Uber used bug bounty program to launder blackmail payment to hacker

Channel:
Subscribers:
957
Published on ● Video Link: https://www.youtube.com/watch?v=EdQIQTYeXdc



Duration: 3:55
23 views
0


Uber used bug bounty program to launder blackmail payment to hacker.
In November, the CEO of Uber revealed that the company had paid a hacker $100,000 to delete data obtained from a 2016 breach in which 57 million Uber customers' and drivers' names, email addresses, and phone numbers were exposed. But the company did not reveal who the hacker was or how the payment was made.

A Reuters report now casts a bit more light on how the company concealed its blackmail payment—the money was paid out to an as-yet-unidentified Florida man through Uber's bug bounty program, now managed by HackerOne. How Uber officials confirmed the deletion of the data has not been revealed, and a number of US senators have asked for an investigation into the breach, citing questions about why Uber failed to contact law enforcement.

Further ReadingChicago: Uber’s claim that hackers fully deleted stolen data is “nonsensical”Uber's CEO, Dara Khosrowshahi, said in a blog post about the breach that "two individuals outside the company had inappropriately accessed user data stored on a third-party cloud-based service that we use," and that no payment data was exposed. But the driver's license data for about 600,000 Uber drivers was stolen, as was contact data for 57 million customers and drivers. "At the time of the incident," Khosrowshahi said, "we took immediate steps to secure the data and shut down further unauthorized access by the individuals. We subsequently identified the individuals and obtained assurances that the downloaded data had been destroyed. We also implemented security measures to restrict access to and strengthen controls on our cloud-based storage accounts."

Khosrowshahi said he had only recently learned of the breach and had ordered an internal investigation. Two unidentified security team members at Uber who dealt with the breach were fired.




Other Videos By Tech House


2017-12-07Tim Hwang Governments probably don’t need a Minister of AI
2017-12-07Apple’s top downloads in 2017 And the aw ard goes to…
2017-12-07Cloudera satisfies Q3 targets, raises fiscal year guidance
2017-12-07Saber Interactive Cla ssic s hooters show off technical chops
2017-12-07Instagram's favorite cat was hacked because we can't have nice things
2017-12-07Tech companies are paying $200 per hour to hire models for holiday parties — and they want
2017-12-07Best Galaxy S8 Alternatives
2017-12-07Windows 10 to get new cellular connectivity, power management improvements
2017-12-0710 stocking stuffers under $25 for everyone in your squad
2017-12-075 lessons U S startup communities should learn from 2017
2017-12-07Uber used bug bounty program to launder blackmail payment to hacker
2017-12-0712 books on science Bill Gates thinks everyone should read
2017-12-07The company that makes chips for top Android phones announced its new model – here's what
2017-12-07Lyft is now offering rides in self driving cars in a major US city
2017-12-07SingularityNET talks collaborative AI as its token sale hits 400% oversubscr iption
2017-12-07Raspberry Pi clone Libre Renegade $35 gets you Android, USB 3 0 and 4K video
2017-12-07Tech industry players are moving to Portugal Here’s why you should take notice
2017-12-07What's the hottest area in robotics Platforms that can help chip away at Amazon's lead
2017-12-07Removing Bitcoin payments from Steam is a smart move by Valve
2017-12-07Doppelgänging How to circumvent s ecurity products to execute code on Windows
2017-12-07Chinese bike sharing sharing startup Ofo has reportedly raised $1 billion



Tags:
Uber
used
bug
bounty
program
to
launder
blackmail
payment
hacker
Uber used bug bounty program to launder blackmail payment to hacker