Latest Publications

Share:

Generative AI Browser Extensions and Plug-ins: A Security and Privacy Challenge

Generative AI is incredibly popular. So popular that many GenAI tools now have browser extensions that work across all open pages of the browsers upon which they are installed. They helpfully summarize pages, highlight...more

May 1 Deadline for Amendments to NY Department of Financial Services Cybersecurity Standard

New York State’s Department of Financial Services is warning all regulated entities has released a Cybersecurity Regulation Updates and Reminder warning all companies that all regulated entities without a full exception that...more

NY Department of Financial Services Issues AI Cybersecurity Guidance

The New York Department of Financial Services (DFS) has issued guidance, in the form of an industry letter, on addressing cybersecurity risks arising from artificial intelligence (AI) under its cybersecurity regulation, 23...more

New Rule Requires Defense Contractors to Meet Cybersecurity Standards

The Office of Information and Regulatory Affairs (OIRA) recently cleared the final rule for the U. S. Department of Defense’s Cybersecurity Maturity Model Certification (CMMC) program, putting the agency one step closer to...more

Ransomware Attack Affects Millions, New York Hospitals and Pharmacies

A ransomware attack on Change Healthcare, a technology company owned by UnitedHealth that touches one of every three U.S. patient records, has resulted in hospitals and pharmacies across New York facing a cash crunch. The...more

New York Wants Comprehensive Cybersecurity Plans for Hospitals by February 2025

New York Gov Kathy Hochul is touting her proposed statewide cybersecurity regulations for hospitals and health systems as “nation-leading,” and, if approved, those entities will have until February 2025 to comply with the new...more

Cybersecurity Framework Updated to Help Industries Avoid Risks

The National Institute of Standards and Technology (NIST) released a new draft of its cybersecurity framework on Aug 8, providing updated guidance for industries, government agencies and other organizations on reducing...more

Recent New York Cybersecurity Enforcement Provides Latest Reason for Companies to be Proactive

New York’s Department of Financial Services signaled once again its intent to strongly enforce the state’s Cybersecurity Regulation by finding OneMain Financial Group violated the law in several ways and imposing a $4.25...more

Lawsuits Reinforce Importance of Health Care Websites being HIPAA Compliant

After dozens of class-action lawsuits filed against health care providers across the country alleging their websites shared patient information with social media sites such as Facebook and Instagram, providers are again urged...more

State Privacy Laws Differ; One Comprehensive Privacy Policy May Be Best

In recent years, several states have passed comprehensive privacy laws regulating how businesses must handle personal information. California, Colorado, and Virginia are among the states leading this charge. While each...more

Ransomware attack hits major healthcare system CommonSpirit Health

A major healthcare system recently experienced a ransomware attack that affected patient care, showing once again the importance of hospitals and other healthcare facilities implementing comprehensive cybersecurity plans. ...more

Cyberattacks Hitting School Districts

The recent ransomware attack targeting Los Angeles Unified School District is another frightening reminder school districts are especially vulnerable to hackers and must continuously assess all of the individual systems...more

‘Shields Up’ on Cybersecurity in Wake of Ukraine Conflict

Fears of cybersecurity attacks are mounting in the wake of the Russian invasion of Ukraine. From the war itself, a number of malware variants have been created and are circulating on the internet....more

Recent NYSED Decision Underscores Need for School Districts to Protect Data Privacy

School districts must consider the sanctity and privacy of data they maintain, as a recent decision underscores from the New York State Education Department’s Office of the Chief Privacy Officer. This alert explains the...more

Meeting the Changing Needs of Clients: Why We Started a SaaS Company [Audio]

Technology provides law firms with enormous opportunities to improve client service – in part, by streamlining and automating labor-intensive tasks in a way that frees attorneys to focus on a client’s most-pressing...more

Increases in Telemedicine and Use of Digital Health Create Both Flexibility and Compliance Headaches

The explosion of telemedicine and telehealth, or virtual patient care and monitoring, presents many opportunities for enhanced, more streamlined care. But it also threatens to outpace laws regarding the delivery of care, as...more

New York Sen. Gillibrand Proposes Data Protection Agency to Regulate Collection, Sharing of Personal Information

A cynical online commenter once wrote this about the data collection practices of the online news site Digg: “If you are not paying for it, you’re not the customer; you’re the product being sold.” This is true of almost...more

When in Doubt, Report Cybersecurity Events

The New York State Department of Financial Services (DFS) announced the $1.5 million settlement of its investigation of Residential Mortgage Services (RMS) surrounding the unauthorized access to an email account which...more

New York’s Department of Financial Services Urges Cyber Insurance Companies to Require Insureds to Implement Robust Cybersecurity...

The New York State Department of Financial Services (DFS) issued a letter to the cyber insurance community on February 4, 2021 that should signal a warning to many other businesses seeking to obtain or keep their...more

Education Data Privacy and Security Laws: Best Practices for School Districts [Audio]

As if this fall weren’t hectic enough, school districts now need to prioritize compliance with a critical new regulation expanding New York state’s Education Law 2D. In effect since October 1, regulation Part 121 places new...more

COVID-19’s Impact on Cybersecurity – Don’t Let Your Data Privacy, Security and Regulatory Compliance Waver [Audio]

COVID-19 has had a dramatic impact on nearly all aspects of organizations nationwide – from employee safety to reimagined workplaces to financial hardships. But cyber protection and response during the pandemic cannot take a...more

12 Ways to Ensure Strong Cybersecurity During the COVID-19 Pandemic

In addition to the upheaval and emergency measures taken to combat the COVID-19 virus, organizations are increasingly vulnerable to cyber-attacks. A key driver of that vulnerability is an at-home workforce using older...more

New York Board of Regents Approves Part 121 Regulations Required by Education Law § 2-d

January 14, 2020, the Board of Regents formally adopted Part 121 to the Commissioner’s Regulations to implement Education Law § 2-d. The regulation will become effective January 29, 2020. This regulation primarily addresses...more

New Guidance Clarifies Schools Health Records Governed by FERPA Are Not Subject to HIPAA

New guidance issued jointly by the U.S. Department of Education and the U.S. Department of Health and Human Services advises schools that most health information relating to students at federally-funded elementary and...more

29 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide