Uber Fined Nearly $1.2 Million By Dutch, UK Over 2016 Data Breach (cnbc.com) 30
British and Dutch authorities fined Uber a combined $1.17 million for a 2016 data breach that exposed the personal details of millions of customers. "The U.K.'s Information Commissioner's Office (ICO) announced a $491,284 fine against the ride-sharing company for 'failing to protect customers' personal information during a cyber attack' in October and November of 2016," reports CNBC. "The Dutch Data Protection Authority imposed its own $679,257 penalty for the same incident." From the report: The 2016 cyberattack allowed hackers to access the personal details, including full names, email addresses and phone numbers, of 2.7 million Uber customers in the U.K. and 174,000 in the Netherlands, authorities said. The U.K.'s ICO said the cyberattack represented a "serious breach" of the country's Data Protection Act of 1998 by exposing customers and drivers to increased risk of fraud. The Dutch regulator said it was fining Uber because it did not report the breach within the country's mandated 72-hour window.
In September, Uber agreed to pay $148 million to settle claims related to the 2016 data breach to states across the U.S. and Washington, D.C. In a statement Tuesday, an Uber spokesperson said the company is "pleased to close this chapter on the data incident from 2016."
In September, Uber agreed to pay $148 million to settle claims related to the 2016 data breach to states across the U.S. and Washington, D.C. In a statement Tuesday, an Uber spokesperson said the company is "pleased to close this chapter on the data incident from 2016."
Re: (Score:1)
Both the UK and the Netherlands fined Uber based on what pre-GDPR legislation allowed, because the GDPR only became effective earlier this year and the data breach happened in 2016. Under the GDPR maximum fine in both countries would have been 20 million euros or 4% of the worldwide annual turnover, whichever is greater. Don't expect the fine to be this low the next time this happens.
Re: (Score:2)
The next time what happens? Trying to hide a breach, or failing to magically stop an unknown attack by motivated thieves?
Re: (Score:2)
LOL (Score:2)
Brittan going dutch on their fines with Holland ?
*ducks
Re: (Score:2)
the problem remains if uptime trumps fully patched.
How would you full patch trump? I mean, he's been toupeed, but how would you patch him?
Re: (Score:2)
Orange man unpatched! >:-(
Re: (Score:2)
Dang... I missed that thanks for pointing that out. In such a hurry to make a bad joke I misspelled a very basic word.
so $0.43 for each person's data (Score:1)
not bad, i'm sure they've made way more off it anyway
Re: (Score:2)
Note that this breach happened in 2016. Both the Netherlands and Britain have dramatically increased the maximum fines since then. If that happened today there would be a few more zeros on that fine.
Wow, Have you ... (Score:2)
... seen this [bloomberg.com]?
Uber Technologies Inc. has been told by banks that it could be a $120 billion company when it goes public.
Re: (Score:2)
I saw a driver pick up an Uber Eats delivery at a take out, then get into his pretty green Lyft car to go deliver it.
Re: (Score:2)
That driver is only interested in money!
No company loyalty.
Oh, wait ...
Re: (Score:2)
Yeah, I see your point. Talk about disruptive!
This goes to taxing robots that replace humans.
Re: (Score:3, Insightful)
Do you avoid using Uber because you expect them to expose customer data to the world or do you have different reasons? There will be other companies you do buy goods or services from. Do you expect them to expose your personal data to the world, or do you avoid doing business with anybody because you value your privacy?
European privacy legislation is an attempt to restrict companies and other organizations to use personal data only for the purposes for which you gave them that data, and to be transparent ab
Dutch, UK? (Score:3)
Re: (Score:2)
The UK has nuclear weapons. Some of them are probably in United States (or Canada) territorial waters, with sufficient range to hit many (most) million plus cities in the contiguous US. Is that sufficient reason. (I assume that the Trumpian concept that "international law has no meaning" has already been hung from a tree in the finest lynching style. TrÃs American!)
million (Score:2)