Developer tracks real-time locations of Facebook Messenger users
Harvard student labels app ‘Marauders Map’ as it tracks movements of social network users
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
You are now subscribed
Your newsletter sign-up was successful
Facebook Messenger can track your location to within a metre, a developer has revealed after creating a program that allows others to pinpoint your whereabouts on a map.
Harvard computer science and mathematics student, Aran Khanna, has called his app Marauders Map after the Harry Potter books, as it allows people to discover the identity of Messenger app users, their location and previous movements.
The Chrome browser extension exploits the social network's default location settings on iOS and Android, which users must manually disable, and also uses GPS to place unsuspecting users on a map.
Writing on Medium, he said: "By simply looking at the cluster of messages sent late at night you can tell exactly where his [another user's] dorm is, and in fact approximately where his room is located in that dorm."
Looking into messages sent throughout the past few days, Khanna could build up a profile of other users' weekly schedules, predicting where one might be at any given time.
He could track the location of anyone he wasn't directly friends with too if they had sent messages to a group chat he was a member of.
He added: "Everyone I have shown this extension to has been anywhere from surprised to appalled that this much of their very personal data is online for their friends (and even complete strangers) to access.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
"I decided to write this extension, because we are constantly being told how we are losing privacy with the increasing digitization of our lives, however the consequences never seem tangible.
"With this code you can see for yourself the potentially invasive usage of the information you share, and decide for yourself if this is something you should worry about."
At Facebook's request, he has now disabled the official version of the Chrome browser extension, but has left instructions on Github for other developers to run their own versions of the tool.
-
ITPro Best of Show NAB 2026 awards now open for entriesThe awards are a fantastic opportunity for companies to stand out at one of the industry's most attended shows
-
Mistral CEO Arthur Mensch thinks 50% of SaaS solutions could be supplanted by AINews Mensch’s comments come amidst rising concerns about the impact of AI on traditional software
-
AI is “forcing a fundamental shift” in data privacy and governanceNews Organizations are working to define and establish the governance structures they need to manage AI responsibly at scale – and budgets are going up
-
26% of privacy professionals expect a “material privacy breach” in 2026 as budget cuts and staff shortages stretch teams to the limitNews Overworked, underfunded privacy teams are being left hung out to dry by executives
-
EU lawmakers want to limit the use of ‘algorithmic management’ systems at workNews All workplace decisions should have human oversight and be transparent, fair, and safe, MEPs insist
-
Data (Use and Access) Act comes into forcenews Organizations will be required to have an effective data protection complaints procedure and fulfil new requirements for online services that children are likely to use
-
UK businesses patchy at complying with data privacy rulesNews Companies need clear and well-defined data privacy strategies
-
Data privacy professionals are severely underfunded – and it’s only going to get worseNews European data privacy professionals say they're short of cash, short of skilled staff, and stressed
-
Four years on, how's UK GDPR holding up?News While some SMBs are struggling, most have stepped up to the mark in terms of data governance policies
-
Multicloud data protection and recoverywhitepaper Data is the lifeblood of every modern business, but what happens when your data is gone?