Thousands of users impacted by Facebook and Instagram outage

On Monday, Meta Platforms’ social media platforms Facebook and Instagram experienced a significant outage affecting thousands of users across the US. According to Downdetector, a website that tracks service interruptions, the outage peaked around 1:35 p.m. ET, with over 12,000 users reporting issues with Facebook and more than 5,000 for Instagram.

By 2:09 p.m. ET, the number of reported problems had decreased significantly to around 659 for Facebook and 450 for Instagram. Downdetector’s data is based on user-submitted reports, so the actual number of impacted users may differ.

Meta Platforms did not respond to requests for comment. Earlier this year, a similar issue disrupted services globally for more than two hours, affecting hundreds of thousands of users. That event saw 550,000 disruption reports for Facebook and around 92,000 for Instagram.

Data breach at Intesa Sanpaolo under investigation

Intesa Sanpaolo has confirmed it alerted Italy’s data protection authority regarding a data breach caused by one of its employees after carrying out detailed investigations into the incident. The bank explained that the notification was made only after conducting careful checks on the events surrounding the violation.

Despite media reports, Intesa has not yet received any formal communication from prosecutors. News agency ANSA previously reported that both the bank and its employee are being investigated following the data breach.

The breach, which is said to have affected thousands of customers, includes the personal data of high-profile individuals such as Prime Minister Giorgia Meloni. The investigation has raised concerns about data security at one of Italy‘s largest financial institutions.

As the situation develops, the bank faces increasing scrutiny over its handling of the breach, with both authorities and the public awaiting further details on the investigation.

India investigates WhatsApp’s privacy policy

WhatsApp is facing potential sanctions from India’s Competition Commission (CCI) over its controversial 2021 privacy policy update, which has raised significant privacy concerns. The CCI is reportedly preparing to take action against the messaging platform, owned by Meta, for allegedly breaching antitrust laws related to user data handling. The policy, which allows WhatsApp to share certain user data with Meta, has faced widespread criticism from regulators and users who view it as intrusive and unfair.

The CCI’s investigation suggests that WhatsApp’s data-sharing practices, particularly involving business transaction data, may give Meta an unfair competitive advantage, violating provisions against the abuse of dominance. A draft order has been prepared to penalise both WhatsApp and Meta, as the CCI’s director general has submitted findings indicating these violations.

In response, WhatsApp stated that the case is still under judicial review and defended its privacy policy by noting that users had the choice to accept the update without losing access to their accounts. If sanctions are imposed, this could represent a pivotal moment in India’s efforts to regulate major tech firms and establish precedents for the intersection of privacy and competition laws in the digital age.

Apple faces accusations over worker rights violations

The US National Labor Relations Board (NLRB) has accused Apple of violating workers’ rights by restricting the use of Slack and social media for discussions about working conditions. According to the NLRB complaint, Apple implemented policies that limited how employees could use workplace messaging and fired one worker for advocating for change. The complaint also claims Apple created the impression that workers were being monitored on social media.

This is the second complaint filed against Apple this month. The earlier case accused the company of forcing employees to sign illegal non-compete and confidentiality agreements. Apple has denied the accusations, stating it is committed to maintaining an inclusive work environment and respects employees’ rights to discuss issues like pay and working conditions.

The case stems from a 2021 complaint by former employee Janneke Parrish, who claims she was fired for leading workplace activism efforts. Parrish’s lawyer said Apple’s actions were unlawful and violated workers’ rights to protest discrimination. If a settlement isn’t reached, a hearing will be held in February 2024.

RBI highlights risks of AI in banking and private credit markets

The increasing use of AI and machine learning in financial services globally could lead to financial stability risks, according to the Governor of the Reserve Bank of India (RBI), Shaktikanta Das. Speaking at an event in New Delhi, Das cautioned that the reliance on a small number of technology providers could lead to concentration risks in the sector.

Disruptions or failures in these AI-driven systems could trigger cascading effects throughout the financial industry, amplifying systemic risks, Das warned. In India, financial institutions are already employing AI to improve customer experience, reduce operational costs, and enhance risk management through services like chatbots and personalised banking.

However, AI adoption comes with vulnerabilities, including increased exposure to cyber attacks and data breaches. Das also raised concerns about the ‘opacity’ of AI algorithms, which makes them difficult to audit and could lead to unpredictable market consequences.

Das further emphasised the risks posed by the rapid growth of private credit markets, which operate with limited regulation. He warned that these markets have not been tested under economic downturns, presenting potential challenges to financial stability.

Privacy concerns rise as UK plans digital currency pilot

The UK is set to launch a Central Bank Digital Currency (CBDC) pilot in 2025, but critics are sounding alarms over privacy concerns. While the Bank of England promises to modernise the financial system, experts, including Big Brother Watch, question whether enough has been done to protect citizens’ freedoms.

Susanna Copson, legal and Policy Officer at Big Brother Watch, argues that the case for a CBDC remains unclear, especially with risks to privacy and equality. She warns that a digital pound without anonymity could lead to government overreach, turning the currency into what she describes as a ‘digital spy coin.’

