{"id":24880,"date":"2019-02-02T00:46:28","date_gmt":"2019-02-02T00:46:28","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/29778\/Everything-To-Know-About-Facebook-Googles-App-Scandal.html"},"modified":"2019-02-02T00:46:28","modified_gmt":"2019-02-02T00:46:28","slug":"everything-to-know-about-facebook-googles-app-scandal","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/","title":{"rendered":"Everything To Know About Facebook, Google&#8217;s App Scandal"},"content":{"rendered":"<p id=\"speakable-summary\"><a class=\"crunchbase-link\" href=\"https:\/\/crunchbase.com\/organization\/facebook\" target=\"_blank\" data-type=\"organization\" data-entity=\"facebook\">Facebook<\/a> and Google landed in hot water with Apple this week after two investigations by TechCrunch revealed the misuse of internal-only certificates \u2014 leading to their revocation, which led to a day of downtime at the two tech giants.<\/p>\n<p>Confused about what happened? Here\u2019s everything you need to know.<\/p>\n<h3 id=\"howdidallthisstartandwhathappened\">How did all this start, and what happened?<\/h3>\n<p>On Monday, we revealed that Facebook was <a href=\"https:\/\/techcrunch.com\/2019\/01\/29\/facebook-project-atlas\/\">misusing an Apple-issued enterprise certificate<\/a> that is only meant for companies to use to distribute internal, employee-only apps without having to go through the <a class=\"crunchbase-link\" href=\"https:\/\/crunchbase.com\/organization\/apple\" target=\"_blank\" data-type=\"organization\" data-entity=\"apple\">Apple<\/a> App Store. But the social media giant used that certificate to sign an app that Facebook distributed outside the company, violating Apple\u2019s rules.<\/p>\n<p>The app, known simply as \u201cResearch,\u201d allowed Facebook unparalleled access to all of the data flowing out of a device. This included access to some of the users\u2019 most sensitive network data. Facebook paid users \u2014 including teenagers \u2014 $20 per month to install the app. But it wasn\u2019t clear exactly what kind of data was being vacuumed up, or for what reason.<\/p>\n<p>It turns out that the app was a repackaged app that <a href=\"https:\/\/techcrunch.com\/2018\/08\/22\/apple-facebook-onavo\/\">was effectively banned<\/a> from Apple\u2019s App Store last year for collecting too much data on users.<\/p>\n<p>Apple was angry that Facebook was misusing its special-issue enterprise certificates to push an app it already banned, and revoked it \u2014 rendering the app unable to open. But Facebook was <a href=\"https:\/\/techcrunch.com\/2019\/01\/30\/apple-bans-facebook-vpn\/\">using that same certificate<\/a> to sign its other employee-only apps, effectively knocking them offline until Apple re-issued the certificate.<\/p>\n<p>Then, it turned out <a class=\"crunchbase-link\" href=\"https:\/\/crunchbase.com\/organization\/google\" target=\"_blank\" data-type=\"organization\" data-entity=\"google\">Google<\/a> was doing <a href=\"https:\/\/techcrunch.com\/2019\/01\/30\/googles-also-peddling-a-data-collector-through-apples-back-door\/\">almost exactly the same thing<\/a> with its Screenwise app, and Apple\u2019s ban-hammer <a href=\"https:\/\/techcrunch.com\/2019\/01\/31\/apple-ban-google-data-app\/\">fell again<\/a>.<\/p>\n<h3 id=\"whatsthecontroversyoverthesecertificatesandwhatcantheydo\">What\u2019s the controversy over these enterprise certificates and what can they do?<\/h3>\n<p>If you want to develop Apple apps, you have to abide by its rules \u2014 and Apple expressly makes companies agree to its terms.<\/p>\n<p>A key rule is that Apple doesn\u2019t allow app developers to bypass the App Store, where every app is vetted to ensure it\u2019s as secure as it can be. It does, however, grant exceptions for enterprise developers, such as to companies that want to build apps that are only used internally by employees. Facebook and Google in this case signed up to be enterprise developers and agreed to Apple\u2019s developer terms.<\/p>\n<p>Each Apple-issued certificate grants companies permission to distribute apps they develop internally \u2014 including pre-release versions of the apps they make, for testing purposes. But these certificates aren\u2019t allowed to be used for ordinary consumers, as they have to download apps through the App Store.<\/p>\n<h3 id=\"whyisrootcertificateaccessabigdeal\">What\u2019s a \u201croot\u201d certificate, and why is its access a big deal?<\/h3>\n<p>Because Facebook\u2019s Research and Google\u2019s Screenwise apps were distributed outside of Apple\u2019s App Store, it required users to manually install the app \u2014 known as sideloading. That requires users to go through a convoluted few steps of downloading the app itself, and opening and trusting either Facebook or Google\u2019s enterprise developer code-signing certificate, which is what allows the app to run.