home.social

#gravyanalytics — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #gravyanalytics, aggregated by home.social.

fetched live
  1. ⚖️ The regulatory landscape is shifting. The FTC recently banned #GravyAnalytics from selling location data, but will enforcement hold up under a new administration?

  2. Wenn Erlösmaximierung zur illegalen Gier wird! 😤

    "Albtraumszenario": Candy Crush, Tinder und Co: Über welche Apps der Standort von Smartphone-Usern ausspioniert wird

    "Ein Hack des #Datenhändler's #GravyAnalytics gibt einen unerfreulichen Einblick in jenes Geschäft, über das sensible Daten bei zweifelhaften Firmen landen"
    derstandard.at/story/300000025

  3. Gigantisches #DatenLeak droht: Hacker wollen Bestände von US- #Databroker veröffentlichen

    "Einer der bekanntesten US-Databroker wurde offenbar Ziel eines Hackerangriffs: #GravyAnalytics. Es geht um gigantische Mengen von #Standortdaten, gesammelt durch populäre Handy-Apps. Erste Ausschnitte der erbeuteten Daten halten Fachleute für authentisch.

    Gravy Analytics hat offenbar die Kontrolle über seinen #Datenschatz verloren."...

    #TeamDatenschutz
    netzpolitik.org/2025/gigantisc

  4. Was ich mich frage: Die #DSGVO sieht in § 34 bei Datenpannen vor, Betroffene über etwaigen Datenabfluss zu informieren.

    Im Fall von
    #Unacast #GravyAnalytics haben App-Betreiber Daten verkauft. U.a. betroffene Apps sind wohl #CandyCrush, #Tinder, #Grindr und noch einige weitere.

    Was genau passiert, wenn zu den Daten keine E-Mail oder Anschrift vorliegt und dennoch personenbezogene Daten wie Standortdaten abgeflossen sind? Wie werden die Betroffenen dann informiert? Gar nicht? Haben halt Pech gehabt?

    Weiß da jemand etwas zu?

    @bfdi oder @lfdi vielleicht?

    #Datenschutz #Privacy #Datenhandel #databroker #databrokers

  5. theverge.com/2025/1/13/2434269

    A major data breach at location data broker Gravy Analytics may have exposed precise location information for millions of people, potentially including data from popular apps like Candy Crush and dating apps.

    The breach was discovered on January 4th, and affected data may include sensitive locations like military bases & government buildings.

    Gravy was previously targeted by the FTC for selling sensitive location data.

    #dataBreach #Privacy #Security #GravyAnalytics

  6. Massive data breach exposes location history of millions of popular app users

    Hackers are believed to have targeted US-based location data broker Gravy Analytics (GA), exposing sensitive information from users of thousands of popular apps, including Spotify, Vinted, Candy Crush, and Tinder.

    computing.co.uk/news/2025/secu

    #infoesc #cybersecurity #gravyanalytics #privacy #location #technews

  7. Über welche Apps der #Standort von #Smartphone-Usern ausspioniert wird
    derstandard.at/story/300000025

    "Mehr als 10.000 einzelne #Apps konnten dabei bisher identifiziert werden. Darunter beliebte Spiele wie #CandyCrush oder #TempleRun, die Dating-Apps #Tinder und #Grindr, die Fitness-App #MyFitnessPal oder auch #Tumblr und #Flightradar24. Doch auch eine App zum Tracking des weiblichen Zyklus sowie eine muslimische Gebets-App befinden sich in dieser Riege gemeinsam mit vielen #VPN-Apps, die ironischerweise dazu gedacht sein sollten, die Privatsphäre der User zu schützen. Am meisten Daten finden sich in dem Datensatz allerdings von einer vielgenutzten #Wetter-App, die alleine in Googles Play Store mehr als 100 Millionen Downloads hat."

    #Privatsphäre #Android #iOS #Standortdaten #Überwachung #databroker #Smartphones #Handy #leaks #GravyAnalytics

  8. Il 3.12.2024 la #FTC ha preso un provvedimento contro #GravyAnalytics, per la raccolta di milioni di profili personali geolocalizzati ricavandoli da app

    Quali app? sono 15,396, tra cui Grindr,Tinder, Candy Crush Saga,

    Importante: GA non ha rubato i dati, glieli hanno venduti

    Poi GA li ha arricchiti e rivenduti a sua volta

    Ora i suoi DB sono stati violati e milioni di profili individuali esfiltrati. Per essere venduti.

    Il mercato della sorveglianza.

