• bitcoinBitcoin (BTC) $ 66,566.00
  • ethereumEthereum (ETH) $ 3,506.91
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 585.22
  • solanaSolana (SOL) $ 175.55
  • staked-etherLido Staked Ether (STETH) $ 3,504.38
  • usd-coinUSDC (USDC) $ 1.00
  • xrpXRP (XRP) $ 0.595156
  • dogecoinDogecoin (DOGE) $ 0.133759
  • the-open-networkToncoin (TON) $ 6.89
  • cardanoCardano (ADA) $ 0.421378
  • avalanche-2Avalanche (AVAX) $ 30.42
  • tronTRON (TRX) $ 0.132774
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 66,564.00
  • shiba-inuShiba Inu (SHIB) $ 0.000017
  • chainlinkChainlink (LINK) $ 13.87
  • polkadotPolkadot (DOT) $ 6.01
  • bitcoin-cashBitcoin Cash (BCH) $ 379.59
  • nearNEAR Protocol (NEAR) $ 5.90
  • uniswapUniswap (UNI) $ 7.88
  • litecoinLitecoin (LTC) $ 72.15
  • daiDai (DAI) $ 0.999787
  • leo-tokenLEO Token (LEO) $ 5.75
  • wrapped-eethWrapped eETH (WEETH) $ 3,660.34
  • matic-networkPolygon (MATIC) $ 0.548541
  • pepePepe (PEPE) $ 0.000012
  • internet-computerInternet Computer (ICP) $ 9.88
  • kaspaKaspa (KAS) $ 0.174210
  • ethereum-classicEthereum Classic (ETC) $ 24.52
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • aptosAptos (APT) $ 7.24
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 1.33
  • stellarStellar (XLM) $ 0.102674
  • moneroMonero (XMR) $ 160.51
  • mantleMantle (MNT) $ 0.892499
  • arbitrumArbitrum (ARB) $ 0.804993
  • blockstackStacks (STX) $ 1.79
  • filecoinFilecoin (FIL) $ 4.52
  • dogwifcoindogwifhat (WIF) $ 2.55
  • render-tokenRender (RENDER) $ 6.46
  • makerMaker (MKR) $ 2,690.48
  • hedera-hashgraphHedera (HBAR) $ 0.069717
  • crypto-com-chainCronos (CRO) $ 0.092158
  • okbOKB (OKB) $ 40.77
  • cosmosCosmos Hub (ATOM) $ 6.25
  • immutable-xImmutable (IMX) $ 1.58
  • injective-protocolInjective (INJ) $ 24.67
  • vechainVeChain (VET) $ 0.029244
  • bittensorBittensor (TAO) $ 316.28
  • optimismOptimism (OP) $ 1.90
  • suiSui (SUI) $ 0.835552
  • first-digital-usdFirst Digital USD (FDUSD) $ 1.00
  • arweaveArweave (AR) $ 30.82
  • bonkBonk (BONK) $ 0.000028
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,928.21
  • the-graphThe Graph (GRT) $ 0.204411
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,557.56
  • flokiFLOKI (FLOKI) $ 0.000187
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,643.02
  • bitget-tokenBitget Token (BGB) $ 1.19
  • lido-daoLido DAO (LDO) $ 1.84
  • thorchainTHORChain (RUNE) $ 4.70
  • theta-tokenTheta Network (THETA) $ 1.48
  • notcoinNotcoin (NOT) $ 0.014410
  • whitebitWhiteBIT Coin (WBT) $ 10.16
  • ondo-financeOndo (ONDO) $ 1.01
  • aaveAave (AAVE) $ 95.11
  • fantomFantom (FTM) $ 0.502472
  • celestiaCelestia (TIA) $ 7.01
  • coredaoorgCore (CORE) $ 1.54
  • jasmycoinJasmyCoin (JASMY) $ 0.027584
  • based-brettBrett (BRETT) $ 0.132352
  • jupiter-exchange-solanaJupiter (JUP) $ 0.969821
  • pyth-networkPyth Network (PYTH) $ 0.344933
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,494.66
  • sei-networkSei (SEI) $ 0.382891
  • algorandAlgorand (ALGO) $ 0.147076
  • quant-networkQuant (QNT) $ 72.97
  • mantra-daoMANTRA (OM) $ 1.26
  • gatechain-tokenGate (GT) $ 7.61
  • ethereum-name-serviceEthereum Name Service (ENS) $ 29.52
  • elrond-erd-2MultiversX (EGLD) $ 35.28
  • beam-2Beam (BEAM) $ 0.018721
  • msolMarinade Staked SOL (MSOL) $ 211.65
  • flowFlow (FLOW) $ 0.615711
  • kucoin-sharesKuCoin (KCS) $ 9.75
  • axie-infinityAxie Infinity (AXS) $ 6.11
  • galaGALA (GALA) $ 0.024402
  • tokenize-xchangeTokenize Xchange (TKX) $ 11.20
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,574.08
  • bitcoin-svBitcoin SV (BSV) $ 45.16
  • flare-networksFlare (FLR) $ 0.019942
  • eosEOS (EOS) $ 0.582485
  • heliumHelium (HNT) $ 5.21
  • bittorrentBitTorrent (BTT) $ 0.00000088
  • dydx-chaindYdX (DYDX) $ 1.39
  • akash-networkAkash Network (AKT) $ 3.40
  • starknetStarknet (STRK) $ 0.621137
  • neoNEO (NEO) $ 11.44
  • ordinalsORDI (ORDI) $ 37.97