<\/p>\n<p>Both companies required users after the app installed to agree to an additional configuration step \u2014 known as a VPN configuration profile \u2014 allowing all of the data flowing out of that user\u2019s phone to funnel down a special tunnel that directs it all to either Facebook or Google, depending on which app you installed.<\/p>\n<p>This is where the Facebook and Google cases differ.<\/p>\n<p>Google\u2019s app collected data and sent it off to Google for research purposes, but couldn\u2019t access encrypted data \u2014 such as the content of any network traffic protected by HTTPS, as most apps in the App Store and internet websites are.<\/p>\n<p>Facebook, however, went far further. Its users were asked to go through an additional step to trust an additional type of certificate at the \u201croot\u201d level of the phone. Trusting this Facebook Research root certificate authority allowed the social media giant to look at all of the encrypted traffic flowing out of the device \u2014 essentially what we call a \u201cman-in-the-middle\u201d attack. That allowed Facebook to sift through your messages, your emails and any other bit of data that leaves your phone. Only apps that use certificate pinning \u2014 which reject any certificate that isn\u2019t its own \u2014 were protected, such as iMessage, Signal and additionally any other end-to-end encrypted solutions.<\/p>\n<div class=\"wp-caption alignnone\" readability=\"9\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/techcrunch.com\/wp-content\/uploads\/2019\/01\/Facebook-Research-Install-Root-Certificate.png\" alt=\"\" width=\"1319\" height=\"736\"\/><\/p>\n<p class=\"wp-caption-text\">Facebook\u2019s Research app requires Root Certificate access, which Facebook gather almost any piece of data transmitted by your phone (Image: supplied)<\/p>\n<\/div>\n<p>Google\u2019s app might not have been able to look at encrypted traffic, but the company still flouted the rules \u2014 and had its separate enterprise developer code-signing certificate revoked anyway.<\/p>\n<h3 id=\"whatdatadidfacebookhaveaccesstoonios\">What data did Facebook have access to on iOS?<\/h3>\n<p>It\u2019s hard to know for sure, but it definitely had access to more data than Google.<\/p>\n<p>Facebook said its app was to help it \u201cunderstand how people use their mobile devices.\u201d In reality, at root traffic level, Facebook could have accessed any kind of data that left your phone.<\/p>\n<p>Will Strafach, a security expert <a href=\"https:\/\/techcrunch.com\/2019\/01\/29\/facebook-project-atlas\/\">with whom we spoke for our story<\/a>, said: \u201cIf Facebook makes full use of the level of access they are given by asking users to install the certificate, they will have the ability to continuously collect the following types of data: private messages in social media apps, chats from in instant messaging apps \u2013 including photos\/videos sent to others, emails, web searches, web browsing activity, and even ongoing location information by tapping into the feeds of any location tracking apps you may have installed.\u201d<\/p>\n<p>Remember: this isn\u2019t \u201croot\u201d access to your phone, <a href=\"https:\/\/techcrunch.com\/2018\/12\/15\/cydia-shuts-down-purchasing-mechanism-for-its-jailbreak-app-store\/\">like jailbreaking<\/a>, but root access to the network traffic.<\/p>\n<h3 id=\"howdoesthiscomparetothetechnicalwaysothermarketresearchprogramswork\">How does this compare to the technical ways other market research programs work?<\/h3>\n<p>In fairness, these aren\u2019t market research apps unique to Facebook or Google. Several other companies, like Nielsen and comScore, run similar programs, but neither ask users to install a VPN or provide root access to the network.<\/p>\n<p>In any case, Facebook already has a lot of your data \u2014 as does Google. Even if the companies only wanted to look at your data in aggregate with other people, it can still hone in on who you talk to, when, for how long and, in some cases, what about. It might not have been such an explosive scandal had Facebook not <a href=\"https:\/\/techcrunch.com\/2018\/12\/28\/mark-zuckerberg-tonedeaf-end-of-year-remarks\/\">spent the last year cleaning up<\/a> after several security and privacy breaches.<\/p>\n<h3 id=\"cantheycapturethedataofpeoplethephoneownerinteractswith\">Can they capture the data of people the phone owner interacts with?<\/h3>\n<p>In both cases, yes. In Google\u2019s case, any unencrypted data that involves another person\u2019s data could have been collected. In Facebook\u2019s case, it goes far further \u2014 any data of yours that interacts with another person, such as an email or a message, could have been collected by Facebook\u2019s app.