Latest Publications

Share:

Cyberattack Targets in 2025: Which Industries Get Hit, How Attackers Get In, and What the Law Now Expects

Companies that map data breach trend lines against industry-specific obligations can convert raw statistics into risk governance strategies. This exercise can be especially valuable amid fast-shifting attack techniques,...more

Key Takeaways for Companies After SEC Voluntarily Dismisses Landmark SolarWinds Enforcement Action

On November 20, 2025, the U.S. Securities and Exchange Commission (SEC) filed a joint stipulation with SolarWinds Corp. and its chief information security officer (CISO), Timothy Brown, to dismiss with prejudice the...more

What's on the Horizon for Data Privacy and AI Laws as EU and US Show Signs of Easing Regulatory Burden for Businesses

Over the past five years, businesses have been faced with an increasingly burdensome regulatory environment in the U.S. and European Union when it comes to data privacy and artificial intelligence laws....more

Recent DOJ Settlements Highlight Risks for Subcontractors Handling Sensitive Government Information

On September 30, the U.S. Department of Justice (DOJ) announced an $875,000 settlement with a university over failures to comply with the data security obligations in certain contracts with the Air Force and the Defense...more

Fourth Circuit: Leaked Data Breach Information Must Be Publicly Available to Cause 'Concrete Injury'

On October 14, 2025, the Fourth Circuit issued its opinion in Holmes v. Elephant Insurance Company, clarifying that plaintiffs in data breach class actions must demonstrate that their compromised personal information was...more

The Potential Impacts of the Department of Justice's Trade Fraud Task Force

In August 2025, the Department of Justice (DOJ) launched a cross-agency Trade Fraud Task Force to facilitate implementation of the White House's proposed changes in its January 2025 "America First Trade Policy." ...more

Key Takeaways After California Finalizes Sweeping New CCPA Regulations

On September 23, 2025, the California Privacy Protection Agency finalized major regulations under the California Consumer Privacy Act (CCPA), introducing new requirements for cybersecurity audits, risk assessments, automated...more

California Privacy Regulator Imposes $1.35 Million Fine on Tractor Supply Company

On September 26, 2025, the California Privacy Protection Agency (CPPA) issued a decision requiring Tractor Supply Company to restructure its privacy practices and pay a $1.35 million fine to resolve alleged violations of the...more

From California to Connecticut, Regulators Increase Focus on Opt-Out Preferences

The California Privacy Protection Agency and the attorneys general of California, Colorado, and Connecticut announced joint investigations this month into companies that may be ignoring Global Privacy Control (GPC), a type of...more

Department of Defense Issues Final Rule Implementing Contractual Requirements Related to Cybersecurity

The U.S. Department of Defense (DOD) issued a final rule this month that fundamentally changes eligibility for DOD procurement by tying contract awards directly to cybersecurity readiness....more

European Court to Businesses: Pseudonymized Data Is Not Always Personal Data

When the European Central Bank declared the Spanish bank, Banco Popular Español, as "failing or likely to fail" in 2017, the Single Resolution Board (SRB) stepped in to resolve the issue by announcing the transfer of all...more

Is Relief in Sight for Companies on 'Pixel-Tracking' Lawsuits After California Legislators Introduce Bill?

Though recently stalled, California legislators have been taking steps over the past few months to address the surge of "pixel-tracking" lawsuits impacting businesses. ...more

Federal Trade Commission Finalizes Order With Web Hosting Company Over Data Security Failures

On May 21, 2025, the Federal Trade Commission (FTC) finalized a consent order with GoDaddy to settle allegations that the web hosting company misled customers and failed to implement basic data security protections. Although...more

DOJ's New White-Collar Enforcement Plan Signals Strategic Shift in Corporate Investigations

This week the Department of Justice (DOJ) announced its new approach to corporate criminal enforcement, "Focus, Fairness, and Efficiency in the Fight Against White Collar Crime."...more

Court Expands Scope of Private Actions Under California Consumer Privacy Act to Include Pixel Tracking Practices

On March 3, 2025, the U.S. District Court for the Northern District of California issued a significant ruling that has the potential to broaden the risk of liability under the California Consumer Privacy Act (CCPA). ...more

Business to Pay $630,000 Fine for Violation Claims Caused by Cookie Management Tool

A major vehicle automaker will have to change its business practices and pay a hefty fine to resolve claims that the company violated the California Consumer Privacy Act (CCPA), according to the state regulatory authority...more

State Data Privacy Regulators: New Initiatives and Developments Impacting Companies

Comprehensive state privacy laws often task a state regulator to promulgate accompanying regulations that clarify the law’s requirements and to enforce the law by providing further guidance through its enforcement actions....more

Data Privacy Week 2025: The Future of Privacy Law

Welcome back to the last installment of our three-part series for Data Privacy Week. We previously discussed the foundations of data privacy law and the current state of privacy landscape for companies, and we will now turn...more

Data Privacy Week 2025: The Current Privacy Landscape

Welcome back to the second installment of our three-part series for Data Privacy Week 2025. We previously discussed the foundations of data privacy laws, and now we will focus on the current landscape of U.S. state privacy...more

Data Privacy Week 2025: A Brief History and Examining Three Core Tenets of Data Privacy Laws

Each year, Data Privacy Week offers an opportunity for companies and professionals to revisit the fundamentals of data privacy. This year, we are celebrating Data Privacy Week, which runs through January 31, by releasing a...more

The Major Developments in 2024 in Cybersecurity and Data Privacy

Companies continue to face a patchwork of state data privacy laws, federal agencies targeted companies' collection of sensitive consumer information, and a handful of states passed artificial intelligence-related regulation...more

Will Your Business's Marketing Tools Subject You to Third-Party Data Sharing Litigation?

It is challenging for businesses to maintain their competitive marketing edge while simultaneously reacting to ever-changing regulations on consumer data collection, usage, and sharing....more

What Legal Risks Employers Face When Using Artificial Intelligence Transcription Tools

Artificial intelligence transcription tools are changing how internal and external meetings are recorded and notes are shared. These tools generate real-time transcripts of meetings, letting participants focus on the...more

What DOJ's Latest Guidance on Artificial Intelligence Corporate Compliance Means for Businesses

The U.S. Department of Justice (DOJ) recently updated its Evaluation of Corporate Compliance Programs (ECCP), which prosecutors consider when investigating, charging, and negotiating plea or other agreements with...more

53 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide