Connect with us

Internet

US FTC Says Amazon Ring Violated Customer Privacy, Announces $5.8-Million Settlement

Avatar

Published

on

With an additional $25 million for children's privacy rights violations, the fines total $30.8 million.
By Reuters | Updated: 1 June 2023

A former employee of Amazon’s Ring doorbell camera unit spied for months on female customers in 2017 with cameras placed in bedrooms and bathrooms, the Federal Trade Commission said in a court filing on Wednesday when it announced a $5.8 million (roughly Rs. 47 crore) settlement with the company over privacy violations.

Amazon also agreed to pay $25 million (roughly Rs. 200 crore) to settle allegations it violated children’s privacy rights when it failed to delete Alexa recordings at the request of parents and kept them longer than necessary, according to a court filing in federal court in Seattle that outlined a separate settlement.

The FTC settlements are the agency’s latest effort to hold Big Tech accountable for policies critics say place profits from data collection ahead of privacy.

The FTC is also probing Amazon’s $1.7 billion (roughly Rs. 14,000 crore) deal to buy iRobot, which was announced in August 2022 in Amazon’s latest push into smart home devices, and has a separate antitrust probe underway into Amazon.

Amazon, which purchased Ring in April 2018, pledged to make some changes in its practices.

“While we disagree with the FTC’s claims regarding both Alexa and Ring, and deny violating the law, these settlements put these matters behind us,” Amazon said in a statement.

The FTC said Ring gave employees unrestricted access to customers’ sensitive video data: “As a result of this dangerously overbroad access and lax attitude toward privacy and security, employees and third-party contractors were able to view, download, and transfer customers’ sensitive video data.”

In one instance in 2017, an employee of Ring viewed videos made by at least 81 female customers and Ring employees using Ring products. “Undetected by Ring, the employee continued spying for months,” the FTC said.

A colleague noticed the misconduct and the employee was eventually terminated, the FTC complaint said.

In May 2018, an employee gave information about a customer’s recordings to the person’s ex-husband without consent, the complaint said. In another instance, an employee was found to have given Ring devices to people and then watched their videos without their knowledge, the FTC said.

As part of the FTC agreement with Ring, which expires after 20 years, Ring is required to disclose to customers how much access to their data the company and its contractors have.

In February 2019, Ring changed its policies so that most Ring employees or contractors could only access a customer’s private video with that person’s consent.

FTC Commissioner Alvaro Bedoya told Reuters the settlements should send a message to tech companies that their need to collect data was not an excuse to break the law. “This is a very clear signal to them,” he said.

The fines, totaling $30.8 million (roughly Rs. 250 crore), represent a fraction of Amazon’s $3.2 billion (roughly Rs. 26,400 crore) first-quarter profit.

In its complaint against Amazon filed in Washington state, the FTC said that it violated rules protecting children’s privacy and rules against deceiving consumers who used Alexa. For example, the FTC complaint says that Amazon told users it would delete voice transcripts and location information upon request, but then failed to do so.

“The unlawfully retained voice recordings provided Amazon with a valuable database for training the Alexa algorithm to understand children, benefiting its bottom line at the expense of children’s privacy,” the FTC said.

© Thomson Reuters 2023

Internet

Australia Inc roiled by string of cyber attacks since late 2022

Avatar

Published

on

By Reuters | Updated: 29 September 2023

Sept 29 (Reuters) – Australian firms have suffered many cyber attacks since September 2022, putting the spotlight on the country’s understaffed cybersecurity industry that experts say seems ill-equipped to tackle such hacks, endangering sensitive information of people.

Here is a list of companies that have been hit by data breaches:

OPTUS
Australia’s second-largest mobile operator and a unit of Singapore Telecommunications (STEL.SI) was the first to report a data breach in September that affected up to 10 million customers, about 40% of the nation’s population. The exposed data included home addresses, drivers’ licences and passport numbers.

