Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Application Security

1/14/2019
12:15 PM
50%
50%

Facebook Faces Action From German Watchdog

German antitrust regulators prepare to require changes from Facebook regarding privacy and personal information.

According to an article in German newspaper Bild am Sonntag, German regulators will soon present Facebook with a list of changes it must make in the way it collects and shares users' personal data if it wants to stay on the good side of privacy laws.

The Federal Cartel Office has been looking into Facebook since at least 2015, concentrating much of its investigation into the way Facebook collects and shares data with third-party apps.

According to Reuters, it's expected that the agency will set a deadline for compliance rather than require immediate action. A Facebook spokesman said the company disputes the agency's findings.

Read more here.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
NathanDavidson
50%
50%
NathanDavidson,
User Rank: Moderator
2/1/2019 | 10:28:39 PM
Users to be on guard
Data breaches and Facebook have an inevitable connection. This is an undesired relationship that has risen of late which obviously worries users and associated investing companies. However, users should not be surprised as a rising number of users themselves are the ones being too complacent about their own online activities.
DavidHamilton
50%
50%
DavidHamilton,
User Rank: Apprentice
1/25/2019 | 10:24:49 PM
About time!
I'm surprised that something like this wasn't requested from Facebook already sometime last year after the big inquisition of Mark Zuckerberg in court. In any case, it's a good move forward and I think that people will appreciate knowing that such personal data and information and not to mention media will be safe in storage online somewhere! 
RyanSepe
50%
50%
RyanSepe,
User Rank: Ninja
1/14/2019 | 2:04:08 PM
Deadline for Compliance
My assumption is that FaceBook will yield to these expectations, the question is will they make these advocations for privacy global within their platform or solely for the German facing hosts.
Stop Defending Everything
Kevin Kurzawa, Senior Information Security Auditor,  2/12/2020
Small Business Security: 5 Tips on How and Where to Start
Mike Puglia, Chief Strategy Officer at Kaseya,  2/13/2020
Architectural Analysis IDs 78 Specific Risks in Machine-Learning Systems
Jai Vijayan, Contributing Writer,  2/13/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
6 Emerging Cyber Threats That Enterprises Face in 2020
This Tech Digest gives an in-depth look at six emerging cyber threats that enterprises could face in 2020. Download your copy today!
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-4230
PUBLISHED: 2020-02-19
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1 and 11.5 is vulnerable to an escalation of privilege when an authenticated local attacker with special permissions executes specially crafted Db2 commands. IBM X-Force ID: 175212.
CVE-2019-4429
PUBLISHED: 2020-02-19
IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 162886.
CVE-2019-4457
PUBLISHED: 2020-02-19
IBM Jazz Foundation 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, and 6.0.6.1 could allow an authenticated user to obtain sensitive information that could be used in further attacks against the system. IBM X-Force ID: 163654.
CVE-2019-4640
PUBLISHED: 2020-02-19
IBM Security Secret Server 10.7 processes patches, image backups and other updates without sufficiently verifying the origin and integrity of the code which could result in an attacker executing malicious code. IBM X-Force ID: 170046.
CVE-2020-4135
PUBLISHED: 2020-02-19
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow an unauthenticated user to send specially crafted packets to cause a denial of service from excessive memory usage.