HackDig : Dig high-quality web security articles for hacker

Uber to file federal suit against LA over users’ real-time location data

byLisa VaasUber is poised to file a federal lawsuit over Los Angeles’s demands for what the company (as well as privacy advocates and, presumably, state law) consider to be the city’s privacy-invading demands for real-time location data of its users.Uber provided an embargoed draft of the lawsuit, which a spokesperson said the company will file l
Publish At:2020-03-18 10:12 | Read:372 | Comments:0 | Tags:Law & order Privacy bikes CalECPA Fourth Amendment geolocati

Stalkerware developer dealt new blow by FTC

Last week, the US Federal Trade Commission (FTC) interpreted its broad consumer protection mandate to file a first-of-its-kind enforcement action against the developer of three mobile stalkerware applications. The developer was banned from further selling the apps unless significant changes were made in design and functionality. The FTC’s required change
Publish At:2019-11-11 23:20 | Read:921 | Comments:0 | Tags:Stalkerware Capital One consent agreement consent order data

A critical Improper Authentication vulnerability in Uber allowed password reset for any account

An Italian expert discovered a critical Improper Authentication vulnerability affecting the UBER platform that allowed password reset for any account. The Italian security expert Vincenzo C. Aka @Procode701 has discovered 7 months ago a critical vulnerability in UBER platform that allowed password reset for any Uber account. The researcher reported the ̵
Publish At:2017-05-18 16:45 | Read:4181 | Comments:0 | Tags:Breaking News Hacking Bug Bounty Improper Authentication Ube

French man sues Uber after privacy bug led wife to suspect adultery

Modern technology has probably done more than its fair share to ignite illicit relationships, but it can also lead to a romantic affair’s unravelling.But if your wife or husband becomes aware of an adulterous entanglement through a buggy app, do you blame yourself for having the affair in the first place, or do you blame the software that couldn’
Publish At:2017-02-09 18:00 | Read:4337 | Comments:0 | Tags:Featured Articles IT Security and Data Protection Privacy Ub

Uber pays $9,000 bug bounty payoff for partner firm’s vulnerability

A security expert discovered a flaw in a ransomware protection service that opened Uber service, and many others, to cyber attacks. The Russian penetration tester Vladimir Ivanov from the security firm Positive Technologies has discovered a vulnerability in anti-ransomware backup service Code42. The flaw could be exploited by attackers to steal data from the
Publish At:2017-01-30 01:55 | Read:3878 | Comments:0 | Tags:Breaking News Hacking Bug Bounty Uber XML external entity fl

Online Services and Hospitality Security Go Hand in Hand

Online services face the same hospitality security challenges as traditional hotels and taxi companies. A online hospitality provider must ensure the security of its infrastructure, clientele and the points at which the two intersect. To dig into the topic, we queried major industry players and reviewed a plethora of open source materials to determine how ot
Publish At:2017-01-13 22:00 | Read:5365 | Comments:0 | Tags:CISO Cloud Security Data Protection Data Privacy Hospitality

Uber asks to track your location even when you’re not using the app

The last update for the Uber app raises great concerns because it asks to track users’ location even when they’ve been dropped off and exited the program. The last update of the Uber App allows it to track the passengers’ locations even when they have been dropped off and the application is running in the background of a customer’s smartphone. With th
Publish At:2016-12-05 08:30 | Read:4520 | Comments:0 | Tags:Breaking News Digital ID Mobile Security mobile privacy trac

Uber Now Tracks Users’ Location Data After a Trip Ends

Uber has issued an update allowing the online transportation network company to track passengers’ data after a trip ends.Hoping to improve passengers’ experience using the service, Uber released the update as a means of broadening its ability to collect “trip-related data.” The company clarifies that point on its website:“Uber c
Publish At:2016-12-02 23:25 | Read:5240 | Comments:0 | Tags:Latest Security News data location Privacy Uber

Uber, Twitter, Other Major Tech Players Unite to Improve Cybersecurity Standards

Leading tech companies, including Uber, Twitter, Dropbox and Square, recently announced their collaboration to form the Vendor Security Alliance – a new coalition committed to improving cybersecurity standards.The VSA aims to establish cybersecurity standards that businesses can use to assess the security of potential third-party providers.The alliance will
Publish At:2016-09-19 18:20 | Read:3725 | Comments:0 | Tags:Latest Security News compliance risk security Twitter Uber v

Hacking Uber – Experts found dozen flaws in its services and app

Researchers discovered more than a dozen flaws in Uber app and websites, many of them allow hackers to access driver and passenger info. Security experts from the Integrity firm have found more than a dozen flaws in the Uber website that could be exploited by hackers to access driver and passenger data. The researchers discovered a total of security 14 issue
Publish At:2016-06-24 05:45 | Read:3688 | Comments:0 | Tags:Breaking News Hacking data leakage Uber Uber app

Psst: Here’s Uber’s most vulnerable code just waiting to be hacked

Over the past decade, there's been an explosion of bug bounty programs that pay hackers big cash rewards for finding vulnerabilities in applications and Web services. On Tuesday, ride-hailing service Uber became the latest company to embrace the trend with the unveiling of its own program.In most respects, the program is similar to those offered by Google, F
Publish At:2016-03-22 21:40 | Read:3276 | Comments:0 | Tags:Law & Disorder Risk Assessment Technology Lab bug bounty exp

This Week in Security: Adobe 0-Day Exploit, Dridex Disrupted, Vulnerable Androids

Our security roundup series covers the week’s trending topics in the world of InfoSec. In this quick-read compilation, we’ll let you know of the latest news and controversies that the industry has been talking about recently.Here’s what you don’t want to miss from the week of October 12, 2015:Dow Jones & Co., the publisher of The Wall Street Journal, rec
Publish At:2015-10-16 20:25 | Read:3357 | Comments:0 | Tags:This Week in Security Adobe Android botnet Dridex Malvertisi

Who is behind the hack of Uber’s driver database?

The findings of the investigation conducted by Uber on the recent security breach raise doubts on the alleged involvement of a competitor, the Lyft. The findings of the investigation conducted by Uber on the recent security breach that exposed details of its drivers, seems to confirm the involvement of a competitor, the Lyft.
Publish At:2015-10-09 21:10 | Read:3604 | Comments:0 | Tags:Breaking News Cyber Crime Cybercrime Hacking Lyft stolen dat

Some Uber ride data is publicly accessible through Google

Some Uber trip information is publicly accessible through simple Google queries, the set includes trip and user info, and home and work addresses. Rapid diffusion of technology makes easy phenomena of accidental data leakage, the last one is related to the popular car service Uber. Dozens of trips of Uber customers have been c
Publish At:2015-09-04 10:50 | Read:3363 | Comments:0 | Tags:Breaking News Security car service data leakage Hacking priv

Car Hackers Charlie Miller and Chris Valasek will work at Uber

Charlie Miller and Chris Valasek, the famous car hackers who recently demonstrated that some Fiat Chrysler cars can be remotely hijacked, have been hired by ridesharing giant Uber. The popular hackers Charlie Miller and Chris Valasek who recently hackers a Fiat connected car have announced that they have been hired by the Uber
Publish At:2015-08-31 18:55 | Read:3657 | Comments:0 | Tags:Breaking News Hacking Security Car hacking connected car Mil

Announce

Share high-quality web security related articles with you:)

Tools

Tag Cloud