As awareness remains low, organisations like Big Brother Watch push for public participation in government consultations. They urge citizens to contact their MPs and engage in discussions to protect their freedoms in the face of this looming digital shift.

Hacker demands ransom from India’s largest health insurer after data leak

Star Health, India‘s largest health insurer, has revealed it received a $68,000 ransom demand following a data breach that exposed customer details, including medical records. The cyberhacker used Telegram chatbots and a website to leak sensitive information, leading to significant reputational damage and a drop in the company’s stock value.

The hacker, who made the ransom demand in August, sent the request to Star Health’s managing director and CEO. While the company has launched an internal investigation, it also faces allegations that its chief security officer was involved in the data leak, although no evidence of wrongdoing has been found so far.

Star Health has taken legal action against both the hacker and Telegram, which has not permanently banned the accounts linked to the hacker. The company has sought help from Indian cybersecurity authorities to identify the individual behind the attack.

Telegram has not responded to requests for comment but previously removed the chatbots linked to the hack after Reuters brought them to its attention. The investigation continues as Star Health works to contain the damage from the breach.

Trump team adopts secure devices amid cyber threats

Donald Trump‘s presidential campaign has strengthened its cybersecurity measures by acquiring secure mobile phones and laptops after facing Iranian cyberattacks and assassination threats. The campaign partnered with Green Hills Software, a California-based company known for its secure operating systems used by various US agencies. The customised phones are designed for basic functions like calls and texts, featuring advanced security protocols such as end-to-end encryption and two-factor authentication.

Green Hills Software CEO Dan O’Dowd, who initiated contact with the campaign, stressed the importance of safeguarding the democratic process. Though the campaign has not made any public statements, insiders revealed that security devices have recently been upgraded. This decision comes after the Iranian hacking group APT42 infiltrated the campaign’s internal communications during a recent cyber espionage operation.

The newly acquired devices create a secure communication network, allowing only those using the same system to connect. The campaign also invested in secure laptops designed to operate in an isolated environment, following the same security principles as the phones. Green Hills Software’s technology is already trusted by US military branches and FBI field offices to maintain secure communications and protect sensitive data.

Meta takes action against Russian-linked accounts in Moldova

Meta Platforms announced it had removed a network of accounts targeting Russian speakers in Moldova ahead of the country’s October 20 election, citing violations of its fake accounts policy. Moldovan authorities have also blocked numerous Telegram channels and chatbots allegedly used to pay voters to cast “no” votes in a referendum on EU membership being held alongside the presidential election. Pro-European President Maia Sandu, seeking a second term, has made the referendum central to her platform.

The deleted Meta accounts targeted President Maia Sandu, pro-EU politicians, and the strong ties between Moldova and Romania while promoting pro-Russia parties. This network featured fake Russian-language news brands masquerading as independent media across various platforms, including Facebook, Instagram, Telegram, OK.ru, and TikTok. Meta’s actions involved removing multiple accounts, pages, and groups to combat coordinated inauthentic behaviour.

Moldova’s National Investigation Inspectorate has blocked 15 Telegram channels and 95 chatbots that were offering payments to voters, citing violations of political financing laws. Authorities linked these activities to supporters of fugitive businessman Ilan Shor, who established the ‘Victory’ electoral bloc while in exile in Moscow. In response, Moldovan police have raided the homes of Shor’s associates, alleging that payments were funnelled through a Russian bank to influence the election. Shor, who was sentenced in absentia for his involvement in a significant 2014 bank fraud case, denies the bribery allegations. Meanwhile, President Maia Sandu accuses Russia of attempting to destabilise her government, while Moscow claims that she is inciting ‘Russophobia.’

Internet Archive hit by major cyberattack

The Internet Archive, a prominent online repository of web pages, faced significant disruptions on Thursday after a major cyberattack that exposed user data. Brewster Kahle, the organisation’s founder, reported a series of distributed denial-of-service (DDoS) attacks that began earlier in the week, leading to the defacement of its website and the breach of usernames, emails, and passwords for millions of users. Although the data has not been corrupted, the attack has raised concerns about cybersecurity vulnerabilities, especially with the upcoming US presidential election on November 5.

The hackers, a group claiming to be pro-Palestinian called ‘SN_BLACKMETA,’ targeted the Internet Archive, accusing it of being connected to US government support for Israel. They reportedly posted a defacing message on the site, which informed users that 31 million accounts had been breached. The site ‘Have I Been Pwned’ later confirmed the stolen records, adding credibility to the hackers’ claims.

Brewster Kahle, founder of the Internet Archive, announced that the organisation is actively working to restore services and strengthen security measures following a major cyberattack. Established in 1996, the nonprofit is renowned for its Wayback Machine, which archives web pages and serves as a critical resource for researchers and journalists. This incident underscores the increasing risks of cyberattacks, particularly for organisations dedicated to preserving information and fostering an open internet.