Connect with us

Business

In a big potential breach, a hacker offers to sell a Chinese police database.

Published

on

In a big potential breach, a hacker offers to sell a Chinese police database.

In what could also be one of many largest recognized breaches of Chinese language private information, a hacker has supplied to promote a Shanghai police database that might comprise info on maybe one billion Chinese language residents.

The unidentified hacker, who goes by the title ChinaDan, posted in a web based discussion board final week that the database on the market included terabytes of knowledge on a billion Chinese language. The size of the leak couldn’t be verified. The New York Instances confirmed elements of a pattern of 750,000 data that the hacker launched to show the authenticity of the info.

The hacker, who joined the web discussion board final month, is promoting the info for 10 Bitcoin, or about $200,000. The person or group didn’t present particulars on how the info was obtained. The Instances reached out to the hacker by way of an e-mail on the publish, although it couldn’t be delivered because the handle appeared to be incorrect.

The hacker’s provide of the Shanghai police database highlights a dichotomy in China: Though the nation has been on the forefront of accumulating plenty of knowledge on its residents, it has been much less profitable in securing and safeguarding that information.

Over time, authorities in China have turn out to be skilled at amassing digital and organic info on folks’s each day actions and social connections. They parse social media posts, gather biometric information, observe telephones, report video utilizing police cameras and sift by way of what they acquire to seek out patterns and aberrations. A Instances investigation final month revealed that the urge for food of Chinese language authorities for normal residents’ info has solely expanded lately.

Advertisement

However at the same time as Beijing’s urge for food for surveillance has ramped up, authorities have appeared to depart the ensuing databases open to the general public or left them susceptible with comparatively weak safeguards. In recent times, The Instances has reviewed different databases utilized by the police in China.

China’s authorities has labored to tighten controls over a leaky information business that has fed web fraud. But the main target of the enforcement has typically centered on tech firms, whereas authorities seem like exempt from strict guidelines and penalties geared toward securing info at web corporations.

Yaqiu Wang, a senior China researcher at Human Rights Watch, stated if the federal government doesn’t defend its residents’ information, there are not any penalties. In Chinese language legislation, “there may be obscure language about state information handlers having duty to make sure the safety of the info. However finally, there isn’t a mechanism to carry authorities companies liable for an information leak,” she stated.

Final yr, for instance, Beijing cracked down on Didi, China’s equal of Uber, after its itemizing effort on the New York Inventory Trade, citing the danger that delicate private info may very well be uncovered. However when native authorities within the Chinese language province of Henan misused information from a Covid-19 app to dam protesters final month, officers have been largely spared from extreme penalties.

When smaller leaks have been reported by so-called white-hat hackers, who get hold of and report vulnerabilities, Chinese language regulators have warned native authorities to raised defend the info. Even so, guaranteeing self-discipline has been tough, with the duty to guard the info typically falling on native officers who’ve little expertise overseeing information safety.

Advertisement

Regardless of this, the general public in China typically expresses confidence in authorities’ dealing with of knowledge and sometimes considers non-public firms much less reliable. Authorities leaks are sometimes censored. Information of the Shanghai police breach has additionally been largely censored, with China’s state-run media not reporting it.

“On this Shanghai police case, who is meant to analyze it?” stated Ms. Wang of Human Rights Watch. “It’s the Shanghai police itself.”

Within the hacker’s on-line publish, samples of the Shanghai database have been supplied. In a single pattern, the private info of 250,000 Chinese language residents — equivalent to title, intercourse, handle, government-issued ID quantity and start yr — was included. In some instances, the people’ career, marital standing, ethnicity and schooling degree, together with whether or not the individual was labeled a “key individual” by the nation’s public safety ministry, may be discovered.

One other pattern set included police case data, which included data of reported crimes, in addition to private info like telephone numbers and IDs. The instances dated from as early as 1997 till 2019. The opposite pattern set contained info that seemed to be people’ partial cell phone numbers and addresses.

When a Instances reporter known as the telephone numbers of individuals whose info was within the pattern information of police data, 4 folks confirmed the main points. 4 others confirmed their names earlier than hanging up. Not one of the folks contacted stated that they had any earlier information concerning the information leak.

