Feeds

FTC sues over mobile phone records sale

No-questions-asked trade outrage

Reducing security risks from open source software

A US consumer watchdog has launched a series of lawsuits designed to frustrate the controversial sale of consumers' telephone records to data brokers. The Federal Trade Commission (FTC) is seeking a permanent injunction against five web-based operations over the practice.

It also wants the courts to seize profits made from the sale of these records from the five data brokers. The defendants have been named as: 77 Investigations Inc, and Reginald Kimbro, based in Upland, California; AccuSearch Inc, doing business as Abika.com, and Jay Patel, based in Cheyenne, Wyoming; CEO Group Inc, doing business as Check Em Out, and Scott Joseph, based in Fort Lauderdale, Florida; Information Search Inc and David Kacala, based in Baltimore, Maryland; and Integrity Security & Investigation Services Inc, Edmund L Edmister, Tracey Edmister, and F Lynn Moseley, based in Yorktown, Virginia.

The defendants are being sued over alleged violation of the Telecommunications Act of 1996 which states that consumers' phone records are private property that can only be disclosed with the approval of a customer, as well as breaches of the FTC Act.

"Trafficking in consumers' confidential telephone records is outrageous," said Lydia Parnes, director of the FTC’s Bureau of Consumer Protection. "It robs consumers of their privacy and exposes them to everything from snoops to stalkers. We intend to put a stop to it."

According to the FTC complaints, the defendants advertised that they could obtain the confidential phone records of any individual, including lists of outgoing and incoming calls, to anyone prepared to stump up their fees, regardless of any legal niceties. The FTC alleges that data brokers used deception to obtain confidential phone records data.

"The account holders have not authorised the defendants to obtain access to or sell their confidential customer phone records. Instead, to obtain such information, defendants have used, or caused others to use, false pretenses, fraudulent statements, fraudulent or stolen documents or other misrepresentations, including posing as a customer of a telecommunications carrier, to induce officers, employees, or agents of telecommunications carriers to disclose confidential customer phone records," the FTC complaints state.

One of the defendants, Integrity Security & Investigations Services Inc, which is based in Yorktown, Virginia, also allegedly obtained and sold consumers' financial records, including credit card information.

The lawsuits, announced on Wednesday, follow an undercover investigation by FTC staff assisted by the Federal Communications Commission and US mobile operators Cingular Wireless, Sprint Nextel, and Verizon. Investigators surfed the net to identify US firms that sell consumers' phone records. They then posed as clients to complete undercover purchases of the phone records. FTC staff followed this up with warning letters to operators of 29 websites that continued to advertise the sale of phone records to the public.

Dozens of data brokers in the US make a business from selling call records - sometimes obtained from phone company insiders or by deception - for about $100 per account per month. The main market is private investigators.

The Electronic Privacy Information Centre filed a complaint with the Federal Trade Commission over these practices back in January. It has also submitted a petition to the regulator asking it to act to make sure phone companies improve their security safeguards. Meanwhile, consumers are advised to ask their phone companies to install a password on their individual accounts in a bid to block unauthorised access. ®

Mobile application security vulnerability report

More from The Register

next story
LibreSSL RNG bug fix: What's all the forking fuss about, ask devs
Blow to bit-spitter 'tis but a flesh wound, claim team
Microsoft: You NEED bad passwords and should re-use them a lot
Dirty QWERTY a perfect P@ssword1 for garbage websites
Manic malware Mayhem spreads through Linux, FreeBSD web servers
And how Google could cripple infection rate in a second
NUDE SNAPS AGENCY: NSA bods love 'showing off your saucy selfies'
Swapping other people's sexts is a fringe benefit, says Snowden
Own a Cisco modem or wireless gateway? It might be owned by someone else, too
Remote code exec in HTTP server hands kit to bad guys
British data cops: We need greater powers and more money
You want data butt kicking, we need bigger boots - ICO
Crooks fling banking Trojan at Japanese smut site fans
Wait - they're doing online banking with an unpatched Windows PC?
NIST told to grow a pair and kick NSA to the curb
Lrn2crypto, oversight panel tells US govt's algorithm bods
prev story

Whitepapers

Top three mobile application threats
Prevent sensitive data leakage over insecure channels or stolen mobile devices.
The Essential Guide to IT Transformation
ServiceNow discusses three IT transformations that can help CIO's automate IT services to transform IT and the enterprise.
Mobile application security vulnerability report
The alarming realities regarding the sheer number of applications vulnerable to attack, and the most common and easily addressable vulnerability errors.
How modern custom applications can spur business growth
Learn how to create, deploy and manage custom applications without consuming or expanding the need for scarce, expensive IT resources.
Consolidation: the foundation for IT and business transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.