Over a billion Facebook users have data sold on the dark web

Data leak
(Image credit: Shutterstock/dalebor)

Personally identifiable information (PII) of over 1,5 billion Facebook users is reportedly being sold on a popular underground forum, according to cybersecurity and privacy watchdogs.

The data, which has reportedly been collected through web scraping, includes names, emails, phone numbers, location, gender, and user IDs. 

Calling it one of the biggest data dumps from the popular social network, Miklos Zoltan, the founder of PrivacyAffairs who shared the news of the underground sale, claims the PII “appears to be authentic.”

TechRadar needs you!

We're looking at how our readers use VPNs with streaming sites like Netflix so we can improve our content and offer better advice. This survey won't take more than 60 seconds of your time, and we'd hugely appreciate if you'd share your experiences with us.

>> Click here to start the survey in a new window <<

It appears the seller is willing to sell the data in a piecemeal fashion, since one prospective buyer claimed the seller is asking for $5000 for the data of a million accounts, making the complete records worth $5 million.

Zoltan says that the seller posted several samples of the data, and they not only appeared to be authentic, but didn’t match any of the previous Facebook database leaks as well.

“Cross-checking them with known Facebook database leaks resulted in no matches, implying that at first glance, the sample data provided is unique and not a duplicate or re-sell of a previously known data breach or scraping,” writes Zoltan.

Thanks to the proximity of the news of the data leak to the global Facebook outage, many people have drawn a link between the two events. 

Zoltan however has shot down the claims on two fronts. First, PrivacyAffairs published news of the sale 12 before the Facebook outage was reported. 

Secondly, the data appears to have been scrapped from publicly available data that the users had shared themselves, which rules out the possibility that the information was obtained by compromising Facebook’s servers.

More pertinent however is Zoltan’s update in which he shares that some of the users on the underground forum claim to have been scammed by the seller who didn’t provide them any data after being paid, casting a shadow over the authenticity and magnitude of the data scrape.

Mayank Sharma

With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.

Read more
Cartoon Phishing
One of the largest data leaks ever sees info on 1.5 billion people leaked online
A man looking at a tablet with a brown Best Buy package on the desk in front of him
Huge Christmas data breach - 14 million shipping records leaked, putting shoppers at risk
Outdoor photograph of a pair of hands holding a smartphone with navigator location points in the background
Millions of phone location records feared leaked as one of the biggest data leaks ever may be a whole lot worse
Someone holding a passport with two boarding passes inside it
Top digital loan firm security slip-up puts data of 36 million users at risk
Data leak
Top collectibles site leaks personal data of nearly a million users
Dark Web cybercriminals are buying up ID to bypass KYC methods
Latest in Security
ransomware avast
Ransomware attacks are costing Government offices a month of downtime on average
Lock on Laptop Screen
Data breach at Pennsylvania education union potentially exposes 500,000 victims
Data leak
Top collectibles site leaks personal data of nearly a million users
Spyware
Stalkerware data breach potentially hits over 2 million users, including thousands of Apple devices
An American flag flying outside the US Capitol building against a blue sky
Five Eyes "cannot replace US intel in Ukraine", claims former US Cyber Command Chief
Pirate skull cyber attack digital technology flag cyber on on computer CPU in background. Darknet and cybercrime banner cyberattack and espionage concept illustration.
Criminals are using a virtual hard disk image file to host and distribute dangerous malware
Latest in News
Apple iPhone 16 Pro Max REVIEW
The latest batch of leaked iPhone 17 dummy units appear to show where glass meets metal on the new designs
Hornet swings their weapon in mid air
Hollow Knight: Silksong could potentially launch this year and I reckon it could be a great game for an Xbox handheld
ransomware avast
Ransomware attacks are costing Government offices a month of downtime on average
Cassian looking at someone off-camera from a TIE fighter cockpit in Andor season 2
Star Wars: Andor creator is taking a stance against AI by canceling plans to release its scripts, and I completely get why
Nintendo x Seattle Mariners partnership
The Nintendo Switch 2 logo will be featured on the Seattle Mariners' baseball jerseys this season
Apple iPhone 16 Pro Max Review
Siri's chances to beat ChatGPT just got a whole lot better