Ring Is Making Extra Security Mandatory After Hacks, Lawsuit
Tami Abdollah is dot.LA's senior technology reporter. She was previously a national security and cybersecurity reporter for The Associated Press in Washington, D.C. She's been a reporter for the AP in Los Angeles, the Los Angeles Times and for L.A.'s NPR affiliate KPCC. Abdollah spent nearly a year in Iraq as a U.S. government contractor. A native Angeleno, she's traveled the world on $5 a day, taught trad climbing safety classes and is an avid mountaineer. Follow her on Twitter.
Ring unveiled new security steps for customers when logging into their doorbell camera accounts, making two-factor authentication mandatory as the Santa Monica-based company battles criticism about privacy and unauthorized access to its technology.
The Amazon-owned company said in a blog post on Tuesday that the change is now rolling out to customers, and adds authentication to help "prevent unauthorized users from gaining access to your Ring account, even if they have your username and password." Users receive a one-time, six-digit code via SMS or email, and must enter that in before they can access the Ring account.
The beefed-up security measures come in response to a slew of reports of hacks, including one where a hacker was able to watch and communicate with an 8 year-old girl. The Amazon.com, Inc.-owned company unveiled its new privacy dashboard at the start of 2020 that allows people to see who has access to their device, but did not make two-factor authentication mandatory at the time.
"Our account safety and security is our priority," said Leila Rouhi, Ring's president. "We will stay vigilant and continue to give you more transparency and control over your devices and personal information, and help keep your home and Ring account secure and protected."
The authentication change also comes as a new federal lawsuit looms about privacy concerns. Amazon.com and Ring were sued in federal court in Los Angeles on Dec. 26, by a man who said his kids were playing basketball when a voice came on their Ring device's two-way speaker system commenting on their play and encouraging them to get closer to the camera. The plaintiff, John Baker Orange of Jefferson County, Alabama, then changed his password and enabled two-factor authentication. His password was previously "medium-strong" the lawsuit states.
The lawsuit filed as a class action states that the company has "attempted to distance itself from liability by blaming customers for failing to create strong security passwords" when their devices are hacked. But "it is Ring who failed to provide sufficiently robust security measures such as two-factor authentication and other protocols necessary to maintain the integrity and inviolability of its cameras.
"As a result of Ring's defective design, and its failure to imbue its WiFi cameras with sufficient security protocols, its customers' most basic privacy rights were violated along with the security and sanctity of their homes."
More recently, the company has been hit with criticisms about its sharing of user data with third-party service providers. Rouhi noted that the company will immediately put a temporary pause on the use of "most" third-party analytics services in the Ring apps and websites, while it works on giving users abilities to opt out of sharing their data with third-parties. Those additional options will be available in early Spring, Rouhi wrote.
Beginning this week, users will be able to opt out of sharing their information with third-party service providers for personalized ads.
"You might think you built this amount of trust with Ring because there's this app that protects the home. But in reality they're sending that data to third parties, they're partnering with law enforcement across the country without their customer knowledge, they've been the subject of hacks that have revealed user passwords, and then they blame the customer for it," said William Budington, a senior staff technologist for the Electronic Frontier Foundation, a nonprofit digital rights advocacy group, in a recent interview with dot.LA.
Subscribe to our newsletter to catch every headline.
Join us on Tuesday, August 11th at 11:00am PST for an exclusive dot.LA Strategy Session: Is the Green Rush Over?
California is the world's largest legal pot market, generating nearly $3.1 billion in spending in the Golden State alone. But cannabis-related businesses in the U.S. live in a legal-limbo, operating in this strange gray area between federal laws that make marijuana illegal and states that have decriminalized its use and sale entirely. This has led to sometimes difficult choices, workarounds and issues with which the cannabis and cannabis-linked companies are forced to contend.
