2 Sources
[1]
Meta Fined $100M For Storing Over Half A Billion Passwords In Plaintext: Mark Zuckerberg-Led Company Reportedly Had 2000 Employees Querying Them 9M Times - Meta Platforms (NASDAQ:META)
Meta Platforms Inc. META has been fined €91 million ($101.5 million) by Ireland's Data Protection Commission (DPC) for a 2019 security breach. What Happened: The DPC initiated an investigation in April 2019 under the General Data Protection Regulation (GDPR) after Meta, then known as Facebook,
[2]
Ireland fines Meta €91 million over EU data breach
An Irish regulator helping to police European Union data privacy said Friday it had fined Facebook-owner Meta 91 million euros ($102 million) for password-security breaches. The Data Protection Commission criticised Meta for failing to put in place appropriate security measures to protect users'
Share
Copy Link
Meta, formerly Facebook, has been fined €100 million by Irish regulators for storing over half a billion user passwords in plaintext. The company has agreed to comply with EU data protection laws.

Meta, the parent company of Facebook, has been hit with a substantial fine of €100 million ($110 million) by Ireland's Data Protection Commission (DPC) for a significant breach of the European Union's General Data Protection Regulation (GDPR)
1
. The tech giant was found to have stored over half a billion user passwords in plaintext format, a practice that severely compromises user data security.The investigation, which began in 2019, revealed that Meta had been storing user passwords in an unencrypted format, making them vulnerable to potential breaches. This practice affected users of both Facebook and Instagram, two of Meta's most popular platforms
2
. The DPC's decision highlighted that this violation persisted from 2018, when the GDPR came into effect, until the conclusion of the investigation in 2023.In response to the fine, Meta has agreed to bring its data processing operations into compliance with EU regulations. The company stated that it has already implemented measures to address the issue and ensure better protection of user data
1
. Meta emphasized that there was no evidence of password misuse or improper access, but the potential risk to users was deemed significant enough to warrant the hefty fine.This case underscores the importance of robust data protection practices in the digital age. The GDPR, implemented in 2018, sets strict standards for how companies handle user data within the EU. The fine imposed on Meta serves as a stark reminder to tech companies of the serious consequences of failing to adequately protect user information
2
.Related Stories
This incident is part of a larger trend of increased scrutiny and regulation of tech giants in Europe. The EU has been at the forefront of efforts to hold large technology companies accountable for their data practices. The fine against Meta is one of several recent actions taken by European regulators to enforce data protection laws and ensure user privacy
1
2
.As digital platforms continue to play an increasingly central role in our lives, the importance of data security and user privacy is likely to grow. This case may prompt other companies to review and strengthen their data protection measures to avoid similar penalties. It also signals the EU's commitment to enforcing its data protection regulations, even against the world's largest tech companies.
Summarized by
Navi
1
Technology

2
Technology

3
Policy and Regulation
