Jump to content

Uber pays hacker's ransom and had them sign NDAs

spartaman64
Quote

Instead of reporting the hackers to police, the company allegedly paid $100,000 in exchange for a promise to delete 57 million user files the men stole off a third party server, prosecutors said. 

Within weeks of paying the ransom, Uber employees showed up at Brandon Glover's Winter Park, Florida, home and found Vasile Mereacre at a hotel restaurant in Toronto, Canada, the Justice Department said. The pair admitted their crimes, but Uber didn't turn them over to the cops. Instead, they had the hackers sign non-disclosure agreements, promising to keep quiet. The two hackers pleaded guilty on Wednesday.  

Quote

But there was a third person involved who was unknown to Uber, U.S. attorney for Northern California Dave Anderson told CBS News correspondent Kris Van Cleave in an exclusive interview. Anderson, who investigated the hack, said there's "no way to know definitively" what actually happened to the stolen data. 

Quote

The hackers also targeted a company owned by LinkedIn in December of 2016, but prosecutors say LinkedIn did not pay and promptly reported the hack to police. Uber eventually did as well — a year after the hack, when new CEO, Dara Khosrowshahi, publicly disclosed the attack.

Asked about the culture at Uber in 2018, Khosrowshahi told CBS News, "I think we've definitely made steps in the right direction but the work of culture is never done. … Are we going to make mistakes? Yep, but are we going to get better every year? Absolutely." 

Quote

The two known hackers were eventually arrested and pleaded guilty on Wednesday to conspiracy to commit extortion charges. They face a maximum of five years in prison. The third person involved remains at large.

source: https://www.cbsnews.com/news/uber-hack-company-allegedly-paid-hackers-ransom-had-them-sign-ndas/

 

Wtf they didn't even ask for their money back though I guess 100,000 dollars to uber is like nothing. I guess uber really didn't want people to know about the breach and how did uber not only find out who they are but knew where to find them? Shit an uber hitman might show up at my house next week because I posted this. If i mysteriously stop posting you guys know what happened. But this is crazy uber found out who they were and tracked them down just to have them sign NDAs XD. Uber should have taken them to the police imagine if the headline instead was uber tracks down hackers, shows up at their house and hauls them to the police station. People would be like dang uber's badass I ain't even mad my information got stolen. ... Ok maybe they'd still be mad but still.

Link to comment
Share on other sites

Link to post
Share on other sites

Uber: hey, you hacked us, we'll give you money, but you cannot tell anyone about this

hackers: and we won't go to jail?

Uber: yep, we wont report you.

 

*gets out in the public anyway*

*hackers go to prison anyway*

 

image.png.ea613fb6a74b40898ba8b1f36d8527e9.png

 

really nailing it there Uber

 

 

EDIT: "There's incompetence, and then there's us. Uber. Everyone's private driver" 

🌲🌲🌲

 

 

 

◒ ◒ 

Link to comment
Share on other sites

Link to post
Share on other sites

My biggest question would be why did they agree to sign the NDA?Hackers don't exactly abide by rules & laws.

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, Windows7ge said:

My biggest question would be why did they agree to sign the NDA?Hackers don't exactly abide by rules & laws.

They already had the money, promising to keep quiet in exchange for not going to prison is a pretty one sided deal.

Main Rig:-

Ryzen 7 3800X | Asus ROG Strix X570-F Gaming | 16GB Team Group Dark Pro 3600Mhz | Corsair MP600 1TB PCIe Gen 4 | Sapphire 5700 XT Pulse | Corsair H115i Platinum | WD Black 1TB | WD Green 4TB | EVGA SuperNOVA G3 650W | Asus TUF GT501 | Samsung C27HG70 1440p 144hz HDR FreeSync 2 | Ubuntu 20.04.2 LTS |

 

Server:-

Intel NUC running Server 2019 + Synology DSM218+ with 2 x 4TB Toshiba NAS Ready HDDs (RAID0)

Link to comment
Share on other sites

Link to post
Share on other sites

I would have gotten their money AND sold the user details for more. 100K for 57 million user details? they got ripped off.

