Why Meta Faced a €265 Million Fine Over Facebook Data Leak

In November 2022, Ireland's Data Protection Commission fined Meta €265 million for failing to safeguard personal data of over 5 billion Facebook users, highlighting the EU's intensified enforcement of privacy regulations such as GDPR against major tech firms.

21CTO
21CTO
21CTO
Why Meta Faced a €265 Million Fine Over Facebook Data Leak

On November 28, 2022, the Irish Data Protection Commission (DPC) imposed a €265 million (US$277 million) fine on Meta because the company failed to protect the personal data of more than 5 billion Facebook users, intensifying privacy enforcement against U.S. tech firms.

The penalty followed an investigation launched by European regulators on April 14, 2021, after a leak of a compiled data set of Facebook personal data already available on the internet.

The exposed data included personal information linked to 533 million users, such as phone numbers, birth dates, locations, email addresses, gender, marital status, account creation dates, and other details.

Meta acknowledged that malicious actors scraped this “old data” using a technique called “phone number enumeration,” which involved a tool named “Contact Importer” to upload large phone‑number lists and discover matching user profiles.

Beyond the fine, the Irish regulator ordered Meta’s Irish subsidiary to ensure its data processing complies with EU data‑protection law. This marks the fourth time Ireland has fined Meta and its subsidiaries, including Instagram and WhatsApp.

In September 2021, WhatsApp was fined €225 million for not disclosing how it collected and used users’ personal information. In September 2022, Instagram was fined €405 million for violating the GDPR by improperly handling minors’ online data through publicly operated business accounts’ phone numbers and email addresses.

Original Source

Signed-in readers can open the original source through BestHub's protected redirect.

Sign in to view source
Republication Notice

This article has been distilled and summarized from source material, then republished for learning and reference. If you believe it infringes your rights, please contactadmin@besthub.devand we will review it promptly.

Facebookdata privacyMetaGDPRIrish DPC
21CTO
Written by

21CTO

21CTO (21CTO.com) offers developers community, training, and services, making it your go‑to learning and service platform.

0 followers
Reader feedback

How this landed with the community

Sign in to like

Rate this article

Was this worth your time?

Sign in to rate
Discussion

0 Comments

Thoughtful readers leave field notes, pushback, and hard-won operational detail here.