Advertisement

In a single case, the info supplied the title of a person and stated that, in 2019, he reported to the police a rip-off during which he paid about $400 for cigarettes that turned out to be moldy. The person, reached by telephone, confirmed the main points described within the leaked information.

Shanghai’s public safety bureau declined to reply to questions concerning the hacker’s declare. Calls to the Cybersecurity Administration of China went unanswered on Tuesday.

On Chinese language social media platforms, like Weibo and the communication app WeChat, posts, articles and hashtags concerning the information leak have been eliminated. On Weibo, accounts of customers who posted or shared associated info have been suspended, and others who talked about it have stated on-line that that they had been requested to go to the police station for a chat.

Continue Reading
Advertisement
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Business

Elon Musk, Mark Zuckerberg and Jeff Bezos to Attend Trump’s Inauguration

Published

on

Elon Musk, Mark Zuckerberg and Jeff Bezos to Attend Trump’s Inauguration

Corporate America had already raced to donate big sums to Donald Trump’s record-breaking inaugural fund. Now some of its leaders appear eager to jockey for prominent positions at the inauguration next week.

It’s a new reminder that for some of the nation’s biggest businesses, forging close ties to a president-elect who is promising hard-hitting policies like tariffs is a priority this time around.

Jeff Bezos and Mark Zuckerberg are expected to be on the inauguration dais, according to NBC News, alongside Elon Musk and several cabinet picks.

The presence of Musk isn’t a surprise, given the Tesla chief’s significant support of and huge influence over Trump. But the other tech moguls have only more recently been seen as supporters of the administration. (Indeed, Bezos frequently sparred with Trump during his first presidential term.)

It’s the latest effort by Bezos and Zuckerberg to burnish their Trump credentials. At the DealBook Summit in December, Bezos — whose Amazon has faced scrutiny under the Biden administration and whose Blue Origin is hoping to win government rocket contracts — said that he was “very hopeful” about Trump’s efforts to reduce regulation.

Advertisement

And Zuckerberg recently announced significant changes to Meta’s content moderation policy, including relaxing restrictions on speech seen as protecting groups including L.G.B.T.Q. people that won praise from Trump and other conservatives. On the inauguration front, Zuckerberg is also co-hosting a reception alongside the longtime Trump backers Miriam Adelson, Tilman Fertitta and Todd Ricketts.

Both tech moguls have visited Mar-a-Lago since the election, with Zuckerberg having done so more than once.

Coca-Cola took a different tack. The drinks giant’s C.E.O., James Quincey, gave Trump what an aide called the “first ever Presidential Commemorative Inaugural Diet Coke bottle.”

More broadly, business leaders want a piece of the inauguration action. The Times previously reported that the Trump inaugural fund had surpassed $170 million, a record, and that even major donors have been wait-listed for events.

Others are throwing unofficial events around Washington, including an “Inaugural Crypto Ball” that will feature Snoop Dogg, with tickets starting at $5,000, The Wall Street Journal reports.

Advertisement

It’s a reminder that C.E.O.s are reading the room, and preparing their companies for a president who has proposed creating an “External Revenue Service” to oversee what he has promised will be wide-ranging tariffs.

David Urban, a longtime Trump adviser who’s hosting a pre-inauguration event, told The Journal, “This is the world order, and if we’re going to succeed, we need to get with the world order.”

  • In other Trump news: The president-elect is expected to appear via videoconference at the World Economic Forum in Davos, Switzerland, which starts on Inauguration Day, according to Semafor.

Investors brace for the latest inflation data. The Consumer Price Index report, due out at 8:30 a.m. Eastern, is expected to show that inflation ticked up last month, most likely because of climbing food and fuel costs. Global bond markets have been rattled as slow progress on slowing inflation has prompted the Fed to slash its forecast for interest rate cuts.

More Trump cabinet picks will appear before the Senate on Wednesday. Senator Marco Rubio of Florida, the choice for secretary of state, is expected to field questions about his views on the Middle East, Ukraine and China, but is expected to be confirmed. Russell Vought, the pick to run the Office of Management and Budget, will most likely be asked about his advocacy for drastically shrinking the federal government, a key Trump objective. And Sean Duffy, the Fox Business host chosen to lead the Transportation Department, will probably face questions on how he would oversee matters including aviation safety and autonomous vehicles, the latter of which is a priority for Elon Musk.

