Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Protection

Uber Slip Exposes Data of Some US Drivers

Uber on Wednesday confirmed that a software slip briefly exposed personal data of hundreds of US drivers.

The controversial ride-sharing company said that it stomped out the bug within a half-hour of getting word of the problem from a driver on Tuesday.

Uber on Wednesday confirmed that a software slip briefly exposed personal data of hundreds of US drivers.

The controversial ride-sharing company said that it stomped out the bug within a half-hour of getting word of the problem from a driver on Tuesday.

“We were notified about a bug impacting a fraction of our US drivers,” an Uber spokesperson said in an email reply to an AFP inquiry.

“We’d like to thank the driver who drew it to our attention and apologize to those drivers whose information may have been affected.”

Posts in online forums such as Reddit indicated that exposed information included driving license, tax, and Social Security data.

Uber promised to follow-up with drivers whose details were exposed.

Information regarding no more than 674 drivers in the United States was believed to have been exposed, with fewer than 1,000 individual private documents made vulnerable to viewing.

Drivers had to log in to their own documents pages to see information belonging to other drivers.

Advertisement. Scroll to continue reading.

Limited information regarding some 50,000 Uber drivers in the United States was compromised early this year in a hacking incident that the California-based company is continuing to investigate.

– Delivering the goods –

Uber on Wednesday also unveiled a local delivery service for three US cities, aiming for a slice of the fast-growing segment.

Uber, which has been testing the service in some areas, said its new UberRUSH will allow consumers in Chicago, New York and San Francisco to get quick delivery of flowers, burritos or “pretty much anything in minutes.”

The new service competes with fast-growing startups like Postmates, and is aimed at helping merchants which lack delivery options to expand their consumer base.

Uber will collect fees of $5 to $6 for deliveries within one mile (1.6 kilometers), with the aim of getting the goods to consumers within minutes by car or bicycle courier.

The move came weeks after online giant Amazon began recruiting drivers for on-demand delivery of its products in its hometown of Seattle, Washington, with plans to launch in several other cities soon.

Uber’s ridesharing service has made it one of the world’s largest startups, operating in dozens of countries, but has faced regulatory hurdles in many areas and protests from established taxi operators.

Related: Uber Lures Facebook Security Chief Joe Sullivan to be CSO

RelatedUber Hires Car Hackers Charlie Miller, Chris Valasek

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

Professional services company Slalom has appointed Christopher Burger as its first CISO.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Data Protection

The cryptopocalypse is the point at which quantum computing becomes powerful enough to use Shor’s algorithm to crack PKI encryption.

Artificial Intelligence

The CRYSTALS-Kyber public-key encryption and key encapsulation mechanism recommended by NIST for post-quantum cryptography has been broken using AI combined with side channel attacks.

Data Breaches

LastPass DevOp engineer's home computer hacked and implanted with keylogging malware as part of a sustained cyberattack that exfiltrated corporate data from the cloud...

Compliance

The three primary drivers for cyber regulations are voter privacy, the economy, and national security – with the complication that the first is often...

Incident Response

Microsoft has rolled out a preview version of Security Copilot, a ChatGPT-powered tool to help organizations automate cybersecurity tasks.