Storm Fox
Trying the find the next noun to verb
Whoopsie. A massive bug in their app which allow people to access others information. It is also claimed they played down instead of being honest and now are playing down.
Source: BrewDog exposes data of 200,000 customers and shareholders
But also from the story:
So more don't give a shit attitude from this company.
Source: BrewDog exposes data of 200,000 customers and shareholders
Update:
BrewDog has since provided us with the following statement:
"We are grateful to the third party technical security services firm for alerting us to this vulnerability. We are totally committed to ensuring the security of our user’s privacy. Our security protocols and vulnerability assessments are always under review and always being refined, in order that we can ensure that the risk of a cyber security incident is minimized."
But also from the story:
Lack of alerts?
Worryingly, the company decided not to reveal the vulnerability to its users, even after it was fixed, going as far as to claim that there wasn’t anything “too exciting in this release”.
While the company had asked the researchers not to name them in its disclosure, BleepingComputer contends that BrewDog will be forced to inform the UK’s data protection officer, since PII falls under the purview of the General Data Protection Regulation (GDPR).
However, it appears the company disagrees. In a private forum post seen by TechRadar Pro, the company told shareholders it is under no obligation to report the incident to the Information Commissioner's Office (ICO), as per the advice of an external expert.
"The ICO is very clear on this," the company wrote. "We have to notify when users' data has been put at risk. As this was a vulnerability report, and the only personal data that was accessed was that of the third party conducting the assessment, there is no requirement to notify."
So more don't give a shit attitude from this company.