  9. "Einer der bekanntesten US-Databroker wurde offenbar Ziel eines Hackerangriffs: Gravy Analytics. Es geht um gigantische Mengen von Standortdaten, gesammelt durch populäre Handy-Apps. Erste Ausschnitte der erbeuteten Daten halten Fachleute für authentisch."

    Leider werden wahrscheinlich wieder viele, viele Menschen glauben, dass es sie nichts anginge - weil sie ja auch nix zu verbergen hätten ...

    #datenschutz #GravyAnalytics #hack #privacy #datenbroker

    netzpolitik.org/2025/gigantisc

  10. "Some of the world’s most popular apps are likely being co-opted by rogue members of the advertising industry to harvest sensitive location data on a massive scale, with that data ending up with a location data company whose subsidiary has previously sold global location data to US law enforcement.

    The thousands of apps, included in hacked files from location data company Gravy Analytics, include everything from games like Candy Crush and dating apps like Tinder to pregnancy tracking and religious prayer apps across both Android and iOS. Because much of the collection is occurring through the advertising ecosystem—not code developed by the app creators themselves—this data collection is likely happening without users’ or even app developers’ knowledge.

    “For the first time publicly, we seem to have proof that one of the largest data brokers selling to both commercial and government clients appears to be acquiring their data from the online advertising ‘bid stream,’” rather than code embedded into the apps themselves, Zach Edwards, senior threat analyst at cybersecurity firm Silent Push and who has followed the location data industry closely, tells 404 Media after reviewing some of the data."

    wired.com/story/gravy-location

    #USA #DataBrokers #DataBrokerage #Surveillance #LocationData #GravyAnalytics

  11. This caught my attention more for the fact I am surprised something like this took so long to happen...

    A data broker that collects location data from thousands of apps, has been compromised. The scope of the data breach is quite something.

    Over 12,000 apps, with enough data points to reverse engineer and identify an individual's movements through location, device, and app data. Some of the more high profile apps impacted by this data breach include:

    - Candy Crush
    - Tinder
    - Grindr
    - Microsoft Outlook
    - My Period Calendar.& Tracker
    - MyFitnessPal

    More information on XDA forums hxxps://www.xda-developers.com/thousands-apps-spied-location-hackers-threatening-release-data/

    and

    hxxps://www.404media.co/hackers-claim-massive-breach-of-location-data-giant-threaten-to-leak-data/

    Full list of impacted apps hxxps://docs.google.com/spreadsheets/d/1Ukgd0gIWd9gpV6bOx2pcSHsVO6yIUqbjnlM4ewjO6Cs/htmlview?usp=sharing

    #data_breach #infosec #GravyAnalytics

  12. My worldview is shifting from "let's protect one another" to "just let it all burn". When reading news about the #GravyAnalytics hack, I hope it all gets released and someone setup a nice queriable front end so everyone can see how bad it is when we don't prioritize #privacy. It's time society touches the pot handle to be reminded that it's hot.

  13. #CandyCrush , #Tinder, #MyFitnessPal : See the Thousands of Apps #Hijacked to Spy on Your Location

    A hack of location data company #GravyAnalytics has revealed which apps are—knowingly or not—being used to collect your information behind the scenes.
    #privacy #geolocation #tracking #surveillance

    wired.com/story/gravy-location

  14. Hackers Claim Massive #Breach of #Location Data Giant, Threaten to Leak Data
    #GravyAnalytics has been one of the most important companies in location data.
    For years, companies have harvested location information from #smartphones, either through ordinary #apps or the #ads, and then built products based on that data or sold it to others. In many cases, those customers include U.S. government, with arms of the military, DHS, the IRS, and FBI using it for various purposes.
    404media.co/hackers-claim-mass

  15. Gravy Analytics sammelt auch Daten von deutschen Nutzern. Da die #Website von #GravyAnalytics derzeit nicht erreichbar ist, folgt hier eine E-Mail-Adresse, für den Fall, dass jemand von euch eine #Datenanfrage ( #Datenauskunft ) an Gravy Analytics richten möchte: [email protected]

  16. Gravy Analytics wurde vermutl. #kompromittiert. #GravyAnalytics sammelt Smartphone-Standortdaten aus der ganzen Welt, die u.a. an die US-Regierung verkauft werden. Die #Hacker sagen, sie hätten eine riesige Menge an #Daten gestohlen, darunter Kundenlisten, Branchen-Informationen u. #Standortdaten von #Smartphones, die die genauen Bewegungen der Menschen zeigen. Sie drohen jetzt damit, die Daten zu veröffentlichen.
    #datenschutz #hack #breach #databreach #cybersecurity
    reuters.com/technology/cyberse