Apple, Meta Gave User Data to Hackers Who Used Forged Legal Requests: Report

Meta said the firm reviews every data request for "legal sufficiency" and uses "advanced systems and processes" to validate law enforcement requests.

Advertisement
By Agence France-Presse | Updated: 31 March 2022 15:03 IST
Highlights
  • Imposters got details like physical addresses or phone numbers
  • Apple and Meta did not officially confirm the incidents
  • Imposters got response to falsified "emergency data requests"

Emergency data request largely bypasses any official review: Cyber expert

Photo Credit: Bloomberg

Facebook owner Meta gave user information to hackers who pretended to be law enforcement officials last year, a company source said on Wednesday, highlighting the risks of a measure used in urgent cases.

Imposters were able to get details like physical addresses or phone numbers in response to falsified "emergency data requests," which can slip past privacy barriers, said the source who requested anonymity due to the sensitivity of the matter.

Advertisement

Criminal hackers have been compromising email accounts or websites tied to police or government and claiming they can't wait for a judge's order for information because it's an "urgent matter of life and death," cyber expert Brian Krebs wrote Tuesday.

Bloomberg news agency, which originally reported Meta being targeted, also reported that Apple had provided customer data in response to forged data requests.

Advertisement

Apple and Meta did not officially confirm the incidents, but provided statements citing their policies in handling information demands.

When US law enforcement officials want data on a social media account's owner or an associated cell phone number, they must submit an official court-ordered warrant or subpoena, Krebs wrote.

Advertisement

But in urgent cases authorities can make an "emergency data request," which "largely bypasses any official review and does not require the requestor to supply any court-approved documents," he added.

Meta, in a statement, said the firm reviews every data request for "legal sufficiency" and uses "advanced systems and processes" to validate law enforcement requests and detect abuse.

Advertisement

"We block known compromised accounts from making requests and work with law enforcement to respond to incidents involving suspected fraudulent requests, as we have done in this case," the statement added.

Apple noted its guidelines, which say that in the case of an emergency application "a supervisor for the government or law enforcement agent who submitted the... request may be contacted and asked to confirm to Apple that the emergency request was legitimate."

Krebs noted that the lack of a unitary, national system for these type of requests is one of the key problems associated with them, as companies end up deciding how to deal with them.

"To make matters more complicated, there are tens of thousands of police jurisdictions around the world — including roughly 18,000 in the US alone — and all it takes for hackers to succeed is illicit access to a single police email account," he wrote.


Will the 2022 iPhone SE sink or swim? We discuss this on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Meta, Facebook, Apple
Advertisement

Related Stories

Popular Mobile Brands
  1. Nothing Phone 4a Pro vs OnePlus 15R vs Vivo V70 5G: Price, Features Compared
  2. Clair Obscur: Expedition 33 Leads BAFTA Games Awards 2026 Nominations
  3. Oppo Find X9 Ultra Camera Details Leaked Ahead of China and Global Launch
  1. Hubble and Euclid Reveal Stunning New View of Cat’s Eye Nebula
  2. Silent Hill 2 Remake Has Surpassed 5 Million Copies Sold, Konami Announces
  3. Samsung Galaxy Z Flip 8 Battery Details Leaked; Might Have Same Capacity as the Galaxy Z Flip 7
  4. HSBC, Standard Chartered Said to Be First Recipients of Stablecoin Licences in Hong Kong
  5. Apple's Foldable Tipped to Launch as 'iPhone Ultra'; Price and Memory Configurations Leaked
  6. MacBook Neo Teardown Suggests It May Be Apple’s Most Repairable Laptop in Several Years
  7. Vashikaranam OTT Release Date: When and Where to Watch This Supernatural Drama Online?
  8. Musk’s X to Alter Verification System in Europe, Commission Says
  9. Token2049 Crypto Conference Delays Dubai Summit to 2027 Over Security Concerns
  10. OpenAI Is Reportedly Developing a Code Hosting Platform to Take on Microsoft’s GitHub
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.