News & Analysis as of

Regulatory Violations Data Breach

Robinson+Cole Data Privacy + Security Insider

NYAG Settles with Healthplex for $400,000

On December 8, 2023, New York Attorney General Leticia James penned her approval to an Assurance of Discontinuance with third party dental administrator Healthplex, settling the enforcement action for $400,000 and a litany of...more

Sheppard Mullin Richter & Hampton LLP

CNIL Fines Canal+ Over Marketing and Data Security Concerns

The French Data Protection Authority announced a €600,000 fine against Groupe Canal+ over concerns with the media company’s direct marketing activities. According to the CNIL, the company sent users email marketing without...more

Dechert LLP

Dechert Cyber Bits - Issue 10

Dechert LLP on

SEC Proposes New Cybersecurity Rules for Public Companies - On March 9, 2022, the Securities and Exchange Commission (“SEC”) announced proposed amendments to its rules on cybersecurity. The proposed rules aim to “enhance and...more

Wyrick Robbins Yates & Ponton LLP

Buyers Beware: the FTC’s Case Against CafePress Highlights Privacy and Data Security Risks in Corporate Transactions

Last week the Federal Trade Commission announced a privacy and data security enforcement action against the online retail platform CafePress. The allegations in the FTC’s complaint read like a list of worst practices,...more

Polsinelli

When the Feds Find Out! Lack of Data Security Leads to Novel and Hefty Settlements

Polsinelli on

The Federal Government continues ramping up enforcement of data security requirements by deploying significant new enforcement theories and tools in support of cyber and data security controls required by federal law....more

Robinson+Cole Data Privacy + Security Insider

FTC Files Suit Against CafePress for “Data Breach Cover Up”

The Federal Trade Commission (FTC) issued a press release on March 15, 2022, stating that it was taking action against CafePress “over allegations that it failed to secure consumers’ sensitive personal data and covered up a...more

Dechert LLP

Dechert Cyber Bits - Issue 5

Dechert LLP on

FTC Announces Regulatory Priorities for 2022 - On December 10, 2021, the Federal Trade Commission (“FTC”) published its Statement of Regulatory Priorities (“Announcement”) for 2022. The FTC’s priorities for the coming year...more

BCLP

Lessons Learned from New York’s Second Cybersecurity Action

BCLP on

The New York Department of Financial Services (NYDFS) has announced its second regulatory enforcement action against a regulated entity (a New York licensed mortgage banker and loan servicer) for violating NYDFS’s...more

Robinson+Cole Data Privacy + Security Insider

Twitter fined $546,000 in December 2020 by European Data Protection Authority for 2019 Breach Notification Violations

The Irish Data Protection Commission (DPC) fined Twitter 450,000 euros (about US$546,000) for failing to timely notify the Irish DPC within the required 72 hours of discovering a Q4 2018 breach involving a bug in its Android...more

Latham & Watkins LLP

LG Darmstadt: 1.000 Euro immaterieller Schadensersatz für Datenschutzverstoß

Latham & Watkins LLP on

Tim Wybitul, Dr. Isabelle Brams Das LG Darmstadt ist eines der ersten deutschen ordentlichen Gerichte, die ein Unternehmen zu Schadensersatz nach Art. 82 DSGVO verurteilt haben. Das Gericht hat einem Kläger 1.000 Euro an...more

Robinson & Cole LLP

Data Privacy + Cybersecurity Insider - September 2020 #2

Robinson & Cole LLP on

CYBERSECURITY - City of Hartford Hit with Ransomware Attack, Causing School Delay - Cyber-attackers know that city and town officials have been gearing up for the start of school and the potential for remote learning,...more

Holland & Knight LLP

Litigating the CCPA in Court

Holland & Knight LLP on

The California Consumer Privacy Act (CCPA or Act) went into effect on Jan. 1, 2020. A first-of-its-kind law in the United States, the CCPA grants California residents expansive rights over businesses' collection, use and...more

Orrick, Herrington & Sutcliffe LLP

ICO Fines: When Is An Appeal Appealing?

