British firm, which worked on Donald Trump’s 2016 presidential campaign, made “false and misleading” claims when it offered Facebook users a “personality quiz” — stating it would not download names or any personally identifiable information.

The case created a firestorm over data protection when it was disclosed that Cambridge Analytica was able to create psychological profiles using data from millions of Facebook users through the harvesting of the data.

The personality prediction app was downloaded by 270,000 people but also scooped up data from their friends, and fed into an effort by the firm to predict the behavior of individual US voters.

It was not immediately clear what impact the FTC findings would have.

The FTC issued an order which prohibits Cambridge Analytica — which closed in 2018 —  from making false misrepresentations on how it handles personal data, and requires compliance with a US-EU privacy agreement.

The FTC reached a settlement earlier this year with Cambridge Analytica’s former CEO Alexander Nix and app developer Aleksandr Kogan that requires them to delete or destroy any personal information they collected.

Advertisement. Scroll to continue reading.

The company claimed in 2018 it had been ruined by “numerous unfounded accusations” that made it impossible to keep the business afloat.

Facebook’s own investigation found that some data from 87 million users in the US and elsewhere had been compromised by the firm, and claimed the practices violated the social network’s terms of service.

Facebook, which did not immediately respond to a query on the FTC decision, paid a record $5 billion penalty early this year in a settlement with the regulator over mishandling users’ private data.

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Cody Barrow has been appointed as CEO of threat intelligence company EclecticIQ.

Shay Mowlem has been named CMO of runtime and application security company Contrast Security.

Attack detection firm Vectra AI has appointed Jeff Reed to the newly created role of Chief Product Officer.

More People On The Move

Expert Insights

Related Content

Artificial Intelligence

Two of humanity’s greatest drivers, greed and curiosity, will push AI development forward. Our only hope is that we can control it.

Cybersecurity Funding

Los Gatos, Calif-based data protection and privacy firm Titaniam has raised $6 million seed funding from Refinery Ventures, with participation from Fusion Fund, Shasta...

Privacy

Many in the United States see TikTok, the highly popular video-sharing app owned by Beijing-based ByteDance, as a threat to national security.The following is...

Privacy

Employees of Chinese tech giant ByteDance improperly accessed data from social media platform TikTok to track journalists in a bid to identify the source...

Application Security

Open banking can be described as a perfect storm for cybersecurity. At one end, small startups with financial acumen but little or no security...

Government

The proposed UK Online Safety Bill is the enactment of two long held government desires: the removal of harmful internet content, and visibility into...

Mobile & Wireless

As smartphone manufacturers are improving the ear speakers in their devices, it can become easier for malicious actors to leverage a particular side-channel for...

Cloud Security

AWS has announced that server-side encryption (SSE-S3) is now enabled by default for all Simple Storage Service (S3) buckets.