Facebook Debuts 'Data Abuse Bounty' Offering Rewards From $500 to $40,000 for Discovering Data Breaches - MacRumors
Skip to Content

Facebook Debuts 'Data Abuse Bounty' Offering Rewards From $500 to $40,000 for Discovering Data Breaches

by

facebookappFacebook today announced the launch of a new data abuse bounty program that will see it rewarding Facebook users who discover instances of companies using unauthorized data.

Facebook users who report companies for misusing data can receive rewards that range from $500 to $40,000 for major discoveries impacting at least 10,000 people. Companies who are discovered misusing data will have their app removed from the Facebook platform, will face a forensic audit of related systems, and could face legal action.

This program will reward people with first-hand knowledge and proof of cases where a Facebook platform app collects and transfers people's data to another party to be sold, stolen or used for scams or political influence. Just like the bug bounty program, we will reward based on the impact of each report. While there is no maximum, high impact bug reports have garnered as much as $40,000 for people who bring them to our attention.

The social network says the new program is designed to protect people's data on Facebook by helping identify violations of the company's policies.

Facebook says all "legitimate reports" will be reviewed and responded to as quickly as possible. If data abuse is confirmed, the person who made the report will receive payment. Users must have first-hand knowledge of facts and cannot submit reports based on speculation.

You must have direct first-hand knowledge of facts showing that data collected by a Facebook platform app is or has been passed to another party. You cannot submit a report based on speculation, but must be aware of the facts yourself. The scenario we expect is one company that built an app to collect information that then passes that information to another company to be abused. You must have knowledge of both of these parties.

The new Data Abuse Bounty comes in the wake of the ongoing Cambridge Analytica scandal Facebook is facing, which has resulted in Facebook implementing stronger privacy policies. Cambridge Analytica used personal data acquired from Facebook in an illicit manner by a third-party app ("This is Your Digital Life") to create targeted political advertisements during the 2016 election.

Just this morning, Facebook launched an official Help center tool that lets users see if their data was harvested by the app that supplied Cambridge Analytica with info. The tool is designed to let you know if you or someone you know installed the app and what was shared with Cambridge Analytica. 87 million users were impacted.

datacambridgeanalyticafacebook
CEO Mark Zuckerberg is also testifying before Congress this afternoon, explaining Facebook's role in the scandal and the changes it plans to make going forward to prevent it from happening again.

Top Rated Comments

106 months ago
“I’ll help find other criminals if you don’t arrest me, officer!”
Score: 13 Votes (Like | Disagree)
Jimmy Bubbles Avatar
106 months ago
What a f*****g joke! Just delete your account. He’s already quoted as saying “dumb f****ers...people trust me...”
Score: 6 Votes (Like | Disagree)
Mikey44 Avatar
106 months ago
I like how we all pretend that this isn't at all how Facebook is supposed to work anyways....

Facebook set up the greatest data collection infrastructure known to mankind, and people didn't expect it to be abused or even used in possibly nefarious purposes?

Even Obama's app, wasn't fully up to snuff as shown in this article here:
https://www.itworld.com/article/2832519/networking-hardware/obama-s-new-facebook-app-isn-t-presidential-material.html

And here's a bit more of what they were doing during the 2012 campaign:
https://www.theguardian.com/world/2012/feb/17/obama-digital-data-machine-facebook-election

Do I think what either of them were doing was correct? No, but to pretend that it wasn't the way these types of things work? Ha.

You are kidding yerself.
Score: 4 Votes (Like | Disagree)
Aluminum213 Avatar
106 months ago
This has to be satire
Score: 4 Votes (Like | Disagree)
Darmok N Jalad Avatar
106 months ago
I’m curious if Facebook profits from the data they collect about the people who don’t use Facebook. Would that count?
Score: 3 Votes (Like | Disagree)
fairuz Avatar
106 months ago
Can I turn in Facebook Messenger for Android and get the bounty? They're still recording call logs, last time I heard.
Score: 3 Votes (Like | Disagree)

Popular Stories

Dynamic Island iPhone 18 Pro Feature

11 Reasons to Wait for the iPhone 18 Pro

Monday May 11, 2026 9:01 am PDT by
We're only four months out from the launch of Apple's premium next-generation smartphone lineup, and while we're not expecting a sea change in terms of functionality, there are still several enhancements rumored to be coming to the iPhone 18 Pro and iPhone 18 Pro Max. One thing worth noting is that Apple is reportedly planning a major change to its iPhone release cycle this year, adopting a...
iOS 26

iOS 26.5 Features: Everything New in iOS 26.5

Monday May 11, 2026 5:09 pm PDT by
Apple released iOS 26.5 after a few months of beta testing, and while it doesn't have the Siri features we were hoping for since those are being held until iOS 27, there are a handful of useful changes worth knowing about. Subscribe to the MacRumors YouTube channel for more videos. End-to-End Encryption for RCS Support for end-to-end encryption (E2EE) for RCS messages between iPhone and...
General Apps Reddit Feature

Reddit Starts Blocking Mobile Website, Pushing Users to App Instead

Monday May 11, 2026 6:10 am PDT by
Social network Reddit recently began blocking mobile visitors to its website while pushing them to download the official Reddit app, and it's fair to say that the move is not going down well with users. If you visit reddit.com on your iPhone today, you may see a new popup that can't be dismissed, asking you to "get the app to keep using Reddit." A Reddit spokesperson told Ars Technica...