Sept 29 (Reuters) – Australian firms have suffered many cyber attacks since September 2022, putting the spotlight on the country’s understaffed cybersecurity industry that experts say seems ill-equipped to tackle such hacks, endangering sensitive information of people.

Here is a list of companies that have been hit by data breaches:

OPTUS
Australia’s second-largest mobile operator and a unit of Singapore Telecommunications (STEL.SI) was the first to report a data breach in September that affected up to 10 million customers, about 40% of the nation’s population. The exposed data included home addresses, drivers’ licences and passport numbers.

WOOLWORTHS
Australia’s biggest grocer Woolworths Group Ltd (WOW.AX) said in October its majority-owned online retailer MyDeal identified that a “compromised user credential” was used to access its systems, exposing email addresses, phone numbers and delivery addresses of about 2.2 million customers.

FORCENET
Australia’s Assistant Minister For Defence Matt Thistlethwaite said on Oct. 31 that hackers targeted a communications platform used by the country’s military personnel and defence staff with a ransomware attack but that no data was compromised.

DAILOG
IT services consulting firm Dailog, another unit of Singapore Telecommunications (STEL.SI), faced a cyber attack that potentially affected 1,000 current and former employees and fewer than 20 client, the company said on Oct. 10.

AUSTRALIAN CLINICAL LABS
Medlab, a unit of Australian Clinical Labs Ltd (ACL.AX), one of the country’s largest pathology providers, suffered a breach in the same month that exposed data of about 223,000 patients.

MEDIBANK
Health insurer Medibank Private (MPL.AX), which covers about one-sixth of Australians, said in November that personal and significant amounts of health claims data of around 9.7 million of its current and former customers were compromised, forcing it to flag a hit to earnings and withdraw forecast for a key metric.

On June 20, Medibank confirmed that a file containing names and contact details of staff members had been compromised after its building manager faced a cybersecurity breach.

TELSTRA
Australia’s largest telecoms operator Telstra (TLS.AX) in early October suffered what it called a small data breach, which exposed data of about 30,000 current and former employees dating back to 2017.

On Dec. 11, Telstra said 132,000 customers were affected by an internal error which led to the disclosure of certain customer details.

BWX
Skin and hair care products maker BWX Limited said in November a malicious code was “unlawfully” entered onto one of its websites that may have compromised credit card numbers and expiry dates of about 2,500 customers.

TPG TELECOM
Australia’s No.2 internet service provider TPG Telecom (TPG.AX) said in December it had been notified of unauthorised access to a hosted exchange service that hosts email accounts of up to 15,000 business customers.

CBA
Commonwealth Bank of Australia (CBA.AX) said on March 8 its Indonesian unit, PT Bank Commonwealth (PTBC), had been hit by a cyber incident involving unauthorised access of a web-based software application used for project management.

IPH
Days later, Australian intellectual property services provider IPH Ltd (IPH.AX) said it had detected unauthorised access to a portion of its IT environment, compromising information including administrative documents and some client documents.

LATITUDE
Australian digital payments and lending firm Latitude Group Holdings Ltd (LFS.AX) said on March 16 a hacker had stolen personal information held by two service providers, compromising about 103,000 identification documents and 225,000 customer records.

On April 11, the firm said it will not pay a ransom to the hackers as it saw no assurance that the payment would result in the return or destruction of the stolen data, and it did not want to reward criminal behaviour.

TECHNOLOGYONE
Australia’s TechnologyOne Ltd (TNE.AX) said on May 10 it had detected an unauthorised third-party access to its back-office systems, becoming the latest target in a series of cyber attacks that has bogged companies in the country since last year.

SMARTPAY
New Zealand-based Smartpay Holdings (SPY.NZ) disclosed a ransomware attack confirming the theft of information from customers in Australia and New Zealand, making it the latest victim in a slew of cyberattacks in the region.

