Dutch Watchdog Fines Uber $324 Million for Alleged Inadequate Protection of Drivers’ Data 

An Uber sign is displayed at the company's headquarters in San Francisco, Sept. 12, 2022. (AP)
An Uber sign is displayed at the company's headquarters in San Francisco, Sept. 12, 2022. (AP)
TT

Dutch Watchdog Fines Uber $324 Million for Alleged Inadequate Protection of Drivers’ Data 

An Uber sign is displayed at the company's headquarters in San Francisco, Sept. 12, 2022. (AP)
An Uber sign is displayed at the company's headquarters in San Francisco, Sept. 12, 2022. (AP)

The Dutch data protection watchdog slapped a 290 million euro ($324 million) fine Monday on ride-hailing service Uber for allegedly transferring personal details of European drivers to the United States without adequate protection. Uber called the decision flawed and unjustified and said it would appeal.

The Dutch Data Protection Authority said the data transfers spanning more than two years amounted to a serious breach of the European Union’s General Data Protection Regulation, which requires technical and organizational measures aimed at protecting user data.

“In Europe, the GDPR protects the fundamental rights of people, by requiring businesses and governments to handle personal data with due care,” Dutch DPA chairman Aleid Wolfsen said in a statement.

“But sadly, this is not self-evident outside Europe. Think of governments that can tap data on a large scale. That is why businesses are usually obliged to take additional measures if they store personal data of Europeans outside the European Union. Uber did not meet the requirements of the GDPR to ensure the level of protection to the data with regard to transfers to the US. That is very serious.”

The case was initiated by complaints from 170 French Uber drivers, but the Dutch authority issued the fine because Uber’s European headquarters is in the Netherlands.

Uber insisted it did nothing wrong.

“This flawed decision and extraordinary fine are completely unjustified. Uber’s cross-border data transfer process was compliant with GDPR during a 3-year period of immense uncertainty between the EU and US. We will appeal and remain confident that common sense will prevail,” the company said in a statement.

The alleged breach came after the EU’s top court ruled in 2020 that an agreement known as Privacy Shield that allowed thousands of companies — from tech giants to small financial firms — to transfer data to the United States was invalid because the American government could snoop on people’s data.

The Dutch data protection agency said that following the EU court ruling, standard clauses in contracts could provide a basis for transferring data outside the EU, “but only if an equivalent level of protection can be guaranteed in practice.”

“Because Uber no longer used Standard Contractual Clauses from August 2021, the data of drivers from the EU were insufficiently protected,” the watchdog said. It added that Uber has been using the successor to Privacy Shield since the end of last year, ending the alleged breach.



Iranian Hackers Targeted WhatsApp Accounts of Staffers in Biden, Trump Administrations, Meta Says

Republican presidential nominee former President Donald Trump talks with reporters at a campaign event at ll Toro E La Capra, Friday, Aug. 23, 2024, in Las Vegas. (AP Photo/Julia Nikhinson)
Republican presidential nominee former President Donald Trump talks with reporters at a campaign event at ll Toro E La Capra, Friday, Aug. 23, 2024, in Las Vegas. (AP Photo/Julia Nikhinson)
TT

Iranian Hackers Targeted WhatsApp Accounts of Staffers in Biden, Trump Administrations, Meta Says

Republican presidential nominee former President Donald Trump talks with reporters at a campaign event at ll Toro E La Capra, Friday, Aug. 23, 2024, in Las Vegas. (AP Photo/Julia Nikhinson)
Republican presidential nominee former President Donald Trump talks with reporters at a campaign event at ll Toro E La Capra, Friday, Aug. 23, 2024, in Las Vegas. (AP Photo/Julia Nikhinson)

The same Iranian hacking group believed to have targeted both the Democratic and Republican presidential campaigns tried to go after the WhatsApp accounts of staffers in the administrations of President Joe Biden and former President Donald Trump, Meta Platforms said Friday.

Meta said it discovered the network of hackers, who posed as tech support agents for companies including Microsoft and Google, after individuals who received the suspicious WhatsApp messages reported them. Meta’s investigators linked the activity to the same network blamed for the hacking incident reported by Trump’s campaign, The AP reported.

The FBI this week said a hack by Iran of the Trump campaign and an attempted breach of the Biden-Harris campaign was part of a broader Iranian effort to interfere with the US presidential election.

A statement Friday from Meta, the parent of Facebook and Instagram, said that the hackers had tried to target the WhatsApp account of individuals in the Middle East, the United States and the United Kingdom, as well as political and diplomatic officials — including unidentified officials associated with the Trump and Biden administrations. A “small cluster” of accounts was blocked by Meta, the company said.

“We have not seen evidence of the targeted WhatsApp accounts being compromised, but out of an abundance of caution, we’re sharing our findings publicly, in addition to sharing information with law enforcement and our industry peers,” Meta said in a statement.

US intelligence officials say Iran’s increasingly aggressive use of cyberattacks and disinformation has several motives: to confuse and polarize voters in an effort to undermine confidence in US democracy, to erode support for Israel, and to oppose candidates that it believes will increase tension between Washington and Iran.