Skip to main content

Uber apparently hacked by teen, employees thought it was a joke

Uber apparently hacked by teen, employees thought it was a joke

/

‘I think IT would appreciate less memes while they handle the breach’

Share this story

Illustration by Alex Castro / The Verge

Uber says it’s investigating a “cybersecurity incident” amidst reports that the company’s internal systems have been breached. The alleged hacker, who claims to be an 18-year old, says they have administrator access to company tools including Amazon Web Services and Google Cloud Platform. The New York Times reports that the ride-hailing business has taken multiple internal systems, including Slack, offline while it investigates the breach.

When contacted for comment by The Verge, a spokesperson for the company declined to answer additional questions, and pointed to its statement on Twitter. “We are currently responding to a cybersecurity incident. We are in touch with law enforcement and will post additional updates here as they become available,” the statement reads.

The hacker appears to have made themselves known to Uber’s employees by posting a message on the company’s internal Slack system. “I announce I am a hacker and Uber has suffered a data breach,” screenshots of the message circulating on Twitter read. The claimed hacker then listed confidential company information they said they’d accessed, and posted a hashtag saying that Uber underpays its drivers. 

The Slack message from the alleged hacker was so brazen that many Uber employees appear to have initially thought it was a joke, the Washington Post reports. Employee responses to the post included lighthearted emoji like sirens and popcorn, as well as the “it’s happening” GIF. One unnamed Uber employee told Yuga Labs security engineer Sam Curry that staff were interacting with the hacker thinking they were playing a joke.

“Sorry to be a stick in the mud, but I think IT would appreciate less memes while they handle the breach,” one employee’s response read, according to The Post.

The hacker claimed to the NYT to be 18 years old, and told The Post that they breached Uber for fun and is considering leaking the company’s source code. In a conversation with cybersecurity researcher Corben Leo, they also claimed to have gained access to Uber’s systems through login credentials obtained from an employee via social engineering, which allowed them to access an internal company VPN. From there, they found PowerShell scripts on Uber’s intranet containing access management credentials that allowed them to allegedly breach Uber’s AWS and G Suite accounts.

“This is a total compromise, from what it looks like,” Curry told the NYT. “It seems like maybe they’re this kid who got into Uber and doesn’t know what to do with it, and is having the time of his life.”

Today’s Storystream

Feed refreshed 49 minutes ago Sneak peek

A
Andrew Webster49 minutes ago
Fortnite meets Splatoon.

Epic just released the latest season of Fortnite, which adds new locations, weapons, and a character played by Brie Larson. Perhaps the most notable thing, though, is a traversal mechanic where players can swim across the island as a glob of liquid metal. It feels a lot like Splatoon. Coincidentally, Nintendo released Splatoon 3 earlier this month. Now we just need the squid kids in Fortnite.


The new chrome in Fortnite’s latest season.
The new chrome in Fortnite’s latest season.
Image: Epic Games
E
External Link
Emma RothTwo hours ago
Collapsed crypto co-founder Do Kwon insists he’s “not on the run.”

South Korean authorities issued a warrant for Kwon’s arrest after the fall of his company’s Terra stablecoin wiped out $60 billion in funds. Kwon was initially thought to be somewhere in Singapore, but now local police can’t find him. On Twitter, Kwon maintains that he’s not running from the police, and says he’s willing to cooperate.

I am not “on the run” or anything similar - for any government agency that has shown interest to communicate, we are in full cooperation and we don’t have anything to hide.

South Korean prosecutors aren’t buying it, and said in response that Kwon is “obviously on the run.”


T
External Link
Thomas Ricker11:20 AM UTC
Apple has a Will Smith problem.

The New York Times reporting on the lose-lose situation at Apple over the release of Emancipation, a $120 million Civil War drama starring Will Smith that finished filming about a month before Smith climbed on stage during the Oscars in March and slapped Chris Rock:

“If they shelve the movie, does that tarnish Apple’s reputation? If they release it, does it tarnish their reputation? ... Hollywood likes a win-win situation. This one is lose-lose.”

The film is said to have generated an “overwhelmingly positive reaction” in private audience screenings, according to NYT’s sources, with Smith’s performance described as “volcanic.” Some are now pushing for the film’s release before the end of the year to make it eligible for awards consideration.


E
Twitter
Emma RothSep 17
Tesla’s Texas Gigafactory reached a new milestone.

