Skip to content
Saturday 5 September 2026London --:--Frankfurt --:--Zurich --:--
NewslettersSearchEN · DE · FR
MorningWire

European business, markets and politics

FTSE 100
10,831.09
0.00%
DAX
26,046.40
+0.17%
CAC 40
8,278.77
-0.09%
STOXX 50
6,392.93
+0.16%
  • Europe
  • Markets
  • Business
  • Economy
  • Regulation
  • Politics
  • Opinion
More
GermanyFranceEU InstitutionsCompetitionPublic AffairsBankingTechnologyEnergy
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Economy
  • Regulation
  • Politics
  • Opinion
  • DE
Wednesday 22 November 2017 11:49 am

Uber hack: Should you delete the ride-hailing app? This is what the experts advise

By: Caitlin Morrison

Add as a preferred source on Google

Uber has been rocked by a wave of bad news over the past few months, including the departure of its co-founder and chief executive Travis Kalanick and the loss of its operating licence in London.

And there was more bad news for Uber last night as it emerged that the ride-hailing app had been hacked last year, affecting 57m users. The tech firm admitted that it failed to notify customers or regulators when the breach took place.

This morning, UK authorities confirmed they have launched an investigation into the cyber attack. James Dipple-Johnstone, deputy commissioner of the Information Commissioner's Office, said the concealed data breach "raises huge concerns around (Uber's) data protection policies and ethics".

So should users delete the app?

Richard Parris, chief executive of cyber security firm Intercede, says users should certainly consider doing so.

"Every time we as consumers use services like Uber, we knowingly share our personal information and we trust that those details are kept securely, away from the prying hands of cyber miscreants. If consumers can’t trust companies to keep their data safe, they ought to stop using their services," he stated.

“The data that Uber held appears to have been protected with basic authentication credentials – in all likelihood, a username and password. When secure alternatives are available that would have easily prevented this breach, that is a cavalier approach to security that ought to be outlawed.

"With the new GDPR legislation coming into force next year, it’ll be interesting to see the repercussions of this for Uber in the long term. Let’s hope this is a hefty warning to all companies on a textbook example of how not to handle a data breach."

Deeper issues

The news that Uber covered up a significant data breach is "unfortunately, unsurprising", according to Etienne Greeff, chief technology officer and co-founder of security service provider SecureData. Greeff added that while the breach was not on the same magnitude of previous examples, such as the Equifax hack earlier this year, and Yahoo's security issues last year, "it goes to show that big business seems to care far more about covering its own back than the people’s data that is compromised".

He also said it's clear there is a big problem with Uber's approach to customer security.

"This isn’t the first time Uber have been in the spotlight for not reporting a breach – this first happened in 2016 for a breach in 2014," Greeff added.

There is evidently something wrong here.

"Firstly there seemed to be no strong authentication, merely a password, for data stored on cloud infrastructure, and also the use of public cloud to store this incredibly confidential information, without the proper controls in place – frankly it’s staggering."

What action should you take?

David Emm, principal security at Kaspersky Lab, had the following advice: "It's not a good idea to routinely change passwords (if this is done frequently, it makes it more of a challenge to remember them – with the result that people choose simple, easy-to-remember but easy-to-guess passwords), but in a situation like this it’s essential to change your password if you think your details might have been leaked, or you think your account might have been hacked.

"It’s also good to use two-factor authentication, if an online provider offers it: this is where you are required to enter a second one-time passcode (sent to you via SMS, for example), in order to make changes to your account settings. This will ensure that the damage from a hack is limited.

"If you’re curious whether your details have been part of a data breach, websites like haveibeenpwned.com can let you know using only your email address."

Uber's response

Uber has said it does not "believe any individual rider needs to take any action".

"We have seen no evidence of fraud or misuse tied to the incident. We are monitoring the affected accounts and have flagged them for additional fraud protection," the company added.

"We encourage all our users to regularly monitor their credit and accounts, including their Uber account, for any issues."

 

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Tech

Trending Articles

  • Victoria Beckham owed £350,000 by Harvey Nichols

  • M&G: FTSE 100 giant hits out at Rayner’s ground rent cap as it suffers loss

  • Fulham owner Khan sees his £1bn stadium construction project take next steps

  • John Lewis boss: UK economy facing a ‘permacrisis’ 

  • My stressful night at London’s ultra luxe £1k a night hotel where I found glass in my food

More from Morning Wire

  • Uber launches ‘autonomous’ cabs in London

    Transport & Infrastructure
    Wayve autonomous car navigating Regent Street, showcasing cutting-edge self-driving technology in an urban environment
  • Moove Raises $250 Million at $2.1 Billion Valuation to Scale the Global Infrastructure Layer for Autonomous Mobility

    Business Wire
  • Freenow by Lyft is enhancing the taxi experience with unique tech innovations

    Partner
    Hand holding a smartphone displaying the FreeNow by Lyft app, with a smiling driver in a car background
  • TfL greenlights Wayve’s autonomous vehicles in the City

    Tech
    Wayve autonomous vehicle navigating a busy London street with iconic cityscape in the background
  • Just Eat takes UK AI ordering tool across Europe

    Tech
    Private equity giant Prosus will acquire Just Eat Takeaway.com
  • Going on holiday as Prime Minister comes at a cost

    Opinion
    Andy Burnham smiling and holding a pint of beer and a smartphone in a pub setting
  • GPTZero founder: Even with watermarks, AI slop isn’t going anywhere

    Opinion
    Woman leaning on a desk with a typewriter, looking up thoughtfully, a pencil in hand.
  • The Highland tourist tax: Is Scotland pricing out whisky tourists?

    Whisky
    Red deer stag on a heather-covered hillside overlooking a loch and mountains in the Scottish Highlands
MorningWire

Independent European business, markets and political news for decision-makers.

Morning Briefing

Europe

  • Germany
  • France
  • EU Institutions
  • Europe

Business

  • Markets
  • Business
  • Economy
  • Regulation
  • Competition
  • Public Affairs

Editorial

  • Opinion
  • Editorial Policy
  • Corrections
  • Contact

Company

  • About Morning Wire
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
© 2026 Morning Wire Ltd · Published by Morning Wire Media, Bahnhofstrasse 65, 8001 Zürich, Switzerland
Privacy · Terms · Cookies · Facebook