真相集中营

Engadget RSS Feed-Lawsuit says 23andMe hackers targeted users with Chinese and Ashkenazi Jewish heritage

January 27, 2024   2 min   321 words

这则报道揭示了23andMe公司的数据泄露问题引发的诉讼,指控其在遭受黑客攻击后未通知具有中文和阿什肯纳兹犹太血统的用户。这一指控揭露了用户遗传信息被泄露至暗网,并在特定族裔被有组织地整理。报道透露公司在数据泄露后多月才发现,这引起了严重的隐私担忧。值得关注的是,黑客甚至将用户信息进行分类,并在黑帽黑客论坛上贩卖,暴露了用户的姓名、地址等隐私。此案揭示了科技公司在保护用户隐私方面的不足,同时也提醒人们要警惕数据泄露对个体及社会的潜在危害。这对23andMe形象造成了打击,也凸显了数字时代个人隐私保护亟待强化的现实问题。

In October 2023, 23andMe admitted that it suffered a data breach that compromised its users' information. The company has been hit with several lawsuits since then, and according to The New York Times, one of them is accusing 23andMe of failing to notify customers that they were specifically targeted for having Chinese and Ashkenazi Jewish heritage. They also weren't told that their test results with genetic information had been compiled in curated lists that were then shared on the dark web, the plaintiffs said. 23andMe recently released a copy of the letters it sent to affected customers, and they didn't contain any reference to the users' heritage.

The lawsuit was filed in federal court in San Francisco after the company revealed that the hack had gone unnoticed for months. Apparently, the hackers started accessing customers' accounts using login details already leaked on the web in late April 2023 and continued with their activities until September. It wasn't until October that the company finally found out about the hacks. On October 1, hackers leaked the names, home addresses and birth dates of 1 million users with Ashkenazi Jewish ancestry on black hat hacking forum BreachForums.

After someone responded to the post asking access to "Chinese accounts," the lawsuit said the poster linked to a file containing information on 100,000 Chinese users. The poster also said they had access to 350,000 Chinese profiles and could release more information if there was enough interest. In addition, the same poster allegedly returned to the forum in mid-October to sell data on "wealthy families serving Zionism" after the explosion at Al-Ahli Arab Hospital in Gaza.

"The current geopolitical and social climate amplifies the risks" to users whose data was exposed, according to the lawsuit, since the leaked information included their names and addresses. The plaintiffs want their case to be heard by a jury and are seeking compensatory, punitive and other damages.

Adblock test (Why?)