UBER TECHNOLOGIES, INC.
bd_5994ff85006d8e3f · schema v1 · pii pii-v1
Full breach record for UBER TECHNOLOGIES, INC. →10 incidents on fileUber Technologies, Inc. disclosed that an unauthorized third party accessed a database containing driver partner information on May 13, 2014. The access was possible due to information being available without intended access restrictions (misconfiguration). Uber discovered the issue in September 2014 and restricted access immediately. In May 2016, after extensive analysis, Uber determined that specific driver partners' names, driver's license numbers, and Social Security numbers were in the accessed database. Notices were sent in June 2016 offering one year of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
May 13, 2014
Begins
Sep 1, 2014
Discovered
Feb 27, 2015
Filed
vs. sector median
+7 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- New Hampshire State AGbd_6586a4d42eaf86cf2015-02-26 · +1dVerified
- Massachusetts State AGbd_947a87111b7852212015-03-04 · +5dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Feb 26 (NH), last Mar 4 (MA) — a 6-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.