After opening the Austin-based plant back in April, Tesla announced on Twitter that the location built its 10,000th Model Y electric SUV. We’re still waiting for the “future home of Cybertruck” to actually start building the thing, though, and that isn’t expected to happen until next year.


E
External Link
Emma RothSep 17
What happened to CryptoKitties?

CryptoKitties, a blockchain-based game known for its NFT cats, took off when it first made its debut in 2017. Things have come crashing down since then, sending the value of most CryptoKitties plunging. Matthew Smith over at IEEE Spectrum has an excellent writeup on how the game’s breeding mechanism and Ethereum gas fees contributed to its demise.

CryptoKitty in the past three months is about 0.04 ether, or $40 to $50, which is often less than the gas required to complete the transaction. Even those who want to casually own and breed inexpensive CryptoKitties for fun can’t do it without spending hundreds of dollars.


Welcome to the new Verge

Revolutionizing the media with blog posts

Nilay PatelSep 13
E
Twitter
Emma RothSep 17
Developers are already spicing up the iPhone 14’s Dynamic Island in ways I didn’t expect.

One developer, Kriss Smolka created a Pong-style game, called Hit the Island, that challenges you to bounce a ball between your paddle and the Dynamic Island to earn points.

Meanwhile, Christian Selig, the dev behind the Apollo app for Reddit, added the fun option to keep an adorable pixelated pet on the Dynamic Island when using the app. I don’t have an iPhone myself, but I’m looking forward to seeing how other devs put their own spin on the new feature.


N
External Link
Nilay PatelSep 17
The Fifth Circuit really blew up the First Amendment by upholding the Texas social media law.

The law still isn’t in effect, but the court’s opinion sets up a Supreme Court battle over the future of content moderation and the First Amendment. Mike Masnick has a good (if wonky) breakdown up already. It’s… well, it’s one of the dumbest First Amendment opinions in a long time.

The fact that Oldham claims, that “the Platforms are no different than Verizon or AT&T” makes me question how anyone could take anything in this ruling seriously.


R
External Link
Richard LawlerSep 16
Forget vinyl.

If you appreciate media preservation, make some time for this Q&A with the “last man standing in the floppy disk business,” Tom Persky of floppydisk.com.

The customers that are the easiest to provide for are the hobbyists – people who want to buy ten, 20, or maybe 50 floppy disks. However, my biggest customers — and the place where most of the money comes from — are the industrial users...Probably half of the air fleet in the world today is more than 20 years old and still uses floppy disks in some of the avionics.


A
External Link
Adi RobertsonSep 16
New terrible First Amendment ruling dropped.

Remember when a Texas appeals court decided to blow up internet moderation with no explanation? Well, it finally explained itself, and so far I don’t feel any better. We’re still working our way through the decision, but you can read it below. For now, though, the Supreme Court already temporarily blocked the law while its court battle continues.


R
External Link
Richard LawlerSep 16
So now what do you do with your old phone?

I’m guessing at least a few of you snagged brand-new iPhone 14s today, and I love that for you, but I’ll keep using my Pixel 6.

But if you still have your old phone and want to avoid creating unnecessary electronic waste, Kaitlyn Tiffany writes in The Atlantic that your best bet — despite recycling programs and flashy robots — is probably to just keep it.


E
External Link
Please enjoy this moose crash test dummy.

In some places, such as Scandinavia and Alaska, moose are big hazards. (Moose crashes can be fatal for people.) So a master’s student developed a moose crash test dummy to help carmakers improve moose safety. “The crash test results were very pleasing since the demolished cars looked very much like cars involved in real moose crashes,” wrote Magnus Gens, who won a 2022 Ig Noble award for the work.


Moose Crash Test Dummy

[www.diva-portal.org]

A
Twitter
Alex CranzSep 16
Who built the Dynamic Island?

The iPhone 14 Pro is shipping today and new owners will see the sharp little black pill pretty quickly after they power on their phone. One of its designers, Chan Karunamuni, took to Twitter to talk about it. Did you know it can move to the side of your phone when you have Reachability enabled? I didn’t!


E
External Link
Uh oh.

FedEx says a recession is coming. Why should that make you nervous? Well, former Fed chair Alan Greenspan used to talk with FedEx every week for the “FedEx indicator.” If you’re still raising for your company, you might want to hurry up and close the round.