Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Application Security

1/14/2019
12:15 PM
50%
50%

Facebook Faces Action From German Watchdog

German antitrust regulators prepare to require changes from Facebook regarding privacy and personal information.

According to an article in German newspaper Bild am Sonntag, German regulators will soon present Facebook with a list of changes it must make in the way it collects and shares users' personal data if it wants to stay on the good side of privacy laws.

The Federal Cartel Office has been looking into Facebook since at least 2015, concentrating much of its investigation into the way Facebook collects and shares data with third-party apps.

According to Reuters, it's expected that the agency will set a deadline for compliance rather than require immediate action. A Facebook spokesman said the company disputes the agency's findings.

Read more here.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio
 

Recommended Reading:

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
NathanDavidson
50%
50%
NathanDavidson,
User Rank: Moderator
2/1/2019 | 10:28:39 PM
Users to be on guard
Data breaches and Facebook have an inevitable connection. This is an undesired relationship that has risen of late which obviously worries users and associated investing companies. However, users should not be surprised as a rising number of users themselves are the ones being too complacent about their own online activities.
DavidHamilton
50%
50%
DavidHamilton,
User Rank: Apprentice
1/25/2019 | 10:24:49 PM
About time!
I'm surprised that something like this wasn't requested from Facebook already sometime last year after the big inquisition of Mark Zuckerberg in court. In any case, it's a good move forward and I think that people will appreciate knowing that such personal data and information and not to mention media will be safe in storage online somewhere! 
RyanSepe
50%
50%
RyanSepe,
User Rank: Ninja
1/14/2019 | 2:04:08 PM
Deadline for Compliance
My assumption is that FaceBook will yield to these expectations, the question is will they make these advocations for privacy global within their platform or solely for the German facing hosts.
NSA Appoints Rob Joyce as Cyber Director
Dark Reading Staff 1/15/2021
Vulnerability Management Has a Data Problem
Tal Morgenstern, Co-Founder & Chief Product Officer, Vulcan Cyber,  1/14/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win an Amazon Gift Card! Click Here
Latest Comment: This is not what I meant by "I would like to share some desk space"
Current Issue
2020: The Year in Security
Download this Tech Digest for a look at the biggest security stories that - so far - have shaped a very strange and stressful year.
Flash Poll
Assessing Cybersecurity Risk in Today's Enterprises
Assessing Cybersecurity Risk in Today's Enterprises
COVID-19 has created a new IT paradigm in the enterprise -- and a new level of cybersecurity risk. This report offers a look at how enterprises are assessing and managing cyber-risk under the new normal.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-28452
PUBLISHED: 2021-01-20
This affects the package com.softwaremill.akka-http-session:core_2.12 from 0 and before 0.6.1; all versions of package com.softwaremill.akka-http-session:core_2.11; the package com.softwaremill.akka-http-session:core_2.13 from 0 and before 0.6.1. CSRF protection can be bypassed by forging a request ...
CVE-2020-28483
PUBLISHED: 2021-01-20
This affects all versions of package github.com/gin-gonic/gin. When gin is exposed directly to the internet, a client's IP can be spoofed by setting the X-Forwarded-For header.
CVE-2021-21269
PUBLISHED: 2021-01-20
Keymaker is a Mastodon Community Finder based Matrix Community serverlist page Server. In Keymaker before version 0.2.0, the assets endpoint did not check for the extension. The rust `join` method without checking user input might have made it abe to do a Path Traversal attack causing to read more f...
CVE-2020-25686
PUBLISHED: 2021-01-20
A flaw was found in dnsmasq before version 2.83. When receiving a query, dnsmasq does not check for an existing pending request for the same name and forwards a new request. By default, a maximum of 150 pending queries can be sent to upstream servers, so there can be at most 150 queries for the same...
CVE-2020-25687
PUBLISHED: 2021-01-20
A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validates the received DNS entries. This flaw allows a remote attacker, who can create valid DNS replies, to cause an overflow in a heap-allocated memory. This...