Security News

Uber to get privacy audit every two years (Help Net Security)
2017-08-16 15:35

Uber has agreed to implement a comprehensive privacy program and obtain regular, independent audits to settle Federal Trade Commission charges that they deceived consumers by failing to monitor...

Uber Settles Complaint Over Data Protection for Riders, Drivers (Security Week)
2017-08-15 15:11

Uber agreed to implement new data protection measures to settle complaints that it failed to prevent improper snooping on driver and customer information, officials said Tuesday. read more

Uber Drivers Hacking the System to Cause Surge Pricing (Schneier on Security)
2017-08-08 14:35

Interesting story about Uber drivers who have figured out how to game the company's algorithms to cause surge pricing: According to the study. drivers manipulate Uber's algorithm by logging out of...

Uber Patches Authentication Bypass Vulnerability on Custom SSO Solution (Threatpost)
2017-07-12 16:36

Uber patched an authentication bypass vulnerability in its homegrown SSO solution that allowed attackers to take over subdomains and steal session cookies.