Sure, but we still need some term to disambiguate between "a company didn't protect my data against intruders" and "a company sold my data, then didn't like what the buyer did with it".

This isn't like the Equifax breach. It's not a result of Facebook's security practices. It's a result of Facebook's entire business model.

