A U.S. Food and Drug Administration (FDA) advisory committee recently determined that phenylephrine, an ingredient commonly used to treat sinus and nasal congestion, is ineffective in treating these symptoms. This was apparent from research for years, yet large...
El senador estadounidense Marco Rubio (R-FL) habló con César Grajales de La Poderosa 670 AM en El Panorama Político, sobre la crisis fronteriza, sobre cómo los hispanoamericanos se ven afectados con la realidad del país, sobre los cargos contra el senador Bob Menéndez...
Pregnant students are sometimes discriminated against by their schools, either intentionally or unintentionally and there is a concerning lack of awareness about the resources and rights available to them. Due to a lack of services and discrimination, these women may...
Currently, intelligence community civilians are subject to certain tax penalties for job-related relocation requirements, but active-duty military servicemembers are not subjected to the same penalties. These tax benefits, including the ability to deduct moving...
Vice Chairman of the Senate Select Committee on Intelligence Marco Rubio (R-FL) delivered opening remarks and questioned witnesses at a hearing on countering China’s influence in the United States. Watch Rubio’s opening remarks here as well as Part I and Part II of...
Approximately 302,000 Americans live with spinal cord injuries. To help these people achieve a better quality of life, there is a need to increase education and invest in research. U.S. Senators Marco Rubio (R-FL) and Tammy Baldwin (D-WI) successfully led a bipartisan...
Rubio Raises Concerns with Apple CEO After Inadequate Response to Collection and Storage of American User Data on Server in China
Miami, FL – U.S. Senator Marco Rubio (R-FL) today raised concerns with Apple CEO Tim Cook after recent reports revealed that the Adware Doctor application, sold through the Mac App Store, was collecting, storing and sending user information to a server in the People’s Republic of China. While Apple was aware of the practice, the company took weeks to inform consumers and pull the app from its platform. Rubio, in the letter, is requesting answers to Apple’s practices and seeks assurances that security protocols are in place to avoid a future reoccurrence.
The full text of the letter is below.
Dear Mr. Cook:
I write to express my concern with regard to recent reports that the Adware Doctor application (“app”), sold through the Mac App Store, was covertly collecting browser histories from users, storing the data in a locked file, and periodically sending this user information to a server based in the People’s Republic of China. Heightening concerns, moreover, were reports that Apple had been informed of Adware Doctor’s actions for at least several weeks but did not pull the Adware Doctor app until these actions were made public. For a company that prides itself on prioritizing user privacy and security, this delayed response is extremely disconcerting. It is also troubling that Apple researchers failed to uncover Adware Doctor’s covert collection and “storage” process. Over the last decade, Apple’s Mac App Store has seen more than 170 billion downloads, and your users have trusted your company to protect them from unsolicited intrusions.
I have serious concerns about China’s malevolent economic behavior involving the theft of U.S. intellectual property, which costs the United States hundreds of billions of dollars annually. However, the threat of American user data being kept on a server in China is equally alarming.
While I am aware of Apple’s efforts to protect against these intrusions by keeping apps compartmentalized from each other in “sandboxes,” it is evident that Adware Doctor managed to circumvent your implemented guidelines and protections. While I understand the difficulty in managing the security threats posed by millions of apps, in this case security researchers contacted you in mid-August about the Adware Doctor issue, yet actions to address the issue did not materialize until reports were made public on September 7, 2018. This significant lapse exposes a range of problems, not least of which are internal coordination issues and possibly a blatant disregard for significant user security concerns that were brought to your attention.
I therefore ask that you answer the following questions to address my concerns.
1) Why were the claims involving Adware Doctor’s use of user data not immediately investigated? Was this an oversight issue or were the claims of the researchers simply disregarded?
2) What steps will Apple management take to respond in a more prompt and efficient manner to researcher concerns that are brought to your attention?
3) What steps will Apple take to audit application updates in a more expeditious manner?
4) What steps will Apple take to ensure that applications using Apple’s Mac App Store have appropriate security protocols in place to prevent foreign actors from gaining access to user data?
When users access the Mac App Store, they do so under the belief and reasonable expectation that the application options presented to them have been thoroughly vetted and approved by Apple. This incident with Adware Doctor has brought this trust into question. Therefore, I respectfully request that you provide the public with answers to the questions posed in this letter in order to provide needed transparency and accountability into how this incident occurred.