• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechCyber Saturday

Cyber Saturday—MongoDB Bolsters Security, ASUS Hacked, NSO Group on ’60 Minutes’

Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
March 30, 2019, 9:56 AM ET
Mongodb Headquarters
Logo and signage on a sunny day at the headquarters of document-oriented database company MongoDB in the Silicon Valley town of Palo Alto, California, August 25, 2016. (Photo via Smith Collection/Gado/Getty Images).Smith Collection—Gado Getty Images

MongoDB, a database software provider whose stock has been on a tear recently, just hired its first-ever chief information security officer. The appointment, which came Friday, signals that the company plans to take security more seriously even as it faces stiffened competition from the likes of Amazon and other tech giants.

The new boss is Lena Smart, a Glaswegian cybersecurity professional. Smart formerly held the same title at IPO-bound Tradeweb, a financial services firm that supplies the technology behind certain electronic trading markets. Prior to Tradeweb, she headed security at the New York Power Authority, where she worked for more than a decade. A cellist in her spare time, Smart told me in her Scottish brogue that her priority in the new job will be “knowing what the crown jewels are—that’s our customer data—and making sure that’s always protected.”

People leaving MongoDB and other databases unsecured on the web has been a persistent source of data-leaks over the years. Just this month, a security researcher discovered one such sieve that exposed to public view a trove of sensitive information, including location data, on millions of people in China. The misconfigured repository appears to have originated from SenseNets, a Shenzhen-based company that is likely providing the Chinese government with crowd-surveilling, facial recognition technology to track the country’s muslim Uyghur population. This is just the latest leak example; there are innumerable others.

Despite the frequency of these leaks, the situation seems to be improving. Most of these inadvertent leaks have sprung, in fairness, from people using outdated instances of the company’s so-called community edition software, a free, barer-bones version of the database product. Mark Wheeler, a MongoDB spokesperson, conceded that the 12-year-old company “struggled in its early years to find the right balance with security.” But he avers that updates to the default settings of MongoDB’s software over the past few years, plus key security team hires—including guardians Davi Ottenheimer, Kenn White, and now Smart—are changing the equation.

As Smart’s scope involves securing the totality of MongoDB’s business, the data-spillage issue ultimately falls to her. She says she’ll continue educating customers in best practices when it comes to security. She says she will also aim to imbue the company’s product development process with security, quality assurance, and testing from the earliest stages. “If we can get in at the very start” of the software development lifecycle, Smart says, it will “save us time and money and make our products more reliable and secure.”

The leaky database issue is one that extends well beyond MongoDB. It’s also a problem for rivals such as Amazon, particularly its S3 buckets, Elastic, and others. Like so many companies, these database-makers are looking now to shore up their software in the hopes of turning a historical weakness—cybersecurity—into a competitive strength. As Dev Ittycheria, MongoDB’s president and CEO, tells Fortune: making the company’s products as secure as possible “is critical to our business.”

Indeed, it’s critical to MongoDB and, increasingly, every business.

Robert Hackett

@rhhackett

robert.hackett@fortune.com

Welcome to the Cyber Saturday edition of Data Sheet, Fortune’s daily tech newsletter. Fortune reporter Robert Hackett here. You may reach Robert Hackett via Twitter, Cryptocat, Jabber (see OTR fingerprint on my about.me), PGP encrypted email (see public key on my Keybase.io), Wickr, Signal, or however you (securely) prefer. Feedback welcome.

THREATS

Step into the light. NSO Group, a controversial Israeli spyware outfit whose software has been implicated in the murder of Washington Post columnist Jamal Khashoggi, has been trying to clean up its image in the eyes of the public. Shalev Hulio, CEO of the notoriously secretive smartphone-cracking company, interviewed with CBS's 60 Minutes and permitted a tour of the offices. He denied any culpability in Khashoggi's assassination, despite having sold the firm's technology to the Saudi Arabian monarchy.

Order in the court. Hal Martin III, a contractor with the U.S. National Security Agency, pleaded guilty in federal court on Thursday for stealing state secrets in what may be the largest breach of classified information in U.S. history. The lawyer for the defense said Martin's "actions were the product of mental illness." Meanwhile, a New York Times dispatch from Guantánamo Bay alleges that the U.S. government has recordings of the mastermind behind the September 11th terrorist attacks hatching the heinous plot with co-conspirators.

Sipping the poisoned chalice. Nation state-linked hackers last year compromised roughly half a million Windows-running computers produced by ASUS, the Taiwanese tech giant, according to Kasperky Lab, the Russian cybersecurity firm. ASUS downplayed the software supply chain attack in a statement, saying "a small number of devices have been implanted with malicious code through a sophisticated attack on our Live Update servers." We echo the advice of Matt Blaze, a cybersecurity expert and Georgetown University professor, who says people should still regularly update their software.

Microsoft misadventures. Microsoft won a restraining order in U.S. court enabling the company to take control of 99 web domains used by a nation state threat actor. The domains were involved in alleged Iranian hacking campaigns tied to the defection of a U.S. Air Force counter-intelligence, Monica Witt, who is wanted by the FBI. Meanwhile, a 24-year-old, autistic security researcher pleaded guilty in a London court to hacking the computer networks of Microsoft and Nintendo. The judge issued short, suspended sentence, saying: “I am trusting this will be a lesson from which you will all learn."

Were you born yesterday?

