Uber Expands Settlement With US FTC Related to 2016 Cyber-Attack

Advertisement
By Reuters | Updated: 13 April 2018 10:37 IST
Highlights
  • Uber accused of deceiving consumers about its data security practices
  • FTC learned Uber had failed to disclose a breach of consumer data
  • Breach occurred in 2016 affecting nearly 50 million US riders

The US Federal Trade Commission said on Thursday the ride-hailing company Uber Technologies had agreed to expand its proposed settlement with the agency over charges it deceived consumers about its privacy and data security practices.

The FTC said the expansion of the proposed settlement comes after the commission learned Uber had failed to disclose a "significant" breach of consumer data that occurred in 2016 affecting nearly 50 million US riders and compels Uber to disclosure future incidents.

Advertisement

The settlement does not impose any fines but said Uber could face civil penalties if it fails to disclose future incidents.

The FTC said Uber in November 2016 learned that intruders had again accessed consumer data the company stored on its third-party cloud provider's servers but did not disclose the incident for a year. The company said it had no evidence of fraud tied to the data breach.

Advertisement

The FTC said intruders used the access key to download from Uber's cloud storage unencrypted files containing more than 25 million names and email addresses, 22 million names and mobile phone numbers, and 600,000 names and driver's license numbers of US Uber drivers and riders.

"After misleading consumers about its privacy and security practices, Uber compounded its misconduct by failing to inform the Commission that it suffered another data breach in 2016 while the Commission was investigating the company's strikingly similar 2014 breach," said Acting FTC Chairman Maureen Ohlhausen. "The strengthened provisions of the expanded settlement are designed to ensure that Uber does not engage in similar misconduct in the future."

Advertisement

The FTC noted that Uber failed to disclose the breach immediately, even after it paid the intruders $100,000 (roughly Rs. 65 lakhs) through its third-party "bug bounty" program.

The new FTC order requires Uber to retain records related to bug bounty reports regarding some vulnerabilities.

Advertisement

In November 2017, Uber Chief Executive Officer Dara Khosrowshahi disclosed the data breach that affected 57 million people around the world and said the two individuals who led the response were no longer with Uber.

Uber Chief Legal Officer Tony West said in a statement Thursday that during his first week on the job in 2017 Uber publicly disclosed the incident.

"I am pleased that just a few months after announcing this incident, we have reached a speedy resolution with the FTC that holds Uber accountable for the mistakes of the past by imposing new requirements that reasonably fit the facts," West said.

© Thomson Reuters 2018

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Apps, Internet, Uber, FTC, US, Uber Data Breach
Advertisement

Related Stories

Popular Mobile Brands
  1. Casio AE-1600HX Series Launched With Up to 10 Years of Battery Life
  2. Samsung Sets Deadline for Messages App: Here's What Replaces It
  3. Euphoria Is Streaming Online: Know Where to Watch Sara Arjun's Social Thriller
  4. Valathu Vashathe Kallan Is Now Streaming: Know All About the Crime Thriller
  5. Oppo Find X9 Ultra to Feature 10x Optical Zoom and External Lens Kit
  6. No More Black? iPhone 18 Pro New Leak Reveals Bold New Colour Options
  1. No More Black? iPhone 18 Pro New Leak Reveals Bold New Colour Options for 2026
  2. China Urges Banks to Use Blockchain for Lending, Tax Data Sharing
  3. Meta to Fire 200 Employees, Phase Out Middle Manager Titles Amid AI Push: Report
  4. Glory OTT Release Confirmed: Where to Watch Pulkit Samrat and Divyendu Sharma Starrer Online
  5. Oppo Find X9 Ultra to Feature 10x Optical Zoom and External Lens Kit
  6. China Removes Bitchat App From Apple Store Over Regulatory Concerns
  7. WhatsApp Reportedly Rolls Out Noise Cancellation for Voice and Video Calls to Android Beta Users
  8. Samsung Galaxy S27 Pro to Reportedly Launch Next Year With the Privacy Display Feature
  9. iPhone Fold Trial Production Begins Ahead of Anticipated Launch in H2 2026: Report
  10. New Study Claims There Might Be Way More Pulsars in Space Than We Previously Thought
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.