Senator Ron Wyden and Representative Raja Krishnamoorthi have called for a federal investigation into Flock Safety, a company operating the largest network of automated license plate readers (ALPRs) in the United States, citing concerns over negligent handling of Americans’ personal data and inadequate cybersecurity measures. The lawmakers allege that Flock Safety fails to enforce cybersecurity best practices, such as mandatory multi-factor authentication (MFA), leaving customer accounts vulnerable to compromise. Reports indicate that at least 35 Flock customer accounts have been stolen by hackers, and the company’s voluntary authentication does not natively support phishing-resistant MFA. These security lapses have raised fears that hackers or foreign actors could gain access to sensitive location data on millions of Americans, and that law enforcement agencies can improperly share access to Flock’s systems.
The controversy surrounding Flock Safety extends beyond cybersecurity, as privacy advocates and local communities have raised alarms about the potential for abuse and invasive tracking through the company’s ALPR network. Some communities have already succeeded in removing Flock cameras, motivated by concerns over wrongful detentions, privacy violations, and the use of Flock data in sensitive investigations, such as those involving abortion patients and undocumented immigrants. Lawmakers argue that Flock’s practices expose Americans to significant risks and have urged the Federal Trade Commission (FTC) to investigate, referencing previous FTC enforcement actions against companies that failed to implement adequate authentication controls.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
An Ars Technica report described cross-partisan efforts to remove Flock Safety cameras, citing concerns about surveillance, errors, and the company's security practices. This reflected a broader public and political backlash beyond the initial call for federal scrutiny.
U.S. lawmakers, including Sen. Ron Wyden, called on the Federal Trade Commission to investigate Flock Safety's cybersecurity practices and whether the company adequately protected sensitive data collected by its surveillance systems.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.