SHELL
Shell Plc (SHEL.L) said on Sept 15 that it has identified a cybersecurity incident involving some employees who worked with its unit BG Group in Australia before the merger, becoming the latest victim of the MOVEit hack.

ENERGY ONE
Australian software supplier Energy One (EOL.AX) said on Sept. 29 it has not uncovered any evidence of malicious activity on its customer systems after the company identified a cyber incident in August. The company’s investigations found no evidence of compromise of personal information of its current and former employees, it said, adding that Energy One continues to securely trade.

© Thomson Reuters 2023

Continue Reading

Internet

OpenAI, Jony Ive in talks to raise $1 billion from SoftBank for AI device venture, Financial Times reports

Avatar

Published

on

By Reuters | Updated: 28 September 2023

Sept 28 (Reuters) – ChatGPT maker OpenAI is in advanced talks with former Apple designer Jony Ive and SoftBank’s (9984.T) Masayoshi Son to build the “iPhone of artificial intelligence”, fuelled by more than $1 billion in funding from the Japanese conglomerate, the Financial Times reported on Thursday.

Sam Altman, OpenAI’s chief, has tapped Ive’s company LoveFrom to develop the ChatGPT creator’s first consumer device, the report said.

Discussions are said to be “serious” but no deal has been agreed on, and it could be several months before a venture is formally announced, the report said, adding that Son, Altman and Ive have discussed creating a company that would draw on talent and technology from their three groups.

SoftBank declined to comment on the FT report. OpenAI did not immediately respond to a Reuters request for comment. Ive and LoveFrom could not be reached for comment.

Tech website The Information first reported on Tuesday that Ive and Altman have been discussing building a new AI hardware device and that Softbank’s Son has also been involved in some aspects of the conversation.

Ive was a close creative collaborator with Apple co-founder Steve Jobs. He spent more than two decades at the tech giant and led the design of the candy-colored iMacs that helped Apple re-emerge from near death in the 1990s as well as the design of the iPhone.

SoftBank has been looking for deals in AI, including a potential investment in OpenAI, after the blockbuster listing of its Arm unit, the FT reported earlier this month, adding that Son was looking to invest tens of billions of dollars in the technology.

© Thomson Reuters 2023

Continue Reading

Internet

Leonardo’s air booking system resumes after cyberattack, Rostec says

Avatar

Published

on

By Reuters | Updated: 28 September 2023

MOSCOW, Sept 28 (Reuters) – Russian state conglomerate Rostec said on Thursday it had restored normal operations at its Leonardo air booking system following what it called a “massive cyberattack from abroad”.

“The cyberattack has been successfully repelled,” Rostec said in a statement.

It described the incident as a Distributed Denial-of-Service (DDoS) Attack”, in which the attacker floods a server with internet traffic to prevent users from accessing connected online services and sites.

Rostec gave no further information. The company controls much of Russia’s weapons industry.

© Thomson Reuters 2023

Continue Reading

Internet

Micron shares fall as demand recovery ‘off to slow start’

Avatar

Published

on

By Reuters | Updated: 28 September 2023

Sept 28 (Reuters) – Micron Technology’s (MU.O) first-quarter loss forecast has triggered concerns of a sluggish recovery in the memory chip maker’s end-markets such as data centers, sending its shares down about 5% in premarket trading on Thursday.

The company on Wednesday forecast a bigger loss than analysts had expected and a return to positive gross margin in the second half of fiscal 2024, later than Wall Street expectations for the first half.

Micron has been under-utilizing its production capacity to match supply with a slump in demand for memory chips that started last year, but analysts have said excess inventory appears to have cleared in most of its end-markets such as smartphones and personal computers.

Low memory prices since early last year have also been hurting Micron’s profit margin.

“The recovery path is off to a slow start,” analysts at Evercore ISI said in a note.

Still, analysts were hopeful that the artificial intelligence (AI) boom should boost overall prospects for the company, which expects “several hundred million” dollars worth of revenue from its new high-bandwidth chips, meant for AI work, next year.

