• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Cyber Security News

MoviePass Operators Settle Data Security Allegations

You are here: Home / General Cyber Security News / MoviePass Operators Settle Data Security Allegations
June 8, 2021

The operators of subscription assistance MoviePass have agreed to settle Federal Trade Commission allegations of fraud and knowledge security failures. 

It is alleged that MoviePass used an elaborate three-prong strategy to protect against and discourage subscribers from working with its $9.95 “1 motion picture a day” regular membership service as marketed.

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


First, according to the FTC complaint, the firm blocked as many as 75,000 subscribers from accessing content material by purposefully invalidating their passwords. 

The FTC stated: “MoviePass’s operators invalidated subscriber passwords while falsely declaring to have detected ‘suspicious activity or possible fraud’ on the accounts. MoviePass’s operators did this even though some of its have executives raised queries about the scheme.”

Their up coming alleged tactic was to develop a time-sensitive ticket verification method that discouraged 1000’s of subscribers from employing the assistance. 

“This software needed subscribers to acquire and post shots of their actual physical film ticket stubs for approval by means of the MoviePass app within a certain timeframe,” said the FTC.

“Subscribers who unsuccessful to submit their tickets could not look at potential films and could have their subscriptions canceled if they failed to confirm their tickets a lot more than when.”

Lastly, MoviePass’s operators allegedly established “trip wires” to block established groups of subscribers from employing the assistance immediately after they collectively hit particular thresholds primarily based on their month to month expense to the firm. The FTC alleges that this tactic was used in opposition to subscribers who typically watched 3 or far more motion pictures per thirty day period.

The operators of the now defunct app had been more accused of storing the particular details it gathered from subscribers in plain textual content and enabling unrestricted obtain to customers’ names, email addresses, birth dates, credit rating card numbers, and geolocation information.

In August 2019, MoviePass confirmed that it endured a knowledge breach that may possibly have uncovered customer credit rating card figures.

MoviePass Inc., which was launched in 2011 and headquartered in New York City,  shuttered its cellular ticketing service in 2019. In January 2020, its parent enterprise Helios and Matheson Analytics, Inc., filed for personal bankruptcy. 

Beneath the proposed settlement, MoviePass, Helios, former MoviePass CEO Mitchell Lowe, and former Helios CEO Theodore Farnsworth will be barred from misrepresenting their business and facts security methods.

The order also states that any corporations controlled by MoviePass, Helios, or Lowe should implement in depth information security plans.


Some pieces of this write-up are sourced from:
www.infosecurity-magazine.com

Previous Post: «Cyber Security News Cyber-attack on NYC Law Department
Next Post: Google Patches Critical Android RCE Bug google patches critical android rce bug»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.