mY sYsTeM iS Not pErfoRmInG aS gOOd As I sAW oN yOuTuBe. WhA t IS a GoOd FaN CuRVe??!!? wHat aRe tEh GoOd OvERclok SeTTinGS FoR My CaRd??  HoW CaN I foRcE my GpU to uSe 1o0%? BuT WiLL i HaVE Bo0tllEnEcKs? RyZEN dOeS NoT peRfORm BetTer wItH HiGhER sPEED RaM!!dId i WiN teH SiLiCON LotTerrYyOu ShoUlD dEsHrOuD uR GPUmy SYstEm iS UNDerPerforMiNg iN WarzONEcan mY Pc Run WiNdOwS 11 ?woUld BaKInG MY GRaPHics card fIX it? MultimETeR TeSTiNG!! aMd'S GpU DrIvErS aRe as goOD aS NviDia's YOU SHoUlD oVERCloCk yOUR ramS To 5000C18

 

Link to comment
Share on other sites

Link to post
Share on other sites

2 minutes ago, Tegos said:

They're very nice hackers

4 minutes ago, Master Disaster said:

They already had the money, promising to keep quiet in exchange for not going to prison is a pretty one sided dealblockquote widget

Link to comment
Share on other sites

Link to post
Share on other sites

5 minutes ago, Windows7ge said:

My biggest question would be why did they agree to sign the NDA?Hackers don't exactly abide by rules & laws.

tbh wouldnt be surprised if they bribed some new dev with porn for access to the server while they were running kali linux and having their room crowded with hax0r memorabilia

 

(if you can't tell, this is a stereotype for 'hackers' who heavily exaggerate their skill)

i like trains 🙂

Link to comment
Share on other sites

Link to post
Share on other sites

10 minutes ago, Master Disaster said:

They already had the money, promising to keep quiet in exchange for not going to prison is a pretty one sided deal.

Makes sense

 

8 minutes ago, Tegos said:

They're very nice hackers.

Clearly, in the world of big business only asking for $100K is a courtesy.

 

Edit:

Sorry you two. Mobile browser had a seizure and wouldn't let me fix the error.

Link to comment
Share on other sites

Link to post
Share on other sites

donald-trump_650x400_51484158804.jpg

CBS! You're fake news!

CPU: Ryzen 5800X3D | Motherboard: Gigabyte B550 Elite V2 | RAM: G.Skill Aegis 2x16gb 3200 @3600mhz | PSU: EVGA SuperNova 750 G3 | Monitor: LG 27GL850-B , Samsung C27HG70 | 
GPU: Red Devil RX 7900XT | Sound: Odac + Fiio E09K | Case: Fractal Design R6 TG Blackout |Storage: MP510 960gb and 860 Evo 500gb | Cooling: CPU: Noctua NH-D15 with one fan

FS in Denmark/EU:

Asus Dual GTX 1060 3GB. Used maximum 4 months total. Looks like new. Card never opened. Give me a price. 

Link to comment
Share on other sites

Link to post
Share on other sites

24 minutes ago, pierom_qwerty said:

tbh wouldnt be surprised if they bribed some new dev with porn for access to the server while they were running kali linux and having their room crowded with hax0r memorabilia

 

(if you can't tell, this is a stereotype for 'hackers' who heavily exaggerate their skill)

What hacking Uber looked like. *turn your volume down first* ;)

 

Link to comment
Share on other sites

Link to post
Share on other sites

This reminds me of a dupe glitch in Runescape about 2003 I think. Jagex couldn't figure out how it worked, and it was destroying the economy. They offered anyone who could show them how to do it free lifetime membership status. IIRC- a bunch of people snitched on themselves- the very first person did get lifetime membership, the rest were banned. 

muh specs 

Gaming and HTPC (reparations)- ASUS 1080, MSI X99A SLI Plus, 5820k- 4.5GHz @ 1.25v, asetek based 360mm AIO, RM 1000x, 16GB memory, 750D with front USB 2.0 replaced with 3.0  ports, 2 250GB 850 EVOs in Raid 0 (why not, only has games on it), some hard drives

Screens- Acer preditor XB241H (1080p, 144Hz Gsync), LG 1080p ultrawide, (all mounted) directly wired to TV in other room

Stuff- k70 with reds, steel series rival, g13, full desk covering mouse mat

All parts black

Workstation(desk)- 3770k, 970 reference, 16GB of some crucial memory, a motherboard of some kind I don't remember, Micomsoft SC-512N1-L/DVI, CM Storm Trooper (It's got a handle, can you handle that?), 240mm Asetek based AIO, Crucial M550 256GB (upgrade soon), some hard drives, disc drives, and hot swap bays

Screens- 3  ASUS VN248H-P IPS 1080p screens mounted on a stand, some old tv on the wall above it. 

