Facebook, Twitter Data of Users Exposed to Some Android App Developers

Facebook and Twitter iOS app users have not been impacted.

Advertisement
By Indo-Asian News Service | Updated: 26 November 2019 11:51 IST

In yet another data breach, Facebook and Twitter have admitted that data of hundreds of users was improperly accessed by some third-party apps on Google Play Store as they logged into those apps. Security researchers discovered that the One Audience and Mobiburn software development kits (SDK) provided access to users' data, including email addresses, usernames, and recent tweets, on both the platforms. Twitter and Facebook said they will notify those whose information was likely shared through apps.

"We recently received a report about a malicious mobile software development kit (SDK) maintained by One Audience. We are informing you about this today because we believe we have a responsibility to inform you of incidents that may impact the safety of your personal data or Twitter account," the micro-blogging platform said in a statement late Monday.

The companies were notified of the vulnerability by third-party security researchers.

Advertisement

A Facebook spokesperson told The Verge: "After investigating, we removed the apps from our platform for violating our platform policies and issued cease and desist letters against One Audience and Mobiburn".

Advertisement

We plan to notify people whose information we believe was likely shared after they had granted these apps permission to access their profile information like name, email and gender".

At the moment, it looks iOS users were not impacted.

According to Twitter, this issue is not due to a vulnerability in Twitter's software, but rather the lack of isolation between SDKs within an application.

Advertisement

"We have evidence that this SDK was used to access people's personal data for at least some Twitter account holders using Android, however, we have no evidence that the iOS version of this malicious SDK targeted people who use Twitter for iOS," said Twitter.

Twitter has informed Google and Apple about the malicious SDK so they can take further action if needed.

Advertisement

"We will be directly notifying people who use Twitter for Android who may have been impacted by this issue," it added.

Earlier this month, Facebook revealed that at least 100 app developers may have accessed Facebook users' data for months, confirming that at least 11 partners "accessed group members" information in the last 60 days".

The social networking giant found that the apps -- primarily social media management and video streaming apps -- retained access to group member information, like names and profile pictures in connection with group activity, from the Groups API (application programming interface).

According to the company, the apps designed to make it easier for group admins to manage their groups more effectively and help members share videos to their groups.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Facebook, Twitter
Advertisement

Related Stories

Popular Mobile Brands
  1. Realme P4 Power 5G With 10,001mAh Battery Arrives in India: See Price
  2. Redmi Turbo 5 Max Launched With 9,000mAh Battery, Redmi Turbo 5 Tags Along
  3. NASA's TESS Captures First Images of Rare Interstellar Comet 3I/ATLAS
  4. Adobe Express Premium Is Now Free for One Year for All Airtel Users
  5. How to Change Your Mobile Number and Address Using New Aadhaar App
  6. CERN Experiments Confirm Early Universe Behaved Like a Near-Perfect Fluid
  7. Redmi Note 15 Pro Series 5G Launched in India With These Features
  8. Redmi Buds 8 Pro Launched With ANC, Hi-Res Audio at This Price
  9. Realme P4 Power 5G First Impressions
  1. CERN Experiments Confirm Early Universe Behaved Like a Near-Perfect Fluid
  2. NASA’s TESS Captures First Images of Rare Interstellar Comet 3I/ATLAS
  3. Daredevil: Born Again Season 2 OTT Release Date Confirmed: When and Where to Watch it Online?
  4. The Wrecking Crew Starring Jason Momoa and Dave Bautista Now Streaming: What You Need to Know
  5. Redmi Buds 8 Pro Launched With ANC, Hi-Res Audio and Up to 36 Hours of Total Battery Life
  6. Samsung Galaxy Tab S12+ Surfaces on IMEI Database, Could Launch Soon
  7. Champion OTT Release: Where To Watch Roshan Meka’s Telugu Sports Drama Online?
  8. Nothing Won't Launch a Flagship Model in 2026; Company to Focus on Nothing Phone 4a and Audio Products, Carl Pei Says
  9. Redmi Turbo 5 Max Launched With 9,000mAh Battery, Redmi Turbo 5 Tags Along: Price, Specifications
  10. Ponies Starring Emilia Clarke and Haley Lu Richardson Now Available for Streaming
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.