The decision to appeal a regulatory finding is never taken lightly. By the time a regulator has completed its investigation and notified a company of its intention to fine, the company will have invested significant time and...more

Shook, Hardy & Bacon L.L.P.

Privacy and Data Security Alert l January 2020

States Consider Privacy and Data Security Legislation - It’s that time of year again, when we see a flood of legislative activity at the state level on privacy and data security laws. A couple of recent examples are below....more

Ballard Spahr LLP

HIPAA 2019 Year in Review: OCR’s Enforcement of HIPAA Security Rule

Ballard Spahr LLP on

Although the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) may yet announce one or two year-end settlements, it appears that 2019 will be known more for the implementation of changes in...more

Shook, Hardy & Bacon L.L.P.

Privacy and Data Security Alert | November 2019

EU Court Allows Class Action to Proceed, Sets Precedent for Future Data Breach Class Actions - A class action brought against Google will be allowed to move forward after the plaintiff’s appeal was permitted, allowing him to...more

Ballard Spahr LLP

OCR Hits Health System with $2.2M Fine for HIPAA Violations

Ballard Spahr LLP on

The U.S. Department of Health and Human Services Office of Civil Rights (OCR) imposed $2,154,000 in civil monetary penalties against Jackson Health System in Florida for failing to meet HIPAA privacy and security...more

Akerman LLP - Health Law Rx

Healthcare Providers Must Remember HIPAA Before Responding to Online Reviews

The latest HIPAA resolution agreement by the U.S. Department of Health and Human Services Office for Civil Rights (OCR) is a reminder that healthcare providers must take the high road when responding to unflattering online...more

Ballard Spahr LLP

OCR Announces $10,000 Settlement for Disclosure of Patients’ PHI through Social Media

Ballard Spahr LLP on

The Office for Civil Rights (OCR) at the Department of Health and Human Services announced it reached a settlement with Elite Dental Associates of Dallas (Elite) to resolve a complaint alleging Elite impermissibly disclosed a...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

A GDPR Update for Employers, Part IV: Implementing Lessons Learned From GDPR Complaints and Enforcement Actions

Much has happened since the European Union (EU) General Data Protection Regulation (GDPR) went into effect on May 25, 2018. Many EU countries have enacted national legislation to implement and expand the requirements of the...more

Robinson+Cole Data Privacy + Security Insider

Tech Company Execs Sweat Personal Liability for Privacy Violations

In the Privacy Law classes I teach in the Brown University Executive Masters of Cybersecurity and at Roger Williams University School of Law, we discuss the enforcement authority that the Federal Trade Commission (FTC), the...more

Ballard Spahr LLP

HHS Decreases Maximum HIPAA Penalties

Ballard Spahr LLP on

The Department of Health and Human Services has announced that it is lowering the maximum amount it will assess for most types of HIPAA violations. Although the change is couched as an exercise of discretion, HHS states that...more

Polsinelli

Historic State AG HIPAA Filing: An Important Case We Are Watching

Polsinelli on

In December 2018, twelve state Attorneys General ("AGs") jointly filed suit against Medical Informatics Engineering, Inc. (“MIE”) claiming it violated the Health Insurance Portability and Accountability Act and its related...more

Shook, Hardy & Bacon L.L.P.

Privacy and Data Security Client Alert | February 2019

Google Receives Record GDPR Fine - Marking the first major penalty against a U.S. tech company under the General Data Protection Regulation (GDPR), the French data-protection authority, CNIL, has fined Google a record $57...more

Troutman Pepper

Depository Financial Institution Liability: Tough Lessons Learned About Fraudulent Electronic Funds Transfers

Troutman Pepper on

A federal district court in the Eastern District of Pennsylvania recently issued a prescient opinion upholding traditional contract principles in this fast-moving technological age of electronic financial transmissions. ...more

29 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide