Amazon’s Ring has settled with the Federal Trade Commission (FTC) over charges that the company allowed employees and contractors to access customers’ private videos, and failed to implement security protections which enabled hackers to take control of customers’ accounts, cameras, and videos.
The FTC is now sending refunds totaling more than $5.6 million to US consumers as a result of the settlement. Ring LLC, which was purchased by Amazon in February 2018, sells internet-connected, home security cameras and video doorbells.
Read more…
Source: Malwarebytes Labs
Related:
- Facebook security breach: Up to 50m accounts attacked
September 28, 2018
Facebook has said “almost 50 million” of its users were left exposed by a security flaw. The company said attackers were able to exploit a vulnerability in a feature known as “View As” to gain control of people’s accounts. The breach was discovered on Tuesday, Facebook said, and it has informed police. Users that had potentially been affected ...
- EU lawmakers push for cybersecurity, data audit of Facebook
September 27, 2018
European Union lawmakers appear set this month to demand audits of Facebook by Europe’s cybersecurity agency and data protection authority in the wake of the Cambridge Analytica scandal. A draft resolution submitted Thursday to the EU Parliament’s civil liberties and justice committee urged Facebook to accept “a full and independent audit of its platform investigating data ...
- macOS Mojave Privacy Bypass Flaw Allows Access to Protected Files
September 24, 2018
A security researcher shows on Mojave’s release day that Apple’s latest privacy protection implementations in macOS are not sufficiently strong. In a minute-long clip, Patrick Wardle shows that the security in the dark-themed macOS can be bypassed to reach sensitive user data, such as the information in the address book. Talking to BleepingComputer, Wardle says that he ...
- Government mass surveillance breached human rights, says European court
September 13, 2018
Mass surveillance and data collection programs used by the UK government breached privacy and don’t meet the necessary legal requirements to guarantee rights will be upheld, the European Court of Human Rights (ECHR) has ruled. The court has concluded that the UK’s mass interception programmes breached the European Convention on Human Rights. The case of ‘Big ...
- Data management firm Veeam mismanages own data, leaks 445m records
September 12, 2018
A company which has built its reputation on global data management services appears to have left a treasure trove of data open to the prying eyes of the public. Baar, Switzerland-based Veeam calls itself the “global leader in intelligent data management” and offers “Hyper-Available” data management solutions able to merge traditional data backup and recovery tools with modern ...
- British Airways breach caused by the same group that hit Ticketmaster
September 11, 2018
A cyber-criminal operation known as Magecart is believed to have been behind the recent card breach announced last week by British Airways. The operation has been active since 2015 when RisqIQ and ClearSky researchers spotted the malware for the first time. The group’s regular mode of operation involves hacking into online stores and hiding JavaScript code that steals payment card information entered ...

