Categories: Digital LifeNews

Facebook in hot water again. Hundreds of millions of passwords stored in plain text

Recently, Facebook has announced they’ve discovered a major security issue during their routine security review – approximately 200 million to 600 million Facebook users may have their account passwords stored in plain text format in their database, which is entirely accessible by 20,000 Facebook employees.

According to a report from KerbsOnSecurity, a source from Facebook have told them that hundreds of millions of Facebook user passwords were stored in a readable state for years, where some cases date back to 2012. To make matters worse, 20,000 employees from Facebook have access to these passwords.

Let’s not panic just yet, at least that’s what Facebook has to say. According to the social media company, ongoing investigations have indicated that these passwords were not abused by those who have access. A senior Facebook employee said that the security failures were due to employees building applications that logged unencrypted password data for Facebook users in plain text.

Sources on KerbsOnSecurity has also reported that some 2,000 engineers or developers made approximately nine million internal queries for data elements that contained plain text user passwords. They said that Facebook has issued a written statement to them, indicating that the company will inform “hundreds of millions of Facebook Lite users, tens of millions of Facebook users and tens of thousands of Instagram users” who are affected. Facebook Lite is a stripped-down version of Facebook that is designed for entry-level smartphones.

Prior to this, both GitHub and Twitter had encountered similar issues in recent months. But comparatively, the plain text passwords were only available to a much smaller group of people and for far shorter periods of time.

For Facebook to store passwords without encryption is reckless and it isn’t clear if a password change at the moment would make a difference if it continues to keep a copy of it in plain text. It is probably a good idea to change your password on other platforms if it shares the same password as your Facebook account.

On top of that, it is recommended that you use a unique password for different logins and this is where a password manager would come in handy. To secure your Facebook account further, it is also recommended that you enable two-factor authentication.

[ SOURCE ]

Recent Posts

JomCharge offers 50% discount for Solaris Mont Kiara EV chargers for this weekend only

JomCharge and DBKL officially announce their EV charger #21 located at Solaris Mont Kiara. The…

9 hours ago

Malaysia EV registrations rise 21% in May 2026 despite overall car market decline of 11%

Malaysia's electric vehicle (EV) market continues to show growth in May 2026, with registrations growing…

11 hours ago

Hyundai Ioniq 5 N and Ioniq 6 N launched in Malaysia with up to 641hp, from RM443,888

Hyundai Motor Malaysia has officially launched the Hyundai Ioniq 5 N and Hyundai Ioniq 6…

20 hours ago

Proton e.MAS 7 Premium Plus delivers up to 450km WLTP, priced from RM119k

Pro-Net has officially unveiled the 3rd variant for Proton e.MAS 7 family at the ongoing…

21 hours ago

Zeekr 009 Grand and Zeekr 9X now open for booking in Malaysia, priced from RM600,000

Zeekr Malaysia has revealed its two flagship models at KLIMS 2026, with the Zeekr 9X…

22 hours ago

ASUS ExpertBook Ultra: Flagship Business Laptop with Premium Looks, Military-Grade Toughness, and Serious Power

This post is brought to you by ASUS. If you are looking for a flagship…

1 day ago

This website uses cookies.