Share today's Cyber Saturday with a friend:

http://fortune.com/newsletter/cybersaturday/

Looking for previous Data Sheets? Click here

ACCESS GRANTED

Alms qualms. Fast Company pries open the socioeconomics of privacy in this intriguing article. Ciara Byrne, the author, explains how many of the poorest Americans are forced to live under constant surveillance, a situation that exposes them to marketing for predatory financial services. Another set of the nation's poorest, including undocumented immigrants, day laborers, and homeless people, are often forced to live off the grid in what Byrne describes as a "surveillance gap," which prevents them from getting access to resources that might help them.

“Middle-class and wealthy Americans need to realize that novel surveillance techniques are typically used first on the poor,” [law professor Michele E.] Gilman wrote in a 2012 article. “By the time these strategies spread beyond controlling the poor, any ‘reasonable expectations’ against their use have dissolved.”

Low-income communities have historically been monitored by government and their privacy has been routinely invaded. In Colonial America, most towns had an “overseer of the poor” who tracked poor people and either chased them out of town or auctioned off their labor. Current public benefits programs ask applicants extremely detailed and personal questions and sometimes mandate home visits, drug tests, fingerprinting, and collection of biometric information.

FORTUNE RECON

Huawei's Perception Problem Deepens as U.K. Spies Identify Security Risks by David Meyer

5 Things to Know About Facebook's New Ban on White Nationalism by Aaron Pressman

U.S. Government Declares Grindr a National Security Risk by Chris Morris

How China's Surveillance State Reflects 'Black Mirror' by Clay Chandler

After New Zealand Massacre Video Posting, Microsoft President Says Tech Industry Needs a 'Major Event' Protocol by Alyssa Newcomb

Quadriga's Bitcoins Would Have Been Safer in Bermuda, Country Leader Says by Jen Wieczner

ONE MORE THING

Dynamic Duo. A question for the entrepreneurs in the room: How did you meet your cofounder? If you said you bumped into each other in a stairwell while attempting to hack into the IT network of that other person's company, then you share something in common with the folks at Duo, a cybersecurity startup snatched up by Cisco for more than $2 billion last year.

I think they call that love at first cyber.

About the Author
Robert Hackett
By Robert Hackett
Instagram iconLinkedIn iconTwitter icon
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

Sam Altman walks inside a courthouse
LawOpenAI
Sam Altman defends himself as a ‘honest and trustworthy businessperson’ in trial testimony detailing his past dealings with Elon Musk
By The Associated Press, Barbara Ortutay and Matt O'BrienMay 12, 2026
5 hours ago
An employee pulls out a server rack shelf at the rear of a Trainium3 UltraServer at an Amazon Web Services QA lab in Austin, Texas, on February 3, 2026.
AIAmazon
‘That doesn’t sound very healthy’: Amazon’s reported tokenmaxxing might gamify AI usage, analyst warns
By Eva RoytburgMay 12, 2026
5 hours ago
amazon
RetailAmazon
Amazon’s promise of 30-minute delivery collides with memories of Domino’s drivers crashing in the late 1980s
By Anne D'Innocenzio and The Associated PressMay 12, 2026
5 hours ago
robot
AIRobots
This South Korean hotel worker is training a robot to fold a banquet napkin: ‘I’ve been doing this about once a month’
By Kim Tong-Hyung and The Associated PressMay 12, 2026
5 hours ago
DHS wants $7.5 million to build facial recognition wearables for ICE agents. Some are already using ones off the shelf
LawMeta
DHS wants $7.5 million to build facial recognition wearables for ICE agents. Some are already using ones off the shelf
By Catherina GioinoMay 12, 2026
6 hours ago
turner
CommentaryMedia
Ted Turner built the original infinite scroll. The attention economy is running on his playbook 
By Nick LichtenbergMay 12, 2026
7 hours ago

Most Popular

Forget U.S. debt, China's total borrowing is in 'a league of its own'—much worse and deteriorating faster, analyst says
Economy
Forget U.S. debt, China's total borrowing is in 'a league of its own'—much worse and deteriorating faster, analyst says
By Jason MaMay 11, 2026
1 day ago
U.S. hotels are calling the World Cup a 'non-event' and 80% warn bookings are falling short of expectations, report finds
North America
U.S. hotels are calling the World Cup a 'non-event' and 80% warn bookings are falling short of expectations, report finds
By Sasha RogelbergMay 12, 2026
18 hours ago
Microsoft’s CFO admits she joined the tech giant without even knowing her salary—and then missed her first day of work
Success
Microsoft’s CFO admits she joined the tech giant without even knowing her salary—and then missed her first day of work
By Preston ForeMay 11, 2026
1 day ago
OpenAI CEO Sam Altman says Gen Z and millennials are using ChatGPT like a 'life advisor'—but college students might be one step ahead
Tech
OpenAI CEO Sam Altman says Gen Z and millennials are using ChatGPT like a 'life advisor'—but college students might be one step ahead
By Sydney LakeMay 10, 2026
3 days ago
Trump Mobile quietly rewrote its fine print to say the gold Trump phone may never be made, a year after taking $100 deposits
North America
Trump Mobile quietly rewrote its fine print to say the gold Trump phone may never be made, a year after taking $100 deposits
By Marco Quiroz-GutierrezMay 11, 2026
1 day ago
The Bezos family just donated $100 million to help achieve one of Mayor Zohran Mamdani’s top campaign promises
Politics
The Bezos family just donated $100 million to help achieve one of Mayor Zohran Mamdani’s top campaign promises
By Jake AngeloMay 12, 2026
6 hours ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.