France’s data protection agency said Thursday that it had fined the US ride-hailing group Uber 400,000 euros ($460,000) over a 2016 data breach that exposed the personal data of some 57 million clients and drivers worldwide.
Uber drew the wrath of users and regulators after the company waited a year before revealing in November 2017 that hackers had infiltrated its systems.
The French Data Protection Authority said the breach would have been prevented “if certain elementary security measures had been in place.”
Uber has already paid $148 million to US authorities to avoid a potentially embarrassing court case, and vowed to improve its security efforts.
Last month, the Netherlands imposed a 600,000-euro fine over the breach and Britain ordered Uber to pay 385,000 pounds ($490,000).
The company, which is widely expected to launch a public stock offering next year, has been trying to burnish its reputation after a series of scandals over executive misconduct and its competitive practices.
Uber was informed about the breach by the hackers themselves, and the firm paid them $100,000 to keep quiet about their exploit and destroy the data.
The company said it has learnt lessons from its mistakes in the incident and has hired top-notch security experts.
“After the incident and in the following years we made several technical improvements to our security,” an Uber spokeswoman said Thursday.
“We have also made important changes to our management to insure transparency with regulatory authorities and clients,” she added.

More from AFP
- Amazon Settles Ring Customer Spying Complaint
- France Punishes Clearview AI For Failing To Pay Fine
- Twitter Celebrity Hacker Pleads Guilty in US
- Pro-Russian Hackers Claim Downing of French Senate Website
- Microsoft Expands AI Access to Public
- Hackers Promise AI, Install Malware Instead
- Australian Finance Company Refuses Hackers’ Ransom Demand
- Tesla Sued Over Workers’ Alleged Access to Car Video Imagery
Latest News
- Insider Q&A: Artificial Intelligence and Cybersecurity In Military Tech
- In Other News: Government Use of Spyware, New Industrial Security Tools, Japan Router Hack
- OpenAI Unveils Million-Dollar Cybersecurity Grant Program
- Galvanick Banks $10 Million for Industrial XDR Technology
- Information of 2.5M People Stolen in Ransomware Attack at Massachusetts Health Insurer
- US, South Korea Detail North Korea’s Social Engineering Techniques
- High-Severity Vulnerabilities Patched in Splunk Enterprise
- Idaho Hospitals Working to Resume Full Operations After Cyberattack