<\/p>\n<h3 id=\"howmanypeopledidthisaffect\">How many people did this affect?<\/h3>\n<p>It\u2019s hard to know for sure. Neither Google nor Facebook have said how many users they have. Between them, it\u2019s believed to be in the thousands. As for the employees affected by the app outages, Facebook has more than 35,000 employees and Google has more than 94,000 employees.<\/p>\n<h3 id=\"whydidinternalappsatfacebookandgooglebreakafterapplerevokedthecertificates\">Why did internal apps at Facebook and Google break after Apple revoked the certificates?<\/h3>\n<p>You might own your Apple device, but Apple still gets to control what goes on it.<\/p>\n<p>Apple can\u2019t control Facebook\u2019s root certificates, but it can control the enterprise certificates it issues. After Facebook was caught out, Apple said: \u201cAny developer using their enterprise certificates to distribute apps to consumers will have their certificates revoked, which is what we did in this case to protect our users and their data.\u201d That meant any app that relied on Facebook\u2019s enterprise certificate \u2014 including inside the company \u2014 would fail to load. That\u2019s not just pre-release builds of Facebook, Instagram and WhatsApp that staff were working on, but reportedly the company\u2019s travel and collaboration apps were down. In Google\u2019s case, even its <a href=\"https:\/\/techcrunch.com\/2019\/01\/31\/apple-ban-google-data-app\/\">catering and lunch menu apps<\/a> were down.<\/p>\n<p>Facebook\u2019s internal apps were down for about a day, while Google\u2019s internal apps were down for a few hours. None of Facebook or Google\u2019s consumer services were affected, however.<\/p>\n<h3 id=\"howarepeopleviewingappleinallthis\">How are people viewing Apple in all this?<\/h3>\n<p>Nobody seems thrilled with Facebook or Google at the moment, but not many are happy with Apple, either. Even though Apple sells hardware and doesn\u2019t use your data to profile you or serve you ads \u2014 like Facebook and Google do \u2014 some are uncomfortable with how much power Apple has over the customers \u2014 and enterprises \u2014 that use its devices.<\/p>\n<p>In revoking Facebook and Google\u2019s enterprise certificates and causing downtime, it has a knock-on effect internally.<\/p>\n<h3 id=\"isthislegalintheuswhataboutineuropewithgdpr\">Is this legal in the U.S.? What about in Europe with GDPR?<\/h3>\n<p>Well, it\u2019s not illegal \u2014 at least in the U.S. Facebook says it gained consent from its users. The company even said its <a href=\"https:\/\/forward.com\/fast-forward\/418560\/sheryl-sandberg-teens-who-downloaded-controversial-app-consented\/\">teenage users must obtain parental consent<\/a>, even though it was easily skippable and no verification checks were made. It wasn\u2019t even explicitly clear that the children who \u201cconsented\u201d really understood how much privacy they were really handing over.<\/p>\n<p>That could lead <a href=\"https:\/\/techcrunch.com\/2019\/01\/30\/facebooks-vpn-app-puts-spotlight-on-kids-consent\/\">to major regulatory headaches<\/a> down the line. \u201cIf it turns out that European teens have been participating in the research effort Facebook could face another barrage of complaints under the bloc\u2019s General Data Protection Regulation (GDPR) \u2014 and the prospect of substantial fines if any local agencies determine it failed to live up to consent and \u2018privacy by design\u2019 requirements baked into the bloc\u2019s privacy regime,\u201d wrote TechCrunch\u2019s Natasha Lomas.<\/p>\n<h3 id=\"whoelsehavebeenmisusingcertificates\">Who else has been misusing certificates?<\/h3>\n<p>Don\u2019t think that Facebook and Google are alone in this. It turns out that a lot of companies might be flouting the rules, too.<\/p>\n<p>According to many finding companies on social media, Sonos uses enterprise certificates <a href=\"https:\/\/support.sonos.com\/s\/article\/3207?language=en_US\">for its beta program<\/a>, as does <a href=\"https:\/\/support.binance.com\/hc\/en-us\/articles\/115001507811-How-to-Install-Binance-iOS-APP\">finance app Binance<\/a>, as well as DoorDash <a href=\"https:\/\/twitter.com\/wongmjane\/status\/1091123626600886272\">for its fleet of contractors<\/a>. It\u2019s not known if Apple will also revoke their enterprise certificates.<\/p>\n<h3 id=\"whatnext\">What next?<\/h3>\n<p>It\u2019s anybody\u2019s guess, but don\u2019t expect this situation to die down any time soon.<\/p>\n<p>Facebook may face repercussions with Europe, as well as at home. Two U.S. senators, Mark Warner and Richard Blumenthal, have already called for action, accusing Facebook of \u201cwiretapping teens.\u201d The Federal Trade Commission may also investigate, if Blumenthal gets his way.