Meta plans to lay off another 5 percent of its employees. Mark Zuckerberg, the tech giant’s C.E.O., told staff members to prepare for “extensive performance-based cuts” as the company braces for “an intense year.” The social media giant faces intense competition in the race to commercialize artificial intelligence.

Advertisement

A new bill would give TikTok a reprieve from a ban in the United States. Senator Ed Markey, Democrat of Massachusetts, said he planned to introduce the Extend the TikTok Deadline Act, which would give the video platform 270 additional days to be divested from its Chinese parent, ByteDance before being blacklisted. It’s the latest effort to buy TikTok time, as the app faces a Jan. 19 deadline set by a law; President-elect Donald Trump has opposed the potential ban as well.

JPMorgan Chase and BlackRock, the giant money manager, just reported earnings. (In short: Both handily beat analyst expectations.)

But the Wall Street giants are likely to face questioning on a particular issue on Wednesday: Which top lieutenants are in line to replace their larger-than-life C.E.O.s, Jamie Dimon and Larry Fink.

Who’s out:

  • Daniel Pinto, who had long been Dimon’s right-hand man, said he would officially drop his responsibilities as JPMorgan’s C.O.O. in June and retire at the end of 2026. Jenn Piepszak, the co-C.E.O. of the company’s core commercial and investment bank, has become C.O.O.

  • And Mark Wiedman, the head of BlackRock’s global client business and a top contender to succeed Fink, is planning to leave, according to news reports.

What Wall Street is gossiping about JPMorgan: Even in taking the C.O.O. role, JPMorgan said that Piepszak wasn’t interested in succeeding Dimon “at this time.” DealBook hears that while she genuinely appears not to want to pursue the top job, the phrasing covers her in case she changes her mind.

Advertisement

For now, that means the most likely candidates for the top spot are Marianne Lake, the company’s head of consumer and community banking; Troy Rohrbaugh, the other co-head of the commercial and investment bank; and Doug Petno, a co-head of global banking.

The buzz around BlackRock: Wiedman reportedly didn’t want to keep waiting to succeed Fink and is expected to seek a C.E.O. position elsewhere. (So sudden was his departure that he’s forfeiting about $8 million worth of stock options and, according to The Wall Street Journal, he doesn’t have another job lined up yet.)

Fink said on CNBC on Wednesday that Wiedman’s departure had been in the works for some time, with the executive having expressed a desire to leave about six months ago.

Other candidates to take over for Fink include Martin Small, BlackRock’s C.F.O.; Rob Goldstein, the firm’s C.O.O.; and Rachel Lord, the head of international.

But Dimon and Fink aren’t going anywhere just yet. Dimon, 68, said only last year that he might not be in the role in five years. And Fink, 72, said in July that he was working on succession planning: “When I do believe the next generation is ready, I’m out.”

Advertisement

Another battle between Elon Musk and the S.E.C. erupted on Tuesday, with the agency suing the tech mogul over his 2022 purchase of Twitter.

It’s unclear what happens to the lawsuit once President-elect Donald Trump, who counts Musk as a close ally, takes office. But the agency’s reputation as an independent watchdog may be at stake.

A recap: The S.E.C. accused Musk of violating securities laws in his $44 billion acquisition of the social media company.

The agency said that Musk had failed to disclose his Twitter ownership stake for a pivotal 11-day stretch before revealing his intentions to purchase the company. That breach allowed him to buy up at least $150 million worth of Twitter shares at a lower price — to the detriment of existing shareholders, the agency argues.

The S.E.C. isn’t just seeking to fine Musk. It wants him to pay back the windfall. “That’s unusual,” Ann Lipton, a professor at Tulane Law School, told DealBook.

Advertisement

Alex Spiro, Musk’s lawyer, called the latest action a “sham” and accused the agency of waging a “multiyear campaign of harassment” against him.

The showdown sets up a tough question for the S.E.C. Will Paul Atkins, the president-elect’s widely respected pick to lead the agency, drop the case? Such a move could call the bedrock principle of S.E.C. independence into question.