  • popcatPopcat (POPCAT) $ 0.802885
  • roninRonin (RON) $ 2.27
  • tezosTezos (XTZ) $ 0.768461
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,780.68
  • ethenaEthena (ENA) $ 0.440815
  • the-sandboxThe Sandbox (SAND) $ 0.328909
  • mog-coinMog Coin (MOG) $ 0.000002
  • fasttokenFasttoken (FTN) $ 2.32
  • usddUSDD (USDD) $ 0.999771
  • conflux-tokenConflux (CFX) $ 0.165451
  • zksyncZKsync (ZK) $ 0.189158
  • nexoNEXO (NEXO) $ 1.23
  • ecasheCash (XEC) $ 0.000035
  • worldcoin-wldWorldcoin (WLD) $ 2.32
  • frax-etherFrax Ether (FRXETH) $ 3,496.85
  • pendlePendle (PENDLE) $ 4.20
  • fraxFrax (FRAX) $ 0.997471
  • cat-in-a-dogs-worldcat in a dogs world (MEW) $ 0.007118
  • decentralandDecentraland (MANA) $ 0.339781
  • gnosisGnosis (GNO) $ 245.15
  • zebec-protocolZebec Protocol (ZBC) $ 0.012713
  • mina-protocolMina Protocol (MINA) $ 0.559373
  • chilizChiliz (CHZ) $ 0.071160
  • oasis-networkOasis Network (ROSE) $ 0.090805
  • book-of-memeBOOK OF MEME (BOME) $ 0.008667
  • paypal-usdPayPal USD (PYUSD) $ 0.999604
  • havvenSynthetix Network (SNX) $ 1.82
  • raydiumRaydium (RAY) $ 2.26
  • tether-goldTether Gold (XAUT) $ 2,405.87
  • aioz-networkAIOZ Network (AIOZ) $ 0.530105
  • wormholeWormhole (W) $ 0.323557
  • swethSwell Ethereum (SWETH) $ 3,738.05
  • iotaIOTA (IOTA) $ 0.171711
  • dexeDeXe (DEXE) $ 9.96
  • layerzeroLayerZero (ZRO) $ 5.00
  • apecoinApeCoin (APE) $ 0.813445
  • sats-ordinalsSATS (Ordinals) (SATS) $ 0.00000026
  • staked-frax-etherStaked Frax Ether (SFRXETH) $ 3,832.76
  • safeSafe (SAFE) $ 1.25
  • livepeerLivepeer (LPT) $ 15.78
  • klay-tokenKlaytn (KLAY) $ 0.142802
  • nervos-networkNervos Network (CKB) $ 0.011841
  • astarAstar (ASTR) $ 0.074557
  • 1inch1inch (1INCH) $ 0.413797
  • axelarAxelar (AXL) $ 0.706052
  • aevo-exchangeAevo (AEVO) $ 0.595107
  • true-usdTrueUSD (TUSD) $ 1.00
  • illuviumIlluvium (ILV) $ 71.30
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000086
  • aerodrome-financeAerodrome Finance (AERO) $ 0.861484
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.01
  • zcashZcash (ZEC) $ 30.54
  • theta-fuelTheta Fuel (TFUEL) $ 0.069332
  • pax-goldPAX Gold (PAXG) $ 2,399.57
  • kavaKava (KAVA) $ 0.411343
  • wemix-tokenWEMIX (WEMIX) $ 1.09
  • xdce-crowd-saleXDC Network (XDC) $ 0.029793
  • bitcoin-goldBitcoin Gold (BTG) $ 25.30
  • iotexIoTeX (IOTX) $ 0.046359
  • turboTurbo (TURBO) $ 0.006189
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.01
  • ether-fiEther.fi (ETHFI) $ 2.59
  • apenftAPENFT (NFT) $ 0.00000043
  • stader-ethxStader ETHx (ETHX) $ 3,633.11
  • dog-go-to-the-moon-runeDOG•GO•TO•THE•MOON (Runes) (DOG) $ 0.004090
  • g-tokenGravity (G) $ 0.055732
  • usdbUSDB (USDB) $ 0.993201
  • woo-networkWOO (WOO) $ 0.209288
  • project-galaxyGalxe (GAL) $ 3.43
  • constitutiondaoConstitutionDAO (PEOPLE) $ 0.078209
  • mx-tokenMX (MX) $ 4.00
  • h2o-daoH2O Dao (H2O) $ 0.472548
  • safepalSafePal (SFP) $ 0.831125
  • manta-networkManta Network (MANTA) $ 1.02
  • rocket-poolRocket Pool (RPL) $ 18.59
  • singularitynetSingularityNET (AGIX) $ 0.598785
  • compound-ethercETH (CETH) $ 70.59
  • memecoin-2Memecoin (MEME) $ 0.016559
  • arkhamArkham (ARKM) $ 1.51
  • blurBlur (BLUR) $ 0.203689
  • aragonAragon (ANT) $ 8.86
  • compound-governance-tokenCompound (COMP) $ 50.95
  • stepnGMT (GMT) $ 0.152501
  • osmosisOsmosis (OSMO) $ 0.514716
  • dymensionDymension (DYM) $ 1.80
  • echelon-primeEchelon Prime (PRIME) $ 7.92
  • golemGolem (GLM) $ 0.337087
  • corgiaiCorgiAI (CORGIAI) $ 0.000985
  • curve-dao-tokenCurve DAO (CRV) $ 0.282505
  • kusamaKusama (KSM) $ 21.74
  • 0x0x Protocol (ZRX) $ 0.387190
  • zilliqaZilliqa (ZIL) $ 0.017346
  • pepecoin-2PepeCoin (PEPECOIN) $ 2.75
  • dashDash (DASH) $ 26.90
  • holotokenHolo (HOT) $ 0.001795
  • celoCelo (CELO) $ 0.587884
  • jito-governance-tokenJito (JTO) $ 2.57
  • dydxdYdX (ETHDYDX) $ 1.39
  • beldexBeldex (BDX) $ 0.047516
  • ponkePONKE (PONKE) $ 0.580584

