Google Accelerates Google+ Shutdown After New API Bug Exposes 52.5 Million Users
Google speeds up the closure of consumer Google+ to April 2019 after discovering a software bug that exposes the profile data of 52.5 million users. The company states that no third parties compromised its systems or misused the exposed information.
Google accelerates the shutdown of consumer Google+ from August 2019 to April 2019 following the discovery of a new software bug. The company reveals that this bug impacts approximately 52.5 million users by allowing app developers to access non-public profile information through a Google+ API. Google discovers the issue during standard testing procedures and fixes it within a week of its introduction.
The bug allows applications that request permission to view a user's public Google+ profile data to see additional information that the user sets to private. Furthermore, these apps gain access to profile data that other users share with the consenting user but do not make publicly available. Exposed details include names, email addresses, occupations, and ages, though the bug does not expose financial data, passwords, or national identification numbers.
As a direct result of this discovery, Google decides to expedite the closure of all Google+ APIs within the next 90 days. The company emphasizes that no third party compromises its systems and states there is no evidence that developers were aware of or misused the inadvertent access during the six days the bug is active. Google acknowledges the implications for developers but prioritizes the protection of its users in making this accelerated timeline.