An ex-Twitter executive is spilling the beans on the company's cybersecurity and privacy practices.
Peiter "Mudge" Zatko, former head of security at Twitter, spoke to CNN and The Washington Post, claiming that not only did his former company have a number of cybersecurity issues, it also deliberately misled its board of directors about them.
Among other security issues, Zatko claims the following (detailed in a 200-page disclosure sent to Congress and U.S. government agencies in July, and obtained by the news outlets):
Twitter gave thousands of company employees access to some of its most critical controls, which made it "impossible" to adequately protect the platform.
Twitter had minimal control over or visibility into employees' individual company computers.
About half of Twitter's servers run on outdated software.
Perhaps even more serious are Zatko's claims on how Twitter handles privacy.
Most notably, Zatko claims that Twitter has "never been in compliance" with the demands the Federal Trade Commission (FTC) made from the company back in 2011. Twitter then settled with the FTC over a privacy complaint which has shown that the company failed to safeguard its users' private information. Under the terms of the settlement, Twitter was barred for the next 20 years from "misleading consumers about the extent to which it protects the security, privacy, and confidentiality of nonpublic consumer information." Had Twitter failed to do so, it could result in further fines.
Specifically, Zatko alleges that Twitter does not always reliably delete a user's data after they've cancelled their account, the report says, "in some cases because the company has lost track of the information."
Zatko's claims come at a difficult time for Twitter, as the company is about to start a legal battle over Elon Musk's takeover bid. In his disclosure, Zatko touches on a topic that Musk has claimed is pivotal in this case — the number of bots on Twitter's platform. Zatko alleges that Twitter deliberately misreports the number of bots and spam accounts on its platform (which Musk also claims), and further claims that Twitter doesn't even have the proper resources to measure this number. Twitter claims "false or spam" accounts make up less than 5 percent of the platform.
John Tye, Zatko's lawyer and founder of Whistleblower Aid (an organization that assisted Facebook whistleblower Frances Haugen and is now representing Zatko), told CNN Zatko has not been in contact with Musk, and that he began the whistleblower process before Musk's takeover bid kicked off.
Zatko was fired by Twitter in January 2022. In a statement given to the news channel, Twitter said he was fired for "poor performance and ineffective leadership." As for his claims, Twitter called them "a narrative about our privacy and data security practices that is riddled with inconsistencies and inaccuracies, and lacks important context."
Copyright © 2023 Powered by
Twitter whistleblower releases scathing report on company's security and privacy practices-风花雪夜网
sitemap
文章
7
浏览
8515
获赞
3
How to add your pronouns to your Instagram profile
Instagram now allows users to add up to four pronouns to their Instagram profile, the company announApple discontinues two more iMac desktop configurations
The Apple iMac Pro is no longer available and now it looks like the remaining iMac desktop options aTikTok is launching its own book awards
BookTok is easily one of the most recognisable – and popular – communities on TikTok. ImMcCarthy as Sisyphus: The 11 best tweets about the House Speaker vote debacle
Somehow, someway, the vote for House Speaker kept becoming more and more of a debacle this week. WeObama includes 'Old Town Road' in his favorite music of the year
Barack Obama is releasing his end of year lists, and his favorite songs of 2019 are all absolute banChatGPT essays and more: How teachers and schools are dealing with AI writing
With the release of OpenAI's ChatGPT back in December, AI-generated plagiarism has become a cause foYouTuber MatPat sells his Game Theorists channel to startup LunarX
YouTube creator Matthew Patrick, known as MatPat, and his business partner (and wife) Stephanie areExplaining corecore, TikTok's newest aesthetic
Infinitely doom-scrolling on TikTok at 2 a.m. has become a common experience for a lot of people theTwitter's App Store listing confirms $2.99 price for 'Twitter Blue' paid service
It appears that Twitter is serious about launching a paid service. The company's own listing in ApplGwyneth Paltrow and the birth of courtcore
The fascination with the trial of Gwyneth Paltrow should come as no surprise. A major-league actressTwitter is now adding a controversial 'hacked materials' warning label to tweets
“These materials may have been obtained through hacking,” reads the disclaimer affixed tGoogle's new Nest Hub is a smart display that tracks your sleep quality
On Tuesday, Google took the wraps off its second-generation Nest Hub. In addition to playing music,How to find stalkerware on your smartphone
Privacy Pleaseis an ongoing series exploring the ways privacy is violated in the modern world, and wFather's Day memes to share on dad's big day: The funny and true jokes for your pops
Nobody appreciates a corny little chuckle than a good dad. Something happens when a person becomes aFacebook's Oversight Board to decide the fate of Trump's account
Donald Trump was banned from Facebook after his supporters stormed the Capitol. Now the company's CE