Stay up to date with notifications from The Independent

Notifications can be managed in browser preferences.

Uber data hack could be investigated by EU privacy regulators

While EU data protection authorities cannot impose joint sanctions, they can set up task-forces to coordinate national investigations

Julia Fioretti
Friday 24 November 2017 09:46 GMT
Comments
Uber paid hackers $100,000 to keep secret the massive breach
Uber paid hackers $100,000 to keep secret the massive breach (Reuters)

European Union privacy regulators will discuss ride-hailing app Uber’s massive data breach cover-up next week and could create a task-force to coordinate investigations.

Uber faces regulatory scrutiny after chief executive Dara Khosrowshahi said the company covered up a data breach last year that exposed personal data from around 57 million accounts.

The chair of the group of European data protection authorities - known as the Article 29 Working Party - said on Thursday the data breach would be discussed at its meeting on 28 and 29 November.

While EU data protection authorities cannot impose joint sanctions, they can set up task-forces to coordinate national investigations.

When a new EU data protection law comes into force next May, regulators will have the power to impose much higher fines - up to 4 per cent of global turnover - and coordinate more closely.

Uber paid hackers $100,000 (£75,000) to keep secret the massive breach.

The stolen information included names, email addresses and mobile phone numbers of Uber users around the world, and the names and license numbers of 600,000 US drivers, Mr Khosrowshahi said. Uber declined to say what other countries may be affected.

“We cannot but voice our strong concern for the breach suffered by Uber, which was reported belatedly by the US company.

We initiated our inquiries and are gathering all the information that can help us assess the scope of the data breach and take the appropriate steps to protect any Italian citizens involved,” said Antonello Soro, President of the Italian Data Protection Authority on Wednesday.

The British data protection authority also said the concealment of the breach raised “huge concerns” about Uber’s data policies and ethics.

Long known for its combative stance with local taxi regulators, Uber has faced a stream of top-level executive departures over issues from sexual harassment to data privacy to driver working conditions, which led its board to remove Travis Kalanick as chief executive in June.

Reuters

Join our commenting forum

Join thought-provoking conversations, follow other Independent readers and see their replies

Comments

Thank you for registering

Please refresh the page or navigate to another page on the site to be automatically logged inPlease refresh your browser to be logged in