Facebook Under Fire: Suspected VPN Data Theft Unveiled

0 56

Facebook Under Fire: Suspected VPN Data Theft Unveiled

  beincrypto.com 8 h

Facebook Under Fire: Suspected VPN Data Theft Unveiled

Facebook has come under scrutiny for its alleged involvement in VPN data theft.

Tech analyst HaxRob, through his in-depth analysis, brought the issue to light, while tech journalist Naomi Brockwell further commented on it, revealing a complex web of user data interception and manipulation.

Facebook’s Alledge Data Theft Via VPN

HaxRob’s investigation unveiled that Facebook, leveraging its acquisition of Onavo, engaged in practices that could potentially intercept and analyze user data transmitted across other applications. By integrating root certificates into users’ mobile devices, Facebook purportedly could monitor and intercept traffic from a myriad of apps.

The controversy centers around Onavo. Before its removal from app stores, it ostensibly offered VPN services under the guise of user safety. However, archived descriptions and app functionalities hint at a darker purpose.

“This code, which included a client-side “kit” that installed a “root” certificate on Snapchat users’ mobile devices, also included custom server-side code based on “squid” through which Facebook’s servers created fake digital certificates to impersonate trusted Snapchat, YouTube, and Amazon analytics servers to redirect and decrypt secure traffic from those apps for Facebook’s strategic analysis,” a court filing reads.

Such actions not only breach user trust but also skirt the boundaries of ethical use of technology, as HaxRob pointed out, “The app managed to establish connectivity back to Facebook’s servers, despite presenting itself as a tool for user safety.”

Naomi Brockwell’s comments further cement the severity of the situation. She described Facebook’s actions as a “man-in-the-middle attack,” accessing SSL traffic and sensitive user data without consent.

“Looks like Facebook did a man-in-the-middle attack using their VPN service to steal data from other apps. This enabled them to see all SSL traffic, by creating a fake digital certificate to impersonate Snapchat, YouTube, Amazon, etc,” Brockwell explained.

The technical dissection of the Onavo app’s operations reveals alarming permissions requests, including overlay capabilities over other apps, access to historical and deleted app usage, and the management of phone calls. Under the pretext of enhancing user safety, these permissions raise significant red flags about the extent of data Facebook could access and manipulate.

Critically, the practice of installing certificates for intercepting app traffic, though hindered by recent Android security improvements, showcases the lengths to which companies might go to gather user data. The exposure of such practices, including the potential collection of mobile subscriber IMSI numbers and the extensive telemetry data amassed from the app’s 10 million downloads, reflect the imperative for stringent regulatory oversight.

This incident is not isolated. It echoes previous fines, like the $20 million penalty imposed by Australia’s ACCC, highlighting the global concern over Facebook’s data handling practices.

Source

Leave A Reply

Your email address will not be published.