Lawmakers ask FTC to probe Flock Safety’s cybersecurity practices
好的,我现在要帮用户总结一下这篇文章的内容。用户的要求是用中文总结,控制在100字以内,不需要特定的开头,直接写描述。 首先,我需要通读整篇文章,抓住主要信息。文章讲的是美国国会议员要求联邦贸易委员会(FTC)调查Flock Safety公司,因为该公司在网络安全方面存在问题。具体来说,Flock Safety没有强制要求执法客户使用多因素认证(MFA),而且他们的自愿认证机制也不支持防钓鱼攻击的MFA。这导致至少35个账户被黑客入侵。 接下来,Flock Safety的自动车牌识别摄像头在全国8000多个社区使用,引发了隐私争议,比如被用于调查堕胎患者和无证移民。议员们指出,Flock获得了大量 taxpayer money 来建立全国 surveillance network,但其对网络安全的态度非常随意,导致美国人面临黑客和外国间谍的风险。 此外,文章提到FTC之前曾对其他公司因不使用MFA采取过执法行动,并且Flock的问题还导致了密码共享不当的情况,使得联邦特工可以未经检测地访问系统。 最后,FTC和Flock Safety都没有回应置评请求。 现在我要把这些信息浓缩到100字以内。重点包括:国会议员要求FTC调查Flock Safety;该公司缺乏有效的网络安全措施;多因素认证的问题;账户被盗的情况;以及其技术的广泛应用引发的隐私问题。 可能的结构是:先点明议员的要求和原因(网络安全问题),然后提到具体的漏洞(MFA问题、账户被盗),接着说明技术的应用范围和引发的争议,最后提到潜在的影响和FTC的可能行动。 确保语言简洁明了,避免重复信息。 </think> 美国国会议员要求联邦贸易委员会调查Flock Safety公司因涉嫌薄弱网络安全措施。该公司未强制执法客户使用多因素认证(MFA),其自愿认证机制也不支持防钓鱼攻击的MFA。据称至少35个账户被盗。Flock的技术被广泛用于监控美国人,并引发隐私争议。议员们批评其对网络安全态度轻率。 2025-11-3 20:1:20 Author: therecord.media(查看原文) 阅读量:6 收藏

Congressional Democrats want the Federal Trade Commission (FTC) to investigate the police surveillance technology company Flock Safety for reportedly poor cybersecurity practices.

Flock Safety does not require law enforcement customers to use multi-factor authentication (MFA), and its voluntary authentication mechanism does not “natively support” phishing- resistant MFA, according to a letter Sen. Ron Wyden (D-OR) and Rep. Raja Krishnamoorthi (D-IL) sent on Monday to FTC Chairman Andrew Ferguson.

At least 35 Flock customer accounts have reportedly been stolen by hackers, according to the letter, which cited data from the cybersecurity company Hudson Rock. Phishing-resistant MFA can help shield accounts from breaches.

Flock’s automated license plate reader cameras are now used in more than 8,000 communities nationwide and have become controversial as reports have surfaced of their being used in investigations of abortion patients and undocumented immigrants.

Flock accounts can be used to track the locations of millions of Americans at any time, the letter notes.

“Flock has received vast sums of taxpayer money to build a national surveillance network,” the letter says. “But Flock’s cavalier attitude towards cybersecurity needlessly exposes Americans to the threat of hackers and foreign spies tapping this data.” 

In at least four instances, the FTC has issued enforcement actions against companies for failing to use MFA, the letter says, citing agency settlements with Uber, Cheff, Drizly and Blackbaud.

Flock’s lack of mandatory MFA has allowed law enforcement to see other agencies’ Flock data through improper password sharing, the letter said. As a result, federal agents can access Flock’s systems using passwords belonging to other users without detection, raising “serious questions about the effectiveness of Flock’s cybersecurity defenses,” the letter says.

A spokesperson for the FTC did not respond to a request for comment. Flock Safety also did not respond to a request for comment.

Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.


文章来源: https://therecord.media/wyden-letter-ftc-flock-safety-investigate-cybersecurity-practices
如有侵权请联系:admin#unsafe.sh