LIVE · cybersecurity feed
Live wire
security

New Mexico judge orders Meta to pay $567 million in kids online safety case

The money will be used to create a fund to mitigate social media harms, including by carving out $420 million for treatment for New Mexico youth who have been hurt on the platforms.

zeroday.news ·

A New Mexico state court judge has ordered Meta to pay $567 million and implement new restrictions on how youth interact with its platforms. The ruling, issued by Santa Fe-based Judge Bryan Biedscheid, designates Meta's platforms as a "public nuisance" and attributes them as a significant factor in the mental health crisis among New Mexico's youth.

The financial penalty includes $420 million earmarked for treatment for young people in New Mexico who have experienced harm on the platforms, with the remaining funds dedicated to public awareness campaigns and prevention efforts. This judgment follows a separate $375 million fine issued by a jury in March, which found Meta liable for deceiving users about the safety of Instagram and Facebook and facilitating the sexual exploitation of minors.

Judge Biedscheid's order imposes several operational changes on Meta within New Mexico. The company is prohibited from sending push notifications to youth users between 10 PM and 7 AM and must limit their engagement with its platforms to a maximum of 90 hours per month. Additionally, Facebook and Instagram are required to display public awareness screens detailing their child protection features and other relevant safety information.

Meta has stated its disagreement with the ruling and announced plans to appeal. A company spokesperson indicated that Meta works diligently to ensure user safety and has been transparent about the difficulties in identifying and removing malicious actors and harmful content. The company expressed confidence in its track record of protecting teenagers online and vowed to continue defending itself against claims it believes misrepresent the facts.

This case is considered a significant development, as it is the first of numerous lawsuits filed against Meta by state attorneys general. The ruling comes amidst growing legal pressure on social media companies regarding their impact on young users.

In a separate case in March, a California jury found Meta and YouTube responsible for a young girl's social media addiction and its alleged impact on her mental health, ordering Meta to pay $6 million. Meta is also facing approximately 1,200 lawsuits from school districts across the country. In May, the company reached a settlement with a Kentucky school district that had sought funding for mental health and academic interventions for students affected by its platforms.

ShareXLinkedInWhatsAppFacebook

More News

view all →
malwarehigh

Living off the coding agent: Two tales of tunnels and LaunchAgents

Agent-parented reverse tunnels and LaunchAgents can expose a local admin app to the internet. Endpoint still needs to treat that as high severity even when the activity looks like vibe-coded ops, not confirmed malware.

security

Military device manufacturer discloses cyber incident to SEC

IEH Corporation — which produces specialized products used in military satellites, missiles and fighter jets — said it discovered a cyberattack on Tuesday and immediately tried to contain it.

vulnerability

WordPress XSS2Shell Flaw Turns Simple Login Bug Into Full Server Takeover

WordPress XSS2Shell flaw enables admin takeover and remote code execution. Users should update to patched versions. Researchers at Pwn just published a report on a vulnerability chain they’re calling XSS2Shell, and the entry point is quite simple: type a username that doesn’t exist, and WordPress echoes it back with a tiny formatting flaw baked into […]

breach

Hackers Impersonate IT Support to Breach Leading Financial Companies

Hackers used fake IT help desks to steal MFA credentials, targeting over 200 firms, including major financial companies. A hacking campaign operating under names including Redact, Pink, Falcon, and Helix has built credential-stealing websites targeting employees at Blackstone, Bridgewater Associates, Apollo Global Management, Bain Capital, KKR, TPG, CME Group, Clearlake Capital, and Moody’s, among

security

Levi Strauss & Co. says hackers stole corporate data in cyberattack

Levi Strauss & Co. (Levi's) says that hackers used social engineering on three of its employees to gain access to and steal corporate data stored on their machines. [...]

vulnerability

N-able God mode flaw: Vendor confirms attackers reached customer networks as second hotfix lands

Attackers turned admin access into a route downstream, while N-able tells N-central customers to patch – again