Therecord.Media Audit Reveals Major Privacy Violations by Google, Microsoft, and Meta
Article Content
- •Audit found Google, Microsoft, and Meta ignoring opt-out signals for tracking cookies.
- •55% of sites studied set ad cookies despite user opt-out requests.
- •Potential for billions in fines due to violations of California privacy laws.
An independent audit by webXray has found that Google, Microsoft, and Meta are failing to honor user opt-out requests for tracking cookies, potentially violating California's privacy laws. The audit examined web traffic from over 7,000 popular websites in California during March 2026 and revealed that 55% of these sites set ad cookies despite users opting out. Google reportedly ignored opt-out signals 87% of the time, while Microsoft and Meta had failure rates of 50% and 69%, respectively. The findings suggest that 194 online advertising services are not complying with legally defined opt-out signals, which could lead to billions in fines for these tech giants. Each company has disputed the audit's findings, claiming misunderstandings regarding their tracking practices. The California Consumer Privacy Act (CCPA) allows users to opt out of the sale of their personal information, but the audit indicates widespread non-compliance. The implications of this audit could lead to significant regulatory scrutiny and potential legal actions against these companies.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (11)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…