A Telegram bot sells more than 500 million phone numbers linked to Facebook accounts stolen more than a year ago

At the beginning of 2020 a vulnerability allowed to see the phone number linked to Facebook accounts and that allowed to create a database with private information of 533 million of users from many countries of the world. It seems that this fact did not have much visibility and has resulted in another attack on privacy that took place a few days ago.

According to Alon Gal, co-founder and CTO of the security firm Hudson Rock, an Israel company, a few days ago, a user created a bot on Telegram that allows you to consult a database where you can find phone numbers linked to a large part of Facebook accounts. This "service" offered by the Telegram bot is paid, according to Gal put in your Twitter account.

A risk that according to some sources exists since 2019

The leader of the firm Hudson Rock has leaked the number of stolen numbers by country. Thus, we find that there are almost 11 million phone numbers of users in Spain, according to this source. The theft figure is much higher than that of other large European countries: for example, Germany, which has almost twice the population of Spain, the leaked numbers are just over 6 million.

Telegram bots: what they are, how they work and 17 recommended to start

Although the leader of the Israeli security company speaks of a vulnerability discovered in 2020, other sources suggest that that already patched vulnerability has been posing a risk since 2019. The price to access the phone numbers is $ 20 for a unit query (one credit) and up to $ 5,000 for a massive access (the bot gives 10,000 credits), as the Mortherboard portal of Vice has been able to verify, in its investigations after reading Gal's post on Twitter.