General Motors sued for selling customer driving data to third parties


Texas Attorney General Ken Paxton has sued General Motors (GM) for the unlawful collection and sale of over 1.5 million Texans’ private driving data to insurance companies without their knowledge or consent.

In June, the Attorney General (AG) announced he had opened an investigation into several car manufacturers over allegations that the companies had improperly collected mass amounts of data about drivers directly from the vehicles and then sold the information to third parties.

Read more…
Source: Malwarebytes Labs


Sign up for our Newsletter


Related:

  • Fujitsu says stolen data being sold on dark web ‘related to customers’

    August 30, 2021

    Data from Japanese tech giant Fujitsu is being sold on the dark web by a group called Marketo, but the company said the information “appears related to customers” and not their own systems. On August 26, Marketo wrote on its leak site that it had 4 GB of stolen data and was selling it. They provided ...

  • Indonesia: 1.3 million people had their sensitive personal data, COVID-19 test results and more exposed on an open server.

    August 30, 2021

    Researchers with vpnMentor have uncovered a data breach involving the COVID-19 test and trace app created by the Indonesian government for those traveling into the country. The ‘test and trace app’ — named electronic Health Alert Card or eHAC — was created in 2021 by the Indonesian Ministry of Health but the vpnMentor team, lead by ...

  • Indiana: COVID-19 Contact-Tracing Data Exposed, Fake Vax Cards Circulate

    August 19, 2021

    This week, the Indiana Department of Health issued a notice that the state’s COVID-19 contact-tracing system had been exposed via a cloud misconfiguration, revealing names, emails, gender, ethnicity, race and dates of birth of more than 750,000 people. The incident shows that COVID-19 data could be poised for abuse and misuse, according to experts, which is ...

  • US agencies scrub websites in bid to protect Afghans

    August 18, 2021

    Multiple United States agencies that operated in Afghanistan and worked with Afghan citizens have been hastily purging their websites, removing articles and photos that could endanger the Afghan civilians who interacted with them and now fear retribution from the Taliban. The online scrubbing campaign appeared to begin late last week when it became clear that the ...

  • Afghanistan: The Taliban have seized U.S. military biometrics devices

    August 17, 2021

    The Taliban have seized U.S. military biometrics devices that could aid in the identification of Afghans who assisted coalition forces, current and former military officials have told The Intercept. The devices, known as HIIDE, for Handheld Interagency Identity Detection Equipment, were seized last week during the Taliban’s offensive, according to a Joint Special Operations Command official ...

  • Secret terrorist watchlist with 2 million records exposed online

    August 16, 2021

    A secret terrorist watchlist with 1.9 million records, including classified “no-fly” records was exposed on the internet. The list was left accessible on an Elasticsearch cluster that had no password on it. In July this year, Security Discovery researcher Bob Diachenko came across a plethora of JSON records in an exposed Elasticsearch cluster that piqued his interest. Read ...