Yahoo’s Marissa Mayer Slammed By US Senators Over ‘Unacceptable’ Delay To Handling Data Leak

Yahoo’s competence in handling the aftermath of the theft of personal information of at least 500 million accounts has been heavily criticised by US senators.

The security breach happened back in 2014 and saw the theft of 500 million accounts. But the hack only came to light last week.

Millions of Sky and BT broadband customers could be affected, as BT had used Yahoo Mail for its email service until 2013. Sky meanwhile still uses Yahoo for its email service.

Letter To Marissa

Six Democratic US senators wrote a letter to Yahoo CEO all Marissa Mayer, demanding an explanation as to why it took two years for the hack to come to light. They called the company’s handling of the breach “unacceptable”, according to Reuters.

“That means millions of Americans’ data may have been compromised for two years,” the senators reported wrote. “This is unacceptable.”

The letter was signed by Senators Patrick Leahy, Al Franken, Elizabeth Warren, Richard Blumenthal, Ron Wyden and Edward Markey.

They have also asked Yahoo to provide them with information of Yahoo’s investigation into the hack, how it is co-operating with authorities, and what plans it has to protect affected users. They also want to know what steps Yahoo is taking and for a timeline of the hack and its discovery.

A Yahoo spokesman meanwhile reportedly said the firm would respond in a “timely and appropriate manner” to the letter.

Meanwhile the US securities watchdog Securities and Exchange Commission has reportedly warned companies to promptly disclose “cyber events”.

Lax Security?

Earlier this week cybersecurity specialist Venafi warned that despite the hack occurring two years ago, Yahoo had still not implemented strong digital certificates.

They also warned that Yahoo is still using cryptography (MD5) that has been known to be vulnerable for many years now.

It should be noted that Yahoo has been hacked before. In 2012 Yahoo admitted it had been hacked, after more than 450,000 Yahoo passwords had been posted online.

The core assets of Yahoo are in the middle of the process of being acquired by Verizon for $4.83 billion (£3.86bn).

How well do you know network security? Try our quiz and find out!

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

View Comments

  • With reference to “That means millions of Americans’ data may have been compromised for two years,” Not to mention non-Americans who may not even have been aware that their email was linked to Yahoo. Strange that there was no such outburst during the NSA mass data collection campaigns. Whoops, sorry, I overlooked the issue of "National Security". Perhaps this is a case of "What goes around comes around".

Recent Posts

Vodafone Germany Confirms 2,000 Job Losses, Amid European Restructuring

More downsizing at Vodafone after German operation announces 2,000 jobs will be axed, as automation…

15 hours ago

AI Poses ‘Jobs Apocalypse’, Warns Report

IPPR report warns AI could remove almost 8 million jobs in the United Kingdom, with…

16 hours ago

Europe’s Longest Hyperloop Test Track Opens

European Hyperloop Center in the Netherlands seeks to advance futuristic transport technology, despite US setbacks

17 hours ago

NHS Scotland Confirms Clinical Data Published By Ransomware Gang

NHS Dumfries and Galloway condemns ransomware gang for publishing patients clinical data after cyberattack earlier…

18 hours ago

Fewer People Using Twitter After Musk Takeover – Report

Research data suggests fewer people are using Elon Musk's X, but platform insists 250 million…

21 hours ago

Julian Assange Wins Temporary Reprieve For US Extradition Appeal

US assurances required. Julian Assange handed a slender reprieve in fight against his extradition to…

23 hours ago