‘Close Enough’ Data Breach Notifications Create Exposure
A reminder that the details of states’ data breach notification laws really do matter. A notification that may be satisfactory
A reminder that the details of states’ data breach notification laws really do matter. A notification that may be satisfactory
The Daily Hodl reports: A proposed class action settlement is offering cash payments and monitoring services to millions affected by
There has been another ruling that makes it harder for plaintiffs in data breach litigation to prove standing. As seen
Fox54 in Alabama reports: A second proposed class-action lawsuