Android Century
  • Home
  • Android Zone
    • Android Apps
    • Android Games
    • Apps APk Files
    • Games Apk Files
    • Apps Hack Tricks
  • Reviews
  • Fantasy Zone
    • Entertainment
    • Quotes and Status
    • Life Style
    • Home Made Tips
    • Hair Care
    • Skin Care
    • Fantasy Tips
  • Tricks
    • Free Recharge
    • Free Internet
    • shopping Cashback
    • Recharge Cashback
  • Tech
  • Mobiles
  • Gadgets
  • News
  • How To's
  • Software
Breaking
Loading...

Featured post

How to Take Great Photos With Apple's iPhone X

Recent Posts

Labels

  • Android Apk Files
  • Android Apps
  • Android Games
  • Apps Apk Files
  • Entertainment
  • Fantasy Tips
  • Gadgets
  • Hair Care
  • HomeMade Tips
  • How To's
  • News
  • Quotes
  • Quotes & Status
  • Recharge Cashback
  • Recharge Promo Codes
  • Shopping Cashback
  • Technology
  • skin care
Home / News / Smart teddy bear maker faces scrutiny over data breach response

Smart teddy bear maker faces scrutiny over data breach response

Latest Govt. Jobs 17:47:00 News Edit
screen shot 2017 02 27 at 4.33.35 pm

Did a toymaker ignore warnings about a data breach? That’s a key question swirling around Spiral Toys, a company behind a line of smart stuffed animals that security researchers worry can be easily hacked.
On Tuesday, Spiral Toys said the breach, which affects 800,000 user accounts, only came to its attention last week on Feb. 22.
The statement is raising eyebrows. One researcher named Victor Gevers began contacting the toymaker about the problem in late December, when he noticed that a company MongoDB database storing customer information was publicly exposed.
Gevers has even documented his efforts to contact Spiral Toys, which involved email, sending a message to its CEO over a LinkedIn invite, and working with a journalist from Vice Media to try and warn the company about the breach.
Despite those attempts, he never received a response.
The breach only managed to grab headlines on Monday when another security researcher named Troy Hunt blogged about it.  

Clashing views

The toys in question, which are sold under the CloudPets brand, can allow parents and their children to send voice messages through the stuffed animals over the internet. However, Hunt found evidence that hackers looted the exposed MongoDB database that stored the toys' customer login information.
“Anyone with the data could crack a large number of passwords, log on to accounts and pull down the voice recordings,” he said.
Why didn’t Spiral Toys act sooner? Its CEO Mark Meyers said on Tuesday that the company has checked its email inboxes, but didn’t find any messages from security researchers warning about the breach.
However, last week a journalist from Vice Media did contact the company about the incident, Meyers said.
Nevertheless, Spiral Toys didn’t speak with the journalist. “I can tell you, I think he was going to write an article that was damning one way or another. Why would you add to that?” Meyers said in an interview Monday.
“We looked at it (the problem) and thought it was a very minimal issue,” Meyers added.

Ongoing concerns

But security researchers don’t agree. It appears that several hackers have looted the exposed database from Spiral Toys, according to Hunt. Although the passwords exposed in the breach are hashed, cracking them can be easy, because many of them were created with guessable terms such as 123456, qwerty and cloudpets, he said.
“I’m just stunned at the nonchalance and total disregard for the privacy of parents and their kids,” Hunt said of Spiral Toys’ initial response to the incident.  
To deal with the breach, Meyers said on Monday it planned on forcing users to reset their passwords. But Hunt is questioning why the company didn’t act faster.   
“Why did they not do this when they originally learned of the breach? Why must it take public disclosure to force this?” he asked in his email.
Gevers said in a Twitter message: “I think I have tried enough to make contact.” However, he’d still like to speak with Spiral Toys about properly informing their customers about the breach.

Legal ramifications

A company like Spiral Toys, which is based in California, is required under state law to report a data breach involving user’s personal information. But it’s not unusual for a company to need several weeks or months to thoroughly investigate a breach before reporting it, said Lothar Determann a partner at law firm Baker McKenzie, who wrote a book on California privacy law.
"Companies have a duty to investigate breaches thoroughly," he said. In that away they can avoid false alarms that might needlessly scare consumers or end up throwing a business partner under the bus.
He declined to comment about any specific companies, but he also said that California’s data breach law is designed so that state residents can claim damages from companies that fail to comply with data breach notifications.  In addition, the state's attorney general has sued companies for failing to report data breaches without a valid reason, he said. 
Whether a plaintiff will win is another matter. Proving a data breach caused actual harm can often be speculative, he said. 
On Tuesday, Spiral Toys said the company would file a data breach report in California once its addressed customers' needs. But the company added that it’s found no evidence that any voice recordings made over the toy systems were exposed.  
"The CloudPet services have been running safely since March 2015 and we are taking all steps necessary to continue to run safely on our production servers," the company claimed in a statement.
Share on Facebook Share on Twitter Share on Google Plus

RELATED POSTS


Xiaomi Redmi 5 with 18:9 display

Vivo V9 with dual rear cameras

Xiaomi Redmi 5 launch
Smart teddy bear maker faces scrutiny over data breach response Smart teddy bear maker faces scrutiny over data breach response Reviewed by Latest Govt. Jobs on 17:47:00 Rating: 5

0 comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments ( Atom )

Search This Blog

TEST BOOK FOR GOVT ENTRANCE TEST

TEST BOOK FOR GOVT ENTRANCE TEST
Find All Latest book for preparation of SSC,RAILWAYBANK PO,RBI,BANK CLERK,GATE ME,GATE CE are available here in less prices, to check out the books click here

Translate

  • Popular Post
  • Random posts
  • Category

Popular Posts

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & Earn Offer:  Hey Guys! Today I make an article about Teen Patti Referral ...
  • Hands-on with the home windows 10 Creators update for the Xbox One: Beam recreation streaming arrives
    The Windows 10 Creators Update is here, now—yes,  now —but not (officially) on the PC. The ...
  • Taotronics TT-BH22 Headphones Review
    We make it a addiction to now not look up pricing of a product sooner than reviewing and if ...
  • Jio effect: Telcos may have to cut data rates 2017
    India's big  telecom  companies,  Bharti Airtel ,  Vodafone India  and  Idea Cellular , will be ...
  • Facebook co-founder learned programming language in 2 days www.goandroidapps.in
    Facebook co-founder learned programming language in 2 days www.goandroidapps.in
    Facebook co-founder learned programming language in 2 days:  Learning an entire programming ...
  • A Seagate 4TB outside tough power is simply $130 today
    It's  World Backup Day , and to celebrate the made up occasion, retailers are putting their ...

Random Posts

  • Beyond phones and 5G, mobile world seeks to reinvent itself
    Beyond phones and 5G, mobile world seeks to reinvent itself
    25.02.2017 - 0 Comments
    Seeking to escape a cycle of falling prices and tight regulation, big telecom operators from Vimpelcom to…
  • VR video on your Android phone: How to watch it, where to find it
    VR video on your Android phone: How to watch it, where to find it
    12.02.2017 - 0 Comments
    Your Android phone holds the key to virtual reality. Low-grade VR, mind you, but VR. Through Google’s…
  • Now new OnePlus 3T, 3 receiving Android 7.1.1 update via OxygenOS Open Beta
    Now new OnePlus 3T, 3 receiving Android 7.1.1 update via OxygenOS Open Beta
    02.03.2017 - 0 Comments
    If you are a OnePlus 3T or OnePlus 3 user, here is some good news for…
  • Garmin Vivofit 4 Review
    Garmin Vivofit 4 Review
    02.02.2018 - 0 Comments
    On The Lookout For a Fitness band that will monitor your basic job? Garmin thinks the Vivofit Four would…
  • RAPOO VPRO VH150 backlit gaming
    RAPOO VPRO VH150 backlit gaming
    11.02.2018 - 0 Comments
    Wireless peripheral products manufacturer RAPOO on Thursday launched the “VPRO VH150” backlit gaming…

Labels

Android Apk Files Android Apps Android Games Apps Apk Files Apps Hack Tricks Entertainment Free Internet Freecharge Gadgets Games Apk Files How To's Laptops Guide Mobiles Reviews Technology Viral's android zone free recharge

Entertainment

Tricks

Popular Posts

  • Reliance Jio set to charge subscribers from April 1,2017
    India's mobile-telephony companies are headed for a fresh round of price wars after the country's ...
  • Hands-on: HP's Lap Dock helps your Windows Phone feel more like a real PC
    HP’s Lap Dock ...
  • Boston Dynamics Handle robot can rock and roll your world
    ...
  • Jio effect: Telcos may have to cut data rates 2017
    India's big  ...
  • BenQ’s flagship photographer SW320 4K monitor in India costs Rs 1.25 lakh
    BenQ has launched ...
  • How To Install Xposed Framework On Bluestacks
    How To Install Xposed Framework On Bluestacks
    How To ...
  • LG V20 review
    LG VERDICT ...

Random Posts

  • Nokia 6 (2018) vs Nokia 6
    Nokia 6 (2018) vs Nokia 6
    15.01.2018 - 0 Comments
    Though design language largely remains the same as Nokia 6, HMD Global has brought in a few aesthetic…
  • How to Prevent Certain Photos from Showing Up in Android’s Gallery or Google Photos
    How to Prevent Certain Photos from Showing Up in Android’s Gallery or Google Photos
    05.03.2017 - 0 Comments
    Look, we get it: you don’t want every picture showing up in your gallery app on your Android…
  • How to Activate Ditto Tv One Year Premium Subscription Free [Lifetime Validity Trick Added] [1st On Net]
    How to Activate Ditto Tv One Year Premium Subscription Free [Lifetime Validity Trick Added] [1st On Net]
    05.03.2017 - 0 Comments
    Hello Readers , Hope You are enjoying with our recharge & loot tricks. Now Its Time to loot Ditto Tv…
  • Razer acquires Nextbit, sale of Robin smartphone ceased
    Razer acquires Nextbit, sale of Robin smartphone ceased
    04.02.2017 - 0 Comments
    Nextbit, the makers of the cloud-focused Robin smartphone, has been acquired by gaming peripheral company…
  • Zopo Color F2 specifications and brief review
    Zopo Color F2 specifications and brief review
    13.11.2016 - 0 Comments
    Zopo Color F2 smartphone was launched in November 2016. The phone comes with a 5.50-inch touchscreen…

Most Popular

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & ...
  • SAMSUNG GALAXY J7 (2016) REVIEWS
    SAMSUNG GALAXY J7 (2016) REVIEWS
    SAMSUNG GALAXY J ...
  • Top 5 Best SmartPhones under 7000 Rs (March 2017)
    Looking for the ...
  • Apple, IBM, Cisco are huge because of Indians, do not deny them H-1B visa: RBI Governor Urjit Patel
    ...
  • SAMSUNG GALAXY J7 (2016) Specifications
    SAMSUNG GALAXY J ...
  • BlackBerry Teases Marshmallow Beta Testing for Priv by Next Week
    Blackberry ...
  • LG Q6 Review
    LG Q6 Review
    2017 is ...

Contact Form

Name

Email *

Message *

Offers Zone

Created By Android Century Distributed by Android Century
  • Home
  • About us
  • Contact us
  • Privacy policy
  • Terms of use
  • Advertise here
Subscribe Via Email Subscribe To Android Century By Email And Get Free Updates. ;-)


Your email address is safe with us!