Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search
 

laserhaas

(7,805 posts)
Tue Feb 28, 2017, 01:34 PM Feb 2017

Ransom sought: Stuffed toys leak millions of kids & parents recordings

Last edited Tue Feb 28, 2017, 03:02 PM - Edit history (1)

Source: CNN Money

Recorded messages spoken to teddy bears could pose privacy risks for children.

A security vulnerability allowed anyone to view personal information, photos and recordings of children's voices from CloudPets toys. And at one point, some people tried to hold all of that information for ransom.

According to a report compiled by security researcher Troy Hunt, over 820,000 user accounts were exposed. That includes 2.2 million voice recordings

The data is no longer publicly accessible. But CloudPets has not informed users of the leak, and as far as researchers know, the passwords are still active. This could be a violation of the law. In California, the government requires companies to notify users if their information was exposed online. CloudPets, and its maker Spiral Toys, are based in California.

Read more: http://money.cnn.com/2017/02/27/technology/cloudpets-data-leak-voices-photos/



Link to Troy Hunt details

https://www.troyhunt.com/data-from-connected-cloudpets-teddy-bears-leaked-and-ransomed-exposing-kids-voice-messages/


Roseanne Bar posted another story, on Twitter, with more important titlings



31 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Ransom sought: Stuffed toys leak millions of kids & parents recordings (Original Post) laserhaas Feb 2017 OP
I must say, I don't understand why people are so enamored of The Cloud. PoindexterOglethorpe Feb 2017 #1
Correct...Cloud means web. Not just on a server laserhaas Feb 2017 #2
And you're putting a lot of faith PoindexterOglethorpe Feb 2017 #5
Concur..we cant trust the pros laserhaas Feb 2017 #8
Plus, what happens when they go under / get sold / terminate that particular service... Crash2Parties Feb 2017 #21
Can be via intertubes can be via private network snooper2 Feb 2017 #7
My phone is constantly nagging me to give away all my data. lagomorph777 Feb 2017 #12
+1000 I don't understand it either discntnt_irny_srcsm Mar 2017 #30
Sounds like you have your own private PoindexterOglethorpe Mar 2017 #31
No one could see that coming Renew Deal Feb 2017 #3
The bigger thingy...is kids names and addresses laserhaas Feb 2017 #4
Your comment made me laugh. This has got to be the biggest... "KICK ME" sign KittyWampus Feb 2017 #9
Bill Engval laserhaas Feb 2017 #17
"Now, I have to tell you, it's an unbelievably complex subject," he added. Crash2Parties Feb 2017 #22
Amazon Echo and Dot, and Google Home Peachhead22 Feb 2017 #6
World is becoming ...too much..1984 on steroids laserhaas Feb 2017 #10
1984 or Brave New World? Mendocino Feb 2017 #11
Why the hell do kids needs stuffed toys with online connectivity? Blue_Tires Feb 2017 #13
because killing of a kid's imagination at a young age helps leave them KittyWampus Feb 2017 #25
"Ransome" - "Ransom" lagomorph777 Feb 2017 #14
Dam..caught by grammer police..again laserhaas Feb 2017 #15
Thanks for humoring my OCD. lagomorph777 Feb 2017 #16
Noted and corrected laserhaas Feb 2017 #18
It's the red badge of courage. lagomorph777 Feb 2017 #19
LoL laserhaas Feb 2017 #20
I thought it might be English for random Renew Deal Feb 2017 #23
grammer? Maybe grammar. Or even spelling. (Interesting post though, agreed?) ColemanMaskell Mar 2017 #27
Hmm so much to say, so much to hide. Just plain stupid. YOHABLO Feb 2017 #24
Most of our world has gone ...completely laserhaas Mar 2017 #26
Teddy bear spies... That's the source of the White House leaks. Zing Zing Zingbah Mar 2017 #28
Awesome laserhaas Mar 2017 #29

PoindexterOglethorpe

(25,873 posts)
1. I must say, I don't understand why people are so enamored of The Cloud.
Tue Feb 28, 2017, 01:38 PM
Feb 2017

Having your stuff on The Cloud simply means it's on someone else's hard drive. One you don't control.

PoindexterOglethorpe

(25,873 posts)
5. And you're putting a lot of faith
Tue Feb 28, 2017, 01:48 PM
Feb 2017

that the third party involved will properly protect your information. That's a leap of faith I personally don't want to make.

Crash2Parties

(6,017 posts)
21. Plus, what happens when they go under / get sold / terminate that particular service...
Tue Feb 28, 2017, 05:47 PM
Feb 2017

Audits are a PITA, too, compared to just keeping the data in-house. And then there's access lag & outages.

Cloud looks great to managers looking to cut headcount & hardware costs, though...gotta make those next-Q numbers.

Really, though, this is just the latest iteration of the old thin-client / thick-client cycle. The true solution, of course, lies somewhere in between and is often a blend, but a different balance point for each application of the available technologies.

discntnt_irny_srcsm

(18,481 posts)
30. +1000 I don't understand it either
Sun Mar 5, 2017, 09:31 AM
Mar 2017

I use the cloud but only the one I own. It lives in my basement. Multiple firewalls and authentication involved.

But, then again, it's software. It's all a lot of 1s and 0s. How hard can it be?

PoindexterOglethorpe

(25,873 posts)
31. Sounds like you have your own private
Sun Mar 5, 2017, 02:40 PM
Mar 2017

server and so long as you know exactly how to maintain it, that's a good solution. I just have my desk top and my laptop, connected to the internet, but I have some anti-virus programs installed, and depend on the Geek Squad for anything more complicated.

I gather that with a lot of newer devices, everything is automatically stored in the Cloud.

I hate it that often when I go to a commercial website of some sort, it wants me to share my location. I never do that. I also never click the Like button on FB. Nor to I spread some post that I agree with it, just because I'm exhorted to do so. Even among people who should know better, those sorts of things are posted daily on their FB pages. I might make a comment about something, but that's the extent of it.

Then again, I have a very high sense of privacy.

 

KittyWampus

(55,894 posts)
9. Your comment made me laugh. This has got to be the biggest... "KICK ME" sign
Tue Feb 28, 2017, 02:07 PM
Feb 2017

anyone could stick on themselves.

TARGET ME I'M AN IDIOT> we need laws to protect people from their own stupidity.

Crash2Parties

(6,017 posts)
22. "Now, I have to tell you, it's an unbelievably complex subject," he added.
Tue Feb 28, 2017, 05:50 PM
Feb 2017

"Nobody knew cyber security could be so complicated."

Peachhead22

(1,078 posts)
6. Amazon Echo and Dot, and Google Home
Tue Feb 28, 2017, 01:53 PM
Feb 2017

Exactly the reason I would never have voice activated devices like those in my home either.

And yes, "the cloud" is a euphemism for "other peoples hard drives".

 

KittyWampus

(55,894 posts)
25. because killing of a kid's imagination at a young age helps leave them
Tue Feb 28, 2017, 11:46 PM
Feb 2017

easily manipulated group-think types.

Zing Zing Zingbah

(6,496 posts)
28. Teddy bear spies... That's the source of the White House leaks.
Wed Mar 1, 2017, 10:50 PM
Mar 2017

Trump has been betrayed by his favorite teddy.

Latest Discussions»Latest Breaking News»Ransom sought: Stuffed to...