Uber Says Hackers Behind 2016 Data Breach Were in Canada, Florida

Advertisement
By Reuters | Updated: 7 February 2018 12:48 IST

The two people who hacked ride-hailing firm Uber's data in 2016 were in Canada and Florida at the time, a company security executive told a US congressional committee on Tuesday.

About 25 million people whose data was compromised in the breach live in the United States, Uber Technologies chief information security officer John Flynn said in written testimony to a Senate Commerce Committee panel.

Of those, 4.1 million were drivers, said Flynn, whose testimony described new details about the hack, the handling of which prompted newly appointed Uber Chief Executive Officer Dara Khosrowshahi to fire two top security officials.

Advertisement

Uber disclosed the breach of 57 million worldwide users in November, about a year after it occurred.

Advertisement

Reuters reported in December that a 20-year-old man was primarily behind the breach, and that he was paid by Uber to destroy the data through a so-called "bug bounty" program, which is designed to reward researchers for uncovering security vulnerabilities.

Flynn confirmed the man who obtained data from Uber was in Florida and revealed that his partner, who first contacted the company on November 14, 2016, to demand a six-figure payment, was in Canada.

Advertisement

Uber's security team made contact with both people and received "assurances" the pilfered data had been destroyed before paying them $100,000 (roughly Rs. 64.12 lakhs), Flynn said. Sources familiar with the breach told Reuters in December the company did a forensic analysis of the Florida hacker's computer to verify the deletions.

A Canadian Royal Canadian Mounted Police representative said she had no immediate comment on the case.

Advertisement

Flynn said Uber had made mistakes, including paying the hackers through its "bug bounty" program.

"We made a misstep in not reporting to consumers, and we made a misstep in not reporting to law enforcement," Flynn said.

Republican and Democratic lawmakers admonished Uber for its delay in disclosing the breach.

"The fact that the company took approximately a year to notify impacted users raises red flags within this committee as to what systemic issues prevented such time-sensitive information from being made available to those left vulnerable," Republican Jerry Moran said.

Democratic Senator Richard Blumenthal said Uber's management of the hack was "morally wrong and legally reprehensible," and that the company appeared to violate state rules for data breach disclosure.

Compromised data includes names, phone numbers and email addresses but not Social Security numbers or credit card information of Uber users. Driver's license numbers of 600,000 drivers were also compromised.

© Thomson Reuters 2018

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. OnePlus 15 Battery Capacity, Charging Speed Teased Days Ahead of Launch
  2. Realme GT 8, Realme GT 8 Pro With Ricoh GR Optics Launched: See Price
  3. iQOO 15 Launched With Snapdragon 8 Elite Gen 5, 50-Megapixel Cameras
  4. OnePlus 15 India Launch Teased; Key Features Revealed Ahead of Launch
  5. Redmi K90 Pro Max Key Features Revealed Ahead of Launch on October 23
  6. BSNL Samman Plan For Senior Citizens Announced at This Price
  7. Jio Adds JioCloud Storage to Business Broadband Plans in India: See Price
  8. iQOO 15 vs iPhone 17 Pro Max: Features, Price and Specifications Compared
  1. CERT-In Asks Mozilla Firefox Users to Install Browser Updates to Remain Safe From Security Vulnerabilities
  2. WhatsApp Will Soon Crack Down on Spam by Limiting Messages in New Chats: Report
  3. Baai Tujhyapayi OTT Release Date Revealed: Know Everything About Streaming, Plot, Cast, and More
  4. OnePlus 15 Launch in India Teased via Microsite; Company Reveals Key Features Ahead of China Debut
  5. BSNL Samman Plan Announced For New Senior Citizen Users: Price, Benefits
  6. Daksha: The Deadly Conspiracy Is Streaming Now: Know All About This Mohan Babu, Lakshmi Manchu Starrer
  7. Vivo Led Market as Smartphone Shipments in India Rose 3 Percent YoY in Q3 2025: Omdia
  8. DeepSeek-OCR Open-Source AI Model Changes How AI Models Read and Process Plain Text
  9. Vivo X300 Pro, Realme GT 8 Pro and Poco Pad M1 Listed on TDRA Site, Could Launch Soon
  10. Poco F8 Ultra Listing on NBTC Certification Website Hints at Imminent Launch
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.