Hilary Bricken, Partner of Harris Bricken
Hilary Bricken, Partner of Harris Bricken<p>Since joining Harris Bricken in 2010, Hilary has earned a reputation as an exceptional and fearless business law attorney. Hilary's clients—start-ups, entrepreneurs, and companies in all stages of development—value her bold approach to business strategy. Hilary also appears before city councils and community forums, where she advocates tirelessly for her clients.</p><p>In 2017, the American Bar Association (ABA) named Hilary one of the <a href="https://www.americanbar.org/news/abanews/aba-news-archives/2017/07/aba_young_lawyersdi/" target="_blank">top 40 young lawyers</a> nationwide and before that <a href="http://www.bizjournals.com/seattle/news/2013/12/14/newsmakers-of-2013-deal-makers.html" target="_blank">The Puget Sound Business Journal</a> named her as one of only seven deal makers of the year. She was by far the youngest and the only private practice attorney to garner this honor. Hilary was also named one of "<a href="http://www.bizjournals.com/seattle/print-edition/2015/09/11/2015-40-under-40-hilary-bricken.html" target="_blank">40 Under 40</a>" leading businesspeople by the PS Business Journal. In every year since 2014, Hilary has been chosen as a "Rising Star" lawyer by Super Lawyer's magazine.</p><p>Major media outlets like the New York Times, VICE, the Los Angeles Times, Chicago Tribune, Business Insider, CNN, Rolling Stone, Forbes, MSNBC, and Bloomberg all have turned to Hilary for her on-the-ground perspective on cannabis laws. Hilary's <a href="https://www.youtube.com/watch?v=0M4Fse1Ioaw" target="_blank">Tedx talk</a> on "big cannabis" (see below) has garnered more than 50,000 views and she also authors a weekly column for <a href="https://abovethelaw.com/tag/hilary-bricken/" target="_blank">Above the Law </a>on marijuana policy and regulation.</p>
Tanya Hoke, Managing Director of Galen Diligence
Tanya Hoke, Managing Director of Galen Diligence<p>Tanya has more than a dozen years of experience managing investigative due diligence for clients in industries ranging from pharmaceuticals and manufacturing to financial services and consulting. She has been advising investors in the cannabis industry since 2015, and focuses on issues relating to fraud, money-laundering, compliance, and corporate governance. Tanya is a Certified Fraud Examiner, a Certified Anti-Money Laundering Specialist, and a licensed private investigator. She has served on the National Cannabis Industry Association's Banking & Financial Services Committee and the State Regulations Committee. Tanya received a Bachelor of Arts degree from Swarthmore College and a Master of International Business degree from the Fletcher School at Tufts University, where she serves on the MIB Alumni Advisory Board.</p>
Brad Rowe, Director of Compliance, Operations and Regulations Analyst of Rowe Policy Media
Brad Rowe, Director of Compliance, Operations and Regulations Analyst of Rowe Policy Media<p>Brad has designed, implemented and delivered a dozen public policy research projects over the last six years through his time running BOTEC Analysis, at UCLA and with Avenu/MuniServices Cannabis Compliance and Support Services and Rowe Policy + Media. Brad is Lecturer of Public Policy at UCLA Luskin School of Public Affairs and recently started teaching Cannabis Policy and Society, the first of its kind in the country. </p><p>He serves as Advisor to the UCLA Cannabis Research Initiative, coordinating the Criminal and JuvenileJustice Research team and the California Cannabis Data Collection Project. He sat on the CommunityAdvisory Committee for the Los Angeles County Department of Health's impact assessment on cannabis. </p><p>In 2020 Brad has taken on the cannabis "dosing problem". To help naive and legacy consumers dose new cannabis products predictably and reliably. The HowHi App Data Project provides evidence based insights into the Quality, Duration and Amplitude of the cannabis experience. The variables are crowd-sourced via experiential self-reports on iOS and Android interfaces. </p>
Andrew Freedman, Senior Vice President at Forbes Tate Partners
Andrew Freedman, Senior Vice President at Forbes Tate Partners<p>Andrew brings vast experience from his three years as the State of Colorado's first Director of Cannabis Coordination. During this time, he developed distinctive experience effectively implementing voter-mandated legalized adult-use and medical cannabis while protecting public health, maintaining public safety, and keeping cannabis out of the hands of children.<br><br>Andrew's role in developing a successful operating model for cannabis regulation and stakeholder collaboration was identified as one of the reasons for the State of Colorado's success in implementing adult-use cannabis legalization by the Brookings Institution. Governor Hickenlooper has gone so far as to praise Andrew's work while on national television, stating, "Andrew Freedman, who came in and helped us once it was passed . . . [has] done a remarkable job of creating a regulatory framework."<br><br>Andrew has received national recognition for his leadership. Men's Health Magazine named him one of the 30 most influential health influencers of the last 30 years. He was recognized as one of Fast Company's "100 Most Creative People in Business" in 2016. He has been featured on 60 Minutes, NBC Nightly News, The Today Show, The New York Times, The Washington Post, The Wall Street Journal, The Boston Globe, Governing Magazine, and dozens of local stories throughout the nation and internationally.</p>
Tami Abdollah, Senior Reporter at dot.LA
Tami Abdollah, Senior Reporter at dot.LA<p>Tami Abdollah is dot.LA's senior technology reporter. She was previously a national security and cybersecurity reporter for The Associated Press in Washington, D.C. She's been a reporter for the AP in Los Angeles, the Los Angeles Times and for L.A.'s NPR affiliate KPCC. Abdollah spent nearly a year in Iraq as a U.S. government contractor. A native Angeleno, she's traveled the world on $5 a day, taught trad climbing safety classes and is an avid mountaineer.</p>
- The Rise and Fall of Genius Fund's $164M Cannabis Empire - dot.LA ›
- Tech Companies are Getting Caught in Marijuana Regulation - dot.LA ›
The Genius Fund was at full tilt in the spring of 2019, riding the cannabis green rush and executing millions of dollars worth of projects. And it was just getting started.
With plans for a grow operation underway, the company created a research arm to find a new way to produce a high-quality CBD oil and extract for use in the products it was developing, including sparkling water and candles. But, like many of the company's plans, there were bumps along the way.