Jay Clayton, who led the agency during Trump’s first term, earned the respect of the business community for running it in a largely drama-free manner. It was under Clayton that the S.E.C. sued Musk over his statements about taking Tesla private.

Musk, who is set to become Trump’s cost-cutting czar and is expected to have office space in the White House complex, has called for the “comprehensive overhaul” of agencies like the S.E.C. The billionaire said he would also like to see “punitive action against those individuals who have abused their regulatory power for personal and political gain.”

  • In related news: The Consumer Financial Protection Bureau sued Capital One, accusing it of cheating its depositors out of $2 billion in interest payments.

Deals

Advertisement
  • DAZN, the streaming network backed by the billionaire businessman Len Blavatnik, is closing in on funding from Saudi Arabia’s sovereign wealth fund as the kingdom continues to expand its sports footprint. (NYT)

  • The Justice Department sued KKR, accusing the investment giant of withholding information during government reviews for several of its deals. KKR filed a countersuit. (Bloomberg)

  • OpenAI added Adebayo Ogunlesi, the billionaire co-founder of the infrastructure investment firm Global Infrastructure Partners, to its board. (FT)

Politics and policy

Best of the rest

We’d like your feedback! Please email thoughts and suggestions to dealbook@nytimes.com.

Continue Reading

Business

For uninsured fire victims, the Small Business Administration offers a rare lifeline

Published

on

For uninsured fire victims, the Small Business Administration offers a rare lifeline

As wildfires continue to burn around Southern California, thousands of business owners, homeowners and renters are confronting the daunting challenge of rebuilding from the ashes. For some number of them, the road ahead will be all the more difficult because they didn’t have any or enough insurance to cover their losses. For them, the U.S. Small Business Administration is a possible lifeline.

The SBA, which offers emergency loans to businesses, homeowners, renters and nonprofits, is among the few relief options for those who don’t have insurance or are underinsured. Uninsured Angelenos can also apply for disaster assistance through the Federal Emergency Management Agency, or FEMA.

The current wildfires are ravaging a state that was already in the midst of a home insurance crisis. Thousands of homeowners have lost their insurance in recent years as providers pull out of fire-prone areas and jack up their prices in the face of rising risk.

“For those who are not going to get that insurance payout, this is available,” Small Business Administration head Isabella Casillas Guzman said in an interview during a recent trip to the fire areas. “The loans are intended to fill gaps, and that is very broad.”

Advertisement

About one-third of businesses don’t have insurance and three-quarters are underinsured, Guzman said.

“There will be residual effects around the whole community,” she said. “Insurance will not cover this disaster.”

Businesses, nonprofits and small agricultural cooperatives can apply for an economic injury loan or a physical damage loan through SBA. Homeowners are eligible for physical damage loans. Economic injury loans are intended to help businesses meet ordinary financial demands, while physical damage loans provide funds for repairs and restoration. People can apply online and loans must be repaid within 30 years.

Renters can receive up to $100,000 in assistance, homeowners up to $500,000 and businesses up to $2 million, according to Guzman. Homeowners and renters who cannot get access to credit elsewhere can qualify for loans with a interest rate of 2.5%. The SBA determines an applicant has no credit available elsewhere if they do not have other funds to pay for disaster recovery and cannot borrow from nongovernment sources.

Interest rates for homeowners and renters who do have access to credit elsewhere are just over 5%. Loans for businesses could come with interest rates of 4% or 8% depending on whether the business has other credit options.

Advertisement

An applicant must show they are able to repay their loan and have a credit history acceptable to the SBA in order to be approved. The loans became available following President Biden’s declaration of a major disaster in California.

“We’ve already received hundreds of applications from individuals and businesses interested in exploring additional support,” Guzman said. “We know the economic disruption may not be contained to the footprint of any evacuation zones or power outages.”

People who don’t have insurance or whose insurance doesn’t cover the entirety of their losses are eligible for loans, Guzman said. While many will use the funds to start from scratch after losing their property to the fires, businesses that are still standing can also apply for support to cover lost revenue.

Guzman was not able to estimate the total value of loans they expect to offer in California but said the organization is on solid financial footing after temporarily running out of funds in October.

