Tag Archive for: disclosures

Exclusive: Grindr’s US security review disclosures contradicted statements made to others


NEW YORK: When Grindr Inc’s Chinese owner sold the popular dating app to an investor consortium last year to comply with a U.S. national security panel order, the parties to the deal gave information to authorities that contradicted disclosures to potential investors and Chinese regulators, Reuters has learned.

They told the Committee on Foreign Investment in the United States (CFIUS) that James Lu, a Chinese-American businessman who is now Grindr’s chairman, had no previous business relationship with a key adviser to the seller, a man named Ding’an Fei, according to a Reuters review of the parties’ written submissions to CFIUS.

Fei, a former private equity executive, was acting as an adviser to Beijing Kunlun Tech Co Ltd, Grindr’s owner at the time, on the deal, the documents show.

“The investors and Ding’an Fei have at no time conducted business together in their personal capacities prior to the proposed transaction,” Kunlun and the investor group, called San Vicente Holdings LLC, wrote to CFIUS in a response dated March 27, 2020.

However, when Lu was raising funds to buy Grindr in the second half of 2019 and early 2020, potential investors were told by firms helping him raise the money that Fei was involved in the effort with him in various capacities, a review of four different fundraising documents shows.

The duo had also done business together in other ventures: Fei was a member of the board of a Chinese restaurant operator in which Lu served as chief executive officer, according to that restaurant company’s 2018-2019 annual report.

The discrepancies and omissions in the parties’ response to U.S. authorities, reported by Reuters for the first time, could prompt a new review from CFIUS, according to six former U.S. officials and lawyers familiar with the panel’s rules. If CFIUS were to find the statements were not true, it can also lead to civil penalties and criminal charges under the false statement provisions of the U.S. penal code, they said.

“If a transaction was approved based on misrepresentations, that could well invalidate the approval of the transaction,” said Brent…

Source…

Ex-White House officials call for reform of zero-day disclosures – FCW.com


FCW.com

Ex-White House officials call for reform of zero-day disclosures
FCW.com
The interagency Vulnerability Equities Process assesses whether the government should reveal or hoard a previously unknown, or zero-day, software flaws. Disclosing a zero day allows companies to issue software patches, plugging holes in internet
US urged to be more transparent about zero daysFedScoop
FBI's iPhone paid-for hack should be barred, say ex-govt officialsThe Register

all 5 news articles »

“zero day” – read more

US agency to seek consensus on divisive, volatile topic of security vulnerability disclosures

A U.S. agency hopes to gather security researchers, software vendors and other interested people to reach consensus on the sticky topic of how to disclose cybersecurity vulnerabilities.

Beginning in September, the U.S. National Telecommunications and Information Administration (NTIA) will host a series of meetings intended to improve collaboration among security researchers, software vendors and IT system operators on the disclosure of, and response to, vulnerabilities.

The first NTIA-hosted meeting will be Sept. 29 at the University of California, Berkeley, School of Law. Registration is open to all who want to participate, and the meeting will also be webcast, NTIA said.

To read this article in full or to leave a comment, please click here

Network World Security

Snowden disclosures prompt warning on widely used computer security formula – NBCNews.com (blog)


RT

Snowden disclosures prompt warning on widely used computer security formula
NBCNews.com (blog)
SAN FRANCISCO (Reuters) – In the latest fallout from Edward Snowden's intelligence disclosures, a major U.S. computer security company warned thousands of customers on Thursday to stop using software that relies on a weak mathematical formula 
Snowden Disclosures Prompt Warning On Widely Used Computer Security Carbonated.tv
Deliberately flawed? RSA Security tells customers to drop NSA-related RT
Major US security company warns over NSA link to encryption formulaHispanicBusiness.com
Pacific Standard –The Guardian
all 31 news articles »

“computer security” – read more