bhisawa via Flickr CC

Yahoo has provided the Senate commerce committee with new details about its security breaches over the past four years. Here's what you need to know:

The damning tidbit: The accounts involved in Yahoo's series of breaches in 2013 and 2014 were mostly the same ones.

Yahoo hired a risk management executive and is reportedly more engaged with law enforcement than was previously public; it is working with federal, state, and foreign government officials about the breaches. Recall that Yahoo only learned of its 2013 breach in 2016 when user data turned up online.

The specifics on its cyber security updates: Yahoo is growing its Advanced Persistent Threat team to better deal with state-sponsored attacks (which likely caused the 2016 breaches). The company also takes a "kill chain" approach to detect attacks, runs a vulnerability assessment team that attacks its own products (the "red team"), and has a "bug bounty program" that pays those external to Yahoo to inform it of bad code.

Plus, Yahoo will present its briefing to the Senate committee via a committee it formed internally just to investigate the breaches. The briefing is not yet scheduled.

Go deeper

Updated 17 mins ago - Politics & Policy

Coronavirus dashboard

Illustration: Aïda Amer/Axios

  1. Politics: Chris Christie: Wear a mask "or you may regret it — as I did" — Senate Democrats block vote on McConnell's targeted relief bill.
  2. Business: New state unemployment filings fall.
  3. Economy: Why the stimulus delay isn't a crisis (yet).
  4. Health: Many U.S. deaths were avoidable — The pandemic is getting worse again.
  5. Education: Boston and Chicago send students back home for online learning.
  6. World: Spain and France exceed 1 million cases.
1 hour ago - Technology

Facebook Oversight Board begins hearing appeals

Illustration: Aïda Amer/Axios

The Facebook Oversight Board announced Thursday that some Facebook and Instagram users can now submit appeals to the Oversight Board for an independent review of their own content removals.

Why it matters: The board, a first-of-its-kind internet governance body, will begin hearing cases from users ahead of the U.S. election.

Ben Geman, author of Generate
3 hours ago - Energy & Environment

U.S. cities' lagging climate progress

Expand chart
Reproduced from a Brookings Institution report; Chart: Axios Visuals

A just-published Brookings Institution analysis of U.S. cities' pledges to cut carbon emissions reveals very mixed results.

Why it matters: The potential — and limits — of city and state initiatives have gotten more attention amid President Trump's scuttling of Obama-era national policies.