“Funding has been replenished by Congress, and we expect to be able to coordinate closely with Congress,” Guzman said. “We’re fully funded and in a good position to provide support.”

Advertisement
Continue Reading

Business

Cookies, Cocktails and Mushrooms on the Menu as Justices Hear Bank Fraud Case

Published

on

Cookies, Cocktails and Mushrooms on the Menu as Justices Hear Bank Fraud Case

In a lively Supreme Court argument on Tuesday that included references to cookies, cocktails and toxic mushrooms, the justices tried to find the line between misleading statements and outright lies in the case of a Chicago politician convicted of making false statements to bank regulators.

The case concerned Patrick Daley Thompson, a former Chicago alderman who is the grandson of one former mayor, Richard J. Daley, and the nephew of another, Richard M. Daley. He conceded that he had misled the regulators but said his statements fell short of the outright falsehoods he said were required to make them criminal.

The justices peppered the lawyers with colorful questions that tried to tease out the difference between false and misleading statements.

Chief Justice John G. Roberts Jr. asked whether a motorist pulled over on suspicion of driving while impaired said something false by stating that he had had one cocktail while omitting that he had also drunk four glasses of wine.

Caroline A. Flynn, a lawyer for the federal government, said that a jury could find the statement to be false because “the officer was asking for a complete account of how much the person had had to drink.”

Advertisement

Justice Ketanji Brown Jackson asked about a child who admitted to eating three cookies when she had consumed 10.

Ms. Flynn said context mattered.

“If the mom had said, ‘Did you eat all the cookies,’ or ‘how many cookies did you eat,’ and the child says, ‘I ate three cookies’ when she ate 10, that’s a false statement,” Ms. Flynn said. “But, if the mom says, ‘Did you eat any cookies,’ and the child says three, that’s not an understatement in response to a specific numerical inquiry.”

Justice Sonia Sotomayor asked whether it was false to label toxic mushrooms as “a hundred percent natural.” Ms. Flynn did not give a direct response.

The case before the court, Thompson v. United States, No. 23-1095, started when Mr. Thompson took out three loans from Washington Federal Bank for Savings between 2011 and 2014. He used the first, for $110,000, to finance a law firm. He used the next loan, for $20,000, to pay a tax bill. He used the third, for $89,000, to repay a debt to another bank.

Advertisement

He made a single payment on the loans, for $390 in 2012. The bank, which did not press him for further payments, went under in 2017.

When the Federal Deposit Insurance Corporation and a loan servicer it had hired sought repayment of the loans plus interest, amounting to about $270,000, Mr. Thompson told them he had borrowed $110,000, which was true in a narrow sense but incomplete.

After negotiations, Mr. Thompson in 2018 paid back the principal but not the interest. More than two years later, federal prosecutors charged him with violating a law making it a crime to give “any false statement or report” to influence the F.D.I.C.

He was convicted and ordered to repay the interest, amounting to about $50,000. He served four months in prison.

Chris C. Gair, a lawyer for Mr. Thompson, said his client’s statements were accurate in context, an assertion that met with skepticism. Justice Elena Kagan noted that the jury had found the statements were false and that a ruling in Mr. Thompson’s favor would require a court to rule that no reasonable juror could have come to that conclusion.

Advertisement

Justices Neil M. Gorsuch and Brett M. Kavanaugh said that issue was not before the court, which had agreed to decide the legal question of whether the federal law, as a general matter, covered misleading statements. Lower courts, they said, could decide whether Mr. Thompson had been properly convicted.

Justice Samuel A. Alito Jr. asked for an example of a misleading statement that was not false. Mr. Gair, who was presenting his first Supreme Court argument, responded by talking about himself.

“If I go back and change my website and say ‘40 years of litigation experience’ and then in bold caps say ‘Supreme Court advocate,’” he said, “that would be, after today, a true statement. It would be misleading to anybody who was thinking about whether to hire me.”

Justice Alito said such a statement was, at most, mildly misleading. But Justice Kagan was impressed.

“Well, it is, though, the humblest answer I’ve ever heard from the Supreme Court podium,” she said, to laughter. “So good show on that one.”

Advertisement
Continue Reading

Trending