Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Compliance

US Probes Mobile Apps for Data Collection on Kids

WASHINGTON – US regulators have launched a series of probes on whether mobile apps targeted at children violate privacy laws by collecting and sharing data which can be used for detailed profiles, officials said Monday.

The Federal Trade Commission said its latest review of mobile apps available on Apple’s App Store and Google Play found that many collect personal data, and often share this with developers or marketers without disclosing this fact to parents.

WASHINGTON – US regulators have launched a series of probes on whether mobile apps targeted at children violate privacy laws by collecting and sharing data which can be used for detailed profiles, officials said Monday.

The Federal Trade Commission said its latest review of mobile apps available on Apple’s App Store and Google Play found that many collect personal data, and often share this with developers or marketers without disclosing this fact to parents.

Mobile App Data Collection “Our study shows that kids’ apps siphon an alarming amount of information from mobile devices without disclosing this fact to parents,” said FTC chairman Jon Leibowitz.

“All of the companies in the mobile app space, especially the gatekeepers of the app stores, need to do a better job. We’ll do another survey in the future and we will expect to see improvement.”

An FTC statement said the agency “is launching non-public investigations to determine whether certain entities in the mobile app marketplace are violating the Children’s Online Privacy Protection Act or engaging in unfair or deceptive practices in violation of the Federal Trade Commission Act.”

Jessica Rich, the FTC’s deputy enforcement chief, declined to provide details on the apps which might be targeted, but said that “if they violated the laws, we would bring an enforcement action.”

She said the agency was not identifying specific apps but hopes the developers and marketplaces can step up privacy protections.

“We’re not naming names in part because we think this is a systematic problem,” she said. “We don’t want people to think if they avoid certain apps they are home free.”

Advertisement. Scroll to continue reading.

Rich said most apps studied by the FTC “made no privacy disclosures at all” and that those which did so “failed to make available the critical information that parents need.”

Of particular concern, she said, was that apps were collecting and sharing data which could allow personal identification of children using mobile device, track their location or provide the phone numbers to marketers.

“Parents may not want their kids to be served ads and they definitely don’t want their kids to be served personalized ads based on profiles,” she said.

Based on the study, she said, “There is a potential to develop these detailed profiles. There was also a transmission of geolocation and phone numbers, which many parents would object to.”

Written By

AFP 2023

Click to comment

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

SecurityWeek’s Threat Detection and Incident Response Summit brings together security practitioners from around the world to share war stories on breaches, APT attacks and threat intelligence.

Register

Securityweek’s CISO Forum will address issues and challenges that are top of mind for today’s security leaders and what the future looks like as chief defenders of the enterprise.

Register

Expert Insights

Related Content

Compliance

The three primary drivers for cyber regulations are voter privacy, the economy, and national security – with the complication that the first is often...

Application Security

Fortinet on Monday issued an emergency patch to cover a severe vulnerability in its FortiOS SSL-VPN product, warning that hackers have already exploited the...

Audits

Out of the 335 public recommendations on a comprehensive cybersecurity strategy made since 2010, 190 were not implemented by federal agencies as of December...

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Application Security

Password management firm LastPass says the hackers behind an August data breach stole a massive stash of customer data, including password vault data that...

Application Security

Microsoft on Tuesday pushed a major Windows update to address a security feature bypass already exploited in global ransomware attacks.The operating system update, released...

Application Security

Electric car maker Tesla is using the annual Pwn2Own hacker contest to incentivize security researchers to showcase complex exploit chains that can lead to...

Compliance

Government agencies in the United States have made progress in the implementation of the DMARC standard in response to a Department of Homeland Security...