Social Media

Facebook ‘breaches user trust’ once again with two factor authentication

Facebook has come under fire once again for breaching users trust with the misuse of their data, this time through the misuse of two-factor authentication (2FA).

Read More: Facebook’s Portal born out of Pentagon-inspired Building 8

In recent years, internet based companies have told consumers to utilize two-factor authentication to secure their accounts online.  2FA is an additional level of security that goes beyond the standard password-only approach.  With 2FA, the username and password model is enhanced with an additional means of authentication that requires the user to input a piece of additional information.

In recent days, TechCrunch highlighted an issue with Facebook’s usage of two-factor authentication.  Facebook has been using people’s cellphone numbers – as provided solely for the purpose of 2FA – for targeted advertising and search.

How It Works

Let’s say a user associates their cellphone number with their Facebook account for the purpose of 2FA.  If a second user has allowed the Facebook app access to their phone’s contacts list, it will suggest to connect the two users if the first users number appears on the second users contact list.

This shows that the company is using the cellphone number data for the purposes of search when it was provided in good faith by users on the basis of it being used for security purposes.

Controversy emerged surrounding the practice as it came to the attention of the wider public at the weekend.  Turkish writer and New York Times contributor, Zeynep Tufekci tweeted her dismay amid the discovery.


The gravity of Tufekci’s case is sobering given that she had advised dissidents to use 2FA with Facebook.  To find out that her advice had potentially placed those same people in danger does not sit well with her.  A high price to pay in exchange for Facebook achieving improved advertisement targeting.

A Facebook spokesperson responded:

“We use the information people provide to offer a better, more personalized experience on Facebook, including ads.  We are clear about how we use the information we collect, including the contact information that people upload or add to their own accounts.  You can manage and delete the contact information you’ve uploaded at any time.”

In May of last year, Facebook added the option of accessing non-mobile phone based 2FA.  Whilst this provides users of the social media with a means through which they can avoid this breach of their privacy, it is too late for those who had utilized phone based 2FA previously.

Jeremy Burge, Editor of emoji reference site, Emojipedia, was another who voiced his concern on The Guardian:

“I’m usually one to give benefit of the doubt but it’s so clear Facebook sees phone number as the way to unify its data sets (FB: email, Insta: username, WhatsApp: phone #) and this sort of thing only gives them less credibility when it comes to ever providing a number.”

Even Facebook’s former Chief Information Officer, Alex Stamos, was critical of the social media giant’s practices in this instance:


https://platform.twitter.com/widgets.js

Pat Rabbitte

Pat is a writer from the West of Ireland - currently living and working in Medellín, Colombia. He has always had an inquiring mind when it comes to new technology. His discovery of Bitcoin back in 2013 slowly led to a realisation of the implications of the underlying tech. As a consequence, Pat’s passion for blockchain technology has led him to focus his writing on the subject.

View Comments

Recent Posts

Why these 10 digital engineering providers are leaders in the enterprise

In 2026, while many areas of the economy are contracting, the tech industry continues to…

10 hours ago

The nostalgia wave of the 2020s revived the heritage debate 

In the archives of nearly every major heritage brand – Louis Vuitton, Mercedes-Benz, Coca-Cola or…

1 day ago

Imagine Your Life as a Game Controlled by Someone Else

You woke up this morning, made a series of choices, and ended up here reading…

2 days ago

The Internet’s Writing Problem Is No Longer Easy to Ignore

Writing sucked long before LLMs showed up. Sure, today's doomsayers love pointing at ChatGPT as…

2 days ago

DARPA O-Circuit program wants drones that can smell danger with ‘a new class of biologically inspired computer’

DARPA's O-Circuit program looks to build a new class of biologically inspired computer equipped with…

1 week ago

How a ten-day bootcamp is helping students at Delhi Public School hone their AI skills 

As AI races into classrooms worldwide, Google is finding that the toughest lessons on how…

1 week ago