Skip to main content
  1. Home
  2. Social Media
  3. News

Facebook buys black market password dumps to protect user accounts

Add as a preferred source on Google

Not many companies these days have been as good as Facebook at keeping their name out of the headlines for security breaches, and this in large part is due to the work of its security team — headed by Alex Stamos.

Facebook has added many security features over the years, things like two-factor authentication, unrecognized browser login notices, and more, but one of the biggest security flaws for Stamos and his team concerns passwords. Many people are lazy with their passwords, using the same one everywhere or picking easy-to-guess combinations like 1234567, and while Facebook’s team has developed the above security measures to help make even accounts with weak passwords safe, the fact is that many Facebook users don’t make use of them.

Recommended Videos

During Web Summit in Lisbon, Portugal, Stamos noted this weak point in security and talked about the responsibility of the social network to protect all accounts on Facebook, even the ones who don’t make use of all the security features. “The reuse of passwords is the number one cause of harm on the internet,” Stamos said at the conference.

But one tactic the company is taking to ensure the security of these password-only accounts is to go to the black market and buy stolen passwords from hackers, and then cross-referencing those against encrypted passwords in the Facebook system, looking for matches.

A security system is only as strong as its weakest link, and in the case of Facebook and the vast majority of the web at this point, that weak link is the username/password system that has been in place since the web was invented.

While the company might be criticized for funneling money to the hacking economy, it is at the same time impressive to see a corporation such as Facebook thinking outside of the box when it comes to protecting our social accounts.

Anthony Thurston
Anthony is an internationally published photographer based in the beautiful Pacific Northwest. Specializing primarily in…
New X phishing scam uses fake login alerts to steal your account
Scammers have copied X's own security emails almost pixel for pixel, and people are falling for it.
X app store listing on iPhone

You open your inbox and see an alert claiming someone just logged into your X account from an unfamiliar device. Your first instinct is to click through and lock things down immediately. That instinct is exactly what a new phishing scam is counting on.

As reported by The Guardian, a wave of fake X security emails is currently doing the rounds. They claim a new device has logged into your account and urge you to click a link to reset your password or review app access. 

Read more
After YouTube, TikTok is testing its own AI likeness detection tool
TikTok's new tool lets creators flag AI deepfakes of themselves directly.
Home page of TikTok on Web.

AI deepfakes have become a headache for creators, and TikTok is finally stepping up to fight back. Social media consultant Matt Navarra spotted the platform quietly testing a new opt-in tool that hunts down AI-generated content mimicking a creator's face, giving them the power to flag it directly.

https://twitter.com/MattNavarra/status/2078129989128450064

Read more
You can now generate songs in your iMessage chats
iMessage users can now turn chats into short AI-generated songs
Text, Business Card, Paper

Suno has added an iMessage extension to its iOS app, letting users generate 30-second songs from voice recordings or typed prompts inside a Messages conversation.

The feature is available in the latest version of the Suno app and requires both people in the chat to have it installed. Users can access Suno from the plus menu in Messages, create a track, and share it without opening the standalone app.

Read more