Stuff- Epicgear defiant (solderless swappable switches), g600, moutned mic and other stuff. 

Laptop docking area- 2 1440p korean monitors mounted, one AHVA matte, one samsung PLS gloss (very annoying, yes). Trashy Razer blackwidow chroma...I mean like the J key doesn't click anymore. I got a model M i use on it to, but its time for a new keyboard. Some edgy Utechsmart mouse similar to g600. Hooked to laptop dock for both of my dell precision laptops. (not only docking area)

Shelf- i7-2600 non-k (has vt-d), 380t, some ASUS sandy itx board, intel quad nic. Currently hosts shared files, setting up as pfsense box in VM. Also acts as spare gaming PC with a 580 or whatever someone brings. Hooked into laptop dock area via usb switch

Link to comment
Share on other sites

Link to post
Share on other sites

22 minutes ago, Syntaxvgm said:

This reminds me of a dupe glitch in Runescape about 2003 I think. Jagex couldn't figure out how it worked, and it was destroying the economy. They offered anyone who could show them how to do it free lifetime membership status. IIRC- a bunch of people snitched on themselves- the very first person did get lifetime membership, the rest were banned. 

i mean just because you know how to do it doesnt mean you are actually doing it

Link to comment
Share on other sites

Link to post
Share on other sites

4 minutes ago, spartaman64 said:

i mean just because you know how to do it doesnt mean you are actually doing it

I imagine they were looking for shit like tons of partyhats on their accounts. 

muh specs 

Gaming and HTPC (reparations)- ASUS 1080, MSI X99A SLI Plus, 5820k- 4.5GHz @ 1.25v, asetek based 360mm AIO, RM 1000x, 16GB memory, 750D with front USB 2.0 replaced with 3.0  ports, 2 250GB 850 EVOs in Raid 0 (why not, only has games on it), some hard drives

Screens- Acer preditor XB241H (1080p, 144Hz Gsync), LG 1080p ultrawide, (all mounted) directly wired to TV in other room

Stuff- k70 with reds, steel series rival, g13, full desk covering mouse mat

All parts black

Workstation(desk)- 3770k, 970 reference, 16GB of some crucial memory, a motherboard of some kind I don't remember, Micomsoft SC-512N1-L/DVI, CM Storm Trooper (It's got a handle, can you handle that?), 240mm Asetek based AIO, Crucial M550 256GB (upgrade soon), some hard drives, disc drives, and hot swap bays

Screens- 3  ASUS VN248H-P IPS 1080p screens mounted on a stand, some old tv on the wall above it. 

Stuff- Epicgear defiant (solderless swappable switches), g600, moutned mic and other stuff. 

Laptop docking area- 2 1440p korean monitors mounted, one AHVA matte, one samsung PLS gloss (very annoying, yes). Trashy Razer blackwidow chroma...I mean like the J key doesn't click anymore. I got a model M i use on it to, but its time for a new keyboard. Some edgy Utechsmart mouse similar to g600. Hooked to laptop dock for both of my dell precision laptops. (not only docking area)

Shelf- i7-2600 non-k (has vt-d), 380t, some ASUS sandy itx board, intel quad nic. Currently hosts shared files, setting up as pfsense box in VM. Also acts as spare gaming PC with a 580 or whatever someone brings. Hooked into laptop dock area via usb switch

Link to comment
Share on other sites

Link to post
Share on other sites

4 hours ago, spartaman64 said:

Uber employees showed up at Brandon Glover's Winter Park, Florida, home and found Vasile Mereacre at a hotel restaurant in Toronto, Canada, the Justice Department said.

Uber employees are cucks. They should give me an executive job at Uber. I need to wet my golf clubs.

Link to comment
Share on other sites

Link to post
Share on other sites

On 11/2/2019 at 12:21 AM, Tegos said:

They're very nice hackers.

Canadian probably 

✨FNIGE✨

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×