A new study has demonstrated that even after regulatory restrictions on explicit ad targeting, algorithmic profiling remains prevalent on social media platforms such as Facebook. Researchers used a pipeline leveraging large language models (LLMs), specifically Gemini 2.0 Flash, to analyze over 435,000 Facebook ad impressions and found that these models could infer private user attributes—including age, gender, employment, education, and political preference—from ad exposure alone, with accuracy surpassing random guessing and demographic baselines. The study highlights that, despite Meta's removal of direct targeting options for sensitive categories, its ad ranking system still introduces demographic patterns that can be exploited by adversaries with access to visible ads.
Simultaneously, privacy advocates have raised concerns about Meta's new policy that personalizes ads and content based on users' interactions with its generative AI features across Facebook, Instagram, WhatsApp, and Messenger. The policy, which does not allow users to opt out, has prompted warnings that it could erode privacy protections, especially regarding sensitive topics discussed in AI chats. Experts question whether Meta's assurances about not using certain sensitive topics for ad targeting are sufficient, given the potential for indirect profiling and the use of proxy signals. The convergence of these developments underscores growing risks to user privacy from AI-driven ad targeting and profiling on major social media platforms.

See the reporting duties and controls this puts on the clock.
3 events from the most recent confirmed update back to the earliest known activity.
Researchers published a study showing that large language models could infer attributes such as age, gender, employment, education, and political preference from users' Facebook ad impressions, using analysis of more than 435,000 ads. The work found the technique could be scaled through browser extensions and may apply broadly to ad-driven platforms beyond Facebook.
Privacy advocates and experts publicly warned that Meta's new policy could weaken privacy protections, increase manipulation and scam-ad risks, and expose sensitive user information despite Meta's assurances about excluding certain topics from ad targeting. Critics also pointed to Meta's history of privacy violations and questioned the company's ability to reliably filter and audit such data use.
Meta implemented a policy allowing data from users' interactions with its generative AI features to be used to personalize content and advertising across Facebook, Instagram, WhatsApp, and Messenger. The policy drew concern because users reportedly could not opt out and may share sensitive information with the chatbots.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See what this changes for your reporting obligations and which controls it puts on the clock.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.