Yazılar

Baidu Denies Data Breach Amid Controversy Over Executive’s Daughter

Baidu, one of China’s largest search and cloud service providers, has denied allegations of an internal data breach after the teenage daughter of a senior executive was accused of posting personal information online. The controversy erupted when social media users alleged that the daughter of Baidu vice president Xie Guangjun had leaked private details, including phone numbers, during an online dispute.

In response, Baidu stated that neither employees nor executives have access to user data and that the leaked information originated from illegally obtained databases hosted on foreign platforms. The company also announced that it had filed a police report to counter misinformation, including claims that Xie’s daughter had access to Baidu’s databases.

Xie, a member of Baidu’s cloud division, apologized for his daughter’s actions, asserting that she had acquired the data from overseas social media sites. His statement, reported by Chinese media, was shared on his personal WeChat account.

The incident comes as China tightens data security laws to curb the sale of private information, an issue exacerbated by illicit data brokers. The controversy has impacted Baidu’s stock performance, with shares dropping over 4% in Hong Kong trading on Thursday morning.

UK and US Engage in Private Talks to Resolve Apple Encryption Dispute

British officials have been in private discussions with U.S. counterparts to resolve concerns surrounding the UK’s demand that Apple build a backdoor into its encrypted data, according to a Bloomberg News report on Thursday. This follows Apple’s decision last month to remove its Advanced Data Protection security feature for cloud data in the UK, a move that has raised concerns about the potential for government access to sensitive information.

The removal of this encryption feature allows Apple to access iCloud backups, including iMessages, in specific situations, which it can then hand over to authorities if legally required. Previously, with end-to-end encryption enabled, even Apple itself could not access users’ data. This shift marks a significant response to government demands for easier access to encrypted user data.

The UK’s Home Office and Apple have not responded to requests for comment. Governments and tech giants have long been in a standoff over strong encryption, with authorities often viewing it as an obstacle to surveillance and crime-fighting. However, the UK’s demands are seen as particularly expansive.

In response to the situation, U.S. officials are investigating whether the UK’s actions violate agreements between the two countries. A letter sent on February 25 by U.S. Director of National Intelligence Tulsi Gabbard indicated that the U.S. is examining whether the UK violated the CLOUD Act, which restricts foreign governments from making requests for data on U.S. citizens.

On Friday, Apple’s appeal against the UK’s order will be heard in a secret hearing at London’s High Court

UK Demands Unprecedented Access to Apple Users’ Encrypted Cloud Data

The UK government has reportedly ordered Apple to provide broad access to encrypted user data stored on its cloud service, according to a Washington Post report on Friday. This request is reportedly far-reaching, as it seeks blanket access to all encrypted data, rather than just a specific account, making it one of the most expansive demands in major democracies.

The order comes under the UK’s Investigatory Powers Act of 2016, which allows the government to intercept communications and obtain data for security purposes. However, the level of access demanded from Apple in this case has never been requested before. The UK Interior Ministry has declined to comment, and Apple did not respond to inquiries outside of regular business hours.

Apple’s cloud services offer a feature called Advanced Data Protection, allowing users to lock their data with encryption that only they can unlock. This system is a safeguard that even Apple cannot override, ensuring user privacy. However, the UK government’s demand seeks to bypass these privacy protections, raising significant concerns about privacy and encryption rights.

This order follows a broader UK initiative to update its laws, including changes to the Investigatory Powers Act and the introduction of the Online Safety Act of 2023. The latter requires companies to address harmful content, such as child sexual abuse material, on their platforms, but tech firms like Meta (with WhatsApp) and Signal have voiced concerns about how such regulations could undermine encryption.

In the past, Apple has resisted similar government demands. In 2016, the company fought off a U.S. court order to unlock an encrypted iPhone connected to a terrorist attack in San Bernardino, California.