Micron is also working to become a supplier to AI chip giant Nvidia (NVDA.O), it said on Wednesday.

The company forecast adjusted loss per share of $1.07 for the current quarter, steeper than analysts’ estimates for a 95 cents-per-share loss.

Citigroup now expects Micron to post a loss of $1.79 per share in fiscal 2024, compared with its earlier estimate of a 99 cent profit.

A correction across the semiconductor industry had sent Micron’s shares roughly 50% lower last year. Those losses have largely been recouped, with its shares rising about 36% in 2023 as investors hoped for a recovery.

Micron’s price-to-earnings ratio for the trailing 12-month period is a negative 16.3, per data from LSEG.

© Thomson Reuters 2023

Continue Reading

Internet

Citadel ready to battle SEC over WhatsApp probe, Bloomberg reports

Avatar

Published

on

Citadel ready to battle SEC over WhatsApp probe, Bloomberg reports
By Reuters | Updated: 27 September 2023

Sept 27 (Reuters) – Billionaire Ken Griffin’s Citadel will take a tougher stance against the U.S. Securities and Exchange Commission and is willing to take the regulator to court over its WhatsApp probe, Bloomberg News reported on Wednesday citing people familiar with the matter.

The SEC has collected thousands of staff messages from more than a dozen major investment companies, escalating its probe into Wall Street’s use of private messaging apps to discuss work, Reuters had reported earlier this week.

The firms targeted by the SEC include Carlyle Group (CG.O) , Apollo Global Management(APO.N), KKR & Co (KKR.N), TPG (TPG.O), and Blackstone(BX.N), as well as some hedge funds such as Citadel.

A spokesperson from the SEC declined to comment. Citadel did not immediately respond to a Reuters request for comment.

The Miami-based firm would be the first to take the SEC to court over allegations of untracked communications, the report added, in contrast to almost two dozen banks that have chosen to pay hefty settlements over the last couple of years.

Reporting by Pritam Biswas in Bengaluru; Editing by Krishna Chandra Eluri

© Thomson Reuters 2023

Continue Reading

Internet

Apple’s App Store Missing From List Mobile Storefronts Submitting Filings to China’s CAC Under New Rules

Avatar

Published

on

A total of 26 app stores operated by companies including Tencent, Huawei, Baidu, Xiaomi and Samsung have submitted filings to the authority.
By Reuters | Updated: 27 September 2023

China’s cyberspace regulator released on Wednesday names of the first batch of mobile app stores that have completed filing business details to regulators, signalling it has begun to enforce new rules that expand its oversight of mobile apps.

A total of 26 app stores operated by companies including Tencent, Huawei, Ant Group, Baidu, Xiaomi and Samsung have submitted filings to the authority, according to the Cyberspace Administration of China (CAC).

Apple’s App Store is not among the app stores on the list. Apple did not immediately respond to Reuters’ request for comment.

China’s cyberspace regulator released on Wednesday names of the first batch of mobile app stores that have completed filing business details to regulators, signalling it has begun to enforce new rules that expand its oversight of mobile apps.

A total of 26 app stores operated by companies including Tencent, Huawei, Ant Group, Baidu, Xiaomi and Samsung have submitted filings to the authority, according to the Cyberspace Administration of China (CAC).

Apple’s App Store is not among the app stores on the list. Apple did not immediately respond to Reuters’ request for comment.

In August this year, the Ministry of Industry and Information Technology published another notice requiring mobile apps to complete filing by the end of March.

Earlier this month, Reuters reported that app stores operated by companies including Tencent and Huawei have started demanding apps on their app stores comply with the new rules.

Apple has not disclosed how its app store in China will comply with Beijing’s new rules. Experts said Apple’s compliance could lead to tens of thousands of apps being removed from Apple’s App Store in China.


© Thomson Reuters 2023

Continue Reading

Trending