• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Cyber Security News

MoviePass Operators Settle Data Security Allegations

You are here: Home / General Cyber Security News / MoviePass Operators Settle Data Security Allegations
June 8, 2021

The operators of subscription assistance MoviePass have agreed to settle Federal Trade Commission allegations of fraud and knowledge security failures. 

It is alleged that MoviePass used an elaborate three-prong strategy to protect against and discourage subscribers from working with its $9.95 “1 motion picture a day” regular membership service as marketed.

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


First, according to the FTC complaint, the firm blocked as many as 75,000 subscribers from accessing content material by purposefully invalidating their passwords. 

The FTC stated: “MoviePass’s operators invalidated subscriber passwords while falsely declaring to have detected ‘suspicious activity or possible fraud’ on the accounts. MoviePass’s operators did this even though some of its have executives raised queries about the scheme.”

Their up coming alleged tactic was to develop a time-sensitive ticket verification method that discouraged 1000’s of subscribers from employing the assistance. 

“This software needed subscribers to acquire and post shots of their actual physical film ticket stubs for approval by means of the MoviePass app within a certain timeframe,” said the FTC.

“Subscribers who unsuccessful to submit their tickets could not look at potential films and could have their subscriptions canceled if they failed to confirm their tickets a lot more than when.”

Lastly, MoviePass’s operators allegedly established “trip wires” to block established groups of subscribers from employing the assistance immediately after they collectively hit particular thresholds primarily based on their month to month expense to the firm. The FTC alleges that this tactic was used in opposition to subscribers who typically watched 3 or far more motion pictures per thirty day period.

The operators of the now defunct app had been more accused of storing the particular details it gathered from subscribers in plain textual content and enabling unrestricted obtain to customers’ names, email addresses, birth dates, credit rating card numbers, and geolocation information.

In August 2019, MoviePass confirmed that it endured a knowledge breach that may possibly have uncovered customer credit rating card figures.

MoviePass Inc., which was launched in 2011 and headquartered in New York City,  shuttered its cellular ticketing service in 2019. In January 2020, its parent enterprise Helios and Matheson Analytics, Inc., filed for personal bankruptcy. 

Beneath the proposed settlement, MoviePass, Helios, former MoviePass CEO Mitchell Lowe, and former Helios CEO Theodore Farnsworth will be barred from misrepresenting their business and facts security methods.

The order also states that any corporations controlled by MoviePass, Helios, or Lowe should implement in depth information security plans.


Some pieces of this write-up are sourced from:
www.infosecurity-magazine.com

Previous Post: «Cyber Security News Cyber-attack on NYC Law Department
Next Post: Google Patches Critical Android RCE Bug google patches critical android rce bug»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • New HTTPBot Botnet Launches 200+ Precision DDoS Attacks on Gaming and Tech Sectors
  • Top 10 Best Practices for Effective Data Protection
  • Researchers Expose New Intel CPU Flaws Enabling Memory Leaks and Spectre v2 Attacks
  • Fileless Remcos RAT Delivered via LNK Files and MSHTA in PowerShell-Based Attacks
  • [Webinar] From Code to Cloud to SOC: Learn a Smarter Way to Defend Modern Applications
  • Meta to Train AI on E.U. User Data From May 27 Without Consent; Noyb Threatens Lawsuit
  • Coinbase Agents Bribed, Data of ~1% Users Leaked; $20M Extortion Attempt Fails
  • Pen Testing for Compliance Only? It’s Time to Change Your Approach
  • 5 BCDR Essentials for Effective Ransomware Defense
  • Russia-Linked APT28 Exploited MDaemon Zero-Day to Hack Government Webmail Servers

Copyright © TheCyberSecurity.News, All Rights Reserved.