<\/p>\n<p> READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/29778\/Everything-To-Know-About-Facebook-Googles-App-Scandal.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":24881,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[60],"tags":[5694],"class_list":["post-24880","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-packet-storm","tag-headlineprivacyphonefraudgoogleapplefacebook"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Everything To Know About Facebook, Google&#039;s App Scandal 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Everything To Know About Facebook, Google&#039;s App Scandal 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2019-02-02T00:46:28+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/everything-to-know-about-facebook-googles-app-scandal.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1319\" \/>\n\t<meta property=\"og:image:height\" content=\"736\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"9 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Everything To Know About Facebook, Google&#8217;s App Scandal\",\"datePublished\":\"2019-02-02T00:46:28+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/\"},\"wordCount\":1738,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/everything-to-know-about-facebook-googles-app-scandal.png\",\"keywords\":[\"headline,privacy,phone,fraud,google,apple,facebook\"],\"articleSection\":[\"Packet Storm\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/\",\"name\":\"Everything To Know About Facebook, Google's App Scandal 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/everything-to-know-about-facebook-googles-app-scandal.png\",\"datePublished\":\"2019-02-02T00:46:28+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/everything-to-know-about-facebook-googles-app-scandal.png\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/everything-to-know-about-facebook-googles-app-scandal.png\",\"width\":1319,\"height\":736},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/everything-to-know-about-facebook-googles-app-scandal\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,privacy,phone,fraud,google,apple,facebook\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlineprivacyphonefraudgoogleapplefacebook\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Everything To Know About Facebook, Google&#8217;s App Scandal\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Everything To Know About Facebook, Google's App Scandal 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/","og_locale":"en_US","og_type":"article","og_title":"Everything To Know About Facebook, Google's App Scandal 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2019-02-02T00:46:28+00:00","og_image":[{"width":1319,"height":736,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/everything-to-know-about-facebook-googles-app-scandal.png","type":"image\/png"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"9 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Everything To Know About Facebook, Google&#8217;s App Scandal","datePublished":"2019-02-02T00:46:28+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/"},"wordCount":1738,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/everything-to-know-about-facebook-googles-app-scandal.png","keywords":["headline,privacy,phone,fraud,google,apple,facebook"],"articleSection":["Packet Storm"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/","url":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/","name":"Everything To Know About Facebook, Google's App Scandal 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/everything-to-know-about-facebook-googles-app-scandal.png","datePublished":"2019-02-02T00:46:28+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/everything-to-know-about-facebook-googles-app-scandal.png","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/everything-to-know-about-facebook-googles-app-scandal.png","width":1319,"height":736},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/everything-to-know-about-facebook-googles-app-scandal\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,privacy,phone,fraud,google,apple,facebook","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlineprivacyphonefraudgoogleapplefacebook\/"},{"@type":"ListItem","position":3,"name":"Everything To Know About Facebook, Google&#8217;s App Scandal"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/24880","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=24880"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/24880\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/24881"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=24880"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=24880"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=24880"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}