Latest Posts › Cybersecurity

Share:

HHS Proposes Significant Updates to HIPAA Security Rule

On January 6, 2025, the U.S. Department of Health and Human Services (“HHS”) Office for Civil Rights (“OCR”) published a Notice of Proposed Rulemaking (“NPRM”) to amend the Health Insurance Portability and Accountability Act...more

Colorado Department of Law Adopts Amendments to Colorado Privacy Act Rules

On December 5, 2024, the Colorado Department of Law adopted amended rules to the Colorado Privacy Act (CPA)....more

CFPB suggests that state privacy laws can—and should—regulate financial data

On November 12, 2024, the Consumer Financial Protection Bureau (CFPB) released a report examining the carve outs and limitations contained in comprehensive state privacy laws relating to financial institutions.  In an...more

CPPA Announces Settlements with Data Brokers for Failure to Register Under the Delete Act

On November 14, 2024, the California Privacy Protection Agency (“CPPA”), which is tasked with enforcing the California Consumer Privacy Act (the “CCPA”), announced it settled with two data brokers, Growbots, Inc. and UpLead...more

Historic $1.4 Billion Data Privacy Settlement between Meta and Texas

The State of Texas and Meta Platforms Inc. (“Meta”) have agreed to a $1.4 billion settlement, to be paid out over five years, to resolve claims relating to Meta’s alleged use of facial recognition technology without user...more

Business Better Podcast Episode: Cyber Adviser – A Comparison of AI Regulatory Frameworks [Video]

This episode is part of our Cyber Adviser series, where we discuss emerging issues in the world of privacy and data security. Today, we’re joined by Paolo Sbuttoni, a partner at Foot Anstey with years of experience...more

CPPA’s Enforcement Update: New Regulations and Focus Areas

The California Privacy Protection Agency (“CPPA”) discussed at its July 16 meeting new enforcement focuses in addition to current goals.  While the new focuses are largely in line with general trends, they also serve as a...more

XZ Utils Supply Chain Attack Sheds Light on Vulnerabilities in Widely Adopted Open Source System

In a reminder that open source products can carry significant risks beyond intellectual property, a vulnerability in a compression tool commonly used by developers has triggered widespread concerns....more

UN Adopts Landmark AI Resolution

The UN General Assembly has adopted a landmark resolution focusing on the safe, secure, and trustworthy use of Artificial Intelligence (AI). This resolution, led by the United States and supported by over 120 Member States,...more

Business Better Podcast Episode: Cyber Adviser – Your Data, My Headache: Consumer Health Data Laws [Video]

This episode is part of our Cyber Adviser series, where we discuss emerging issues in the world of privacy and data security. Today, our lawyers discuss new state consumer health data laws in Connecticut, Nevada, and...more

California Privacy Protection Agency Releases Draft Regulations for Consideration at its March 8, 2024 Board Meeting

On March 7, 2024, the California Privacy Protection Agency (CPPA) released new materials for review and discussion at the agency’s board meeting on March 8, 2024. Among the materials released were draft risk assessment and...more

CA Court of Appeals Decision Means CPPA May Start Enforcing CPRA Regulations

On February 9, 2024, California’s Third District Court of Appeals reinstated the California Privacy Protection Agency’s (“CPPA”) ability to enforce the California Privacy Rights Act of 2020 (“CPRA”) regulations. The CPRA...more

Business Better Podcast Episode: Cyber Adviser – Financial Services 2024 Privacy and Cybersecurity Preview [Video]

This episode is part of our Cyber Adviser series, where we discuss emerging issues in the world of privacy and data security. The privacy and cybersecurity landscape is evolving in the financial sector, from more specific...more

FTC Authorizes use of Compulsory Process in AI Investigations

On November 21, the Federal Trade Commission (“FTC”) approved in a 3-0 vote a resolution authorizing the use of compulsory process in nonpublic investigations involving products and services that involve or claim to involve...more

CPPA publishes new draft regulations addressing AI, risk assessments, cyber audits

The California Privacy Protection Agency (CPPA) recently published two new sets of draft regulations addressing a range of cutting-edge data protection issues. Although the CPPA has not officially started the formal...more

CPPA Publishes New Draft Regulations Addressing AI, Risk Assessments, and Cyber Audits

The California Privacy Protection Agency (CPPA) recently published two new sets of draft regulations addressing a range of cutting-edge data protection issues. Although the Agency has not officially started the formal...more

Senator Bennet Proposes Federal Commission to Regulate Artificial Intelligence

Following recent Senate testimony in which OpenAI CEO Sam Altman proposed additional Congressional oversight for the development of artificial intelligence (AI), Colorado Senator Michael Bennet has re-introduced the Digital...more

House Subcommittee Reconsiders the ADPPA after Iowa, Indiana, Montana, and Tennessee Move to Enact Privacy Laws

As we have previously posted, it has been an active year on the state privacy law front.  Indeed, the number of states with privacy laws is about to nearly double in a matter of months,  with Iowa, Indiana, Montana, and...more

Colorado Finalizes CPA Regulations

On March 15, the Colorado Attorney General’s Office finalized the Colorado Privacy Act regulations.  ...more

The UK Publishes Bill to Update UK GDPR

On March 8, 2023, the U.K. Secretary of State for Science for Innovation and Technology announced the publication of the Data Protection and Digital Information (No.2) Bill. This new version of the Data Protection and Digital...more

California Enforcement Sweep Targets Mobile Apps

On Friday, January 27, California Attorney General Rob Bonta announced an investigative sweep of businesses that provide mobile apps, issuing warning letters to those that AG Banta alleges failed to comply with the California...more

Privacy Policies Under the Colorado Privacy Act—Still a New Purpose-Driven Approach

With Colorado joining California as the only other state with rules implementing a comprehensive privacy law, businesses and practitioners have been anxiously watching to see whether a California-compliant privacy policy...more

2023 Privacy and Data Security Preview

2022 proved to be an historic year for privacy and data security. Connecticut and Utah joined the list of states that have now passed comprehensive data privacy laws, bringing the total to five (5) states. For the first...more

The Cost of a Click: Microsoft fined 60 Million Euros by French Privacy Watchdog for French Data Protection Act Violations

On December 22, 2022, France’s National Commission for Technology and Freedoms (“CNIL”) fined Microsoft’s Irish subsidiary 60 million euro for failure to comply with Article 82 of the French Data Protection Law (known as the...more

Colorado Releases Revised Privacy Rules

On December 21, the Colorado Attorney General released a revised draft of the Colorado Privacy Act Rules....more

86 Results
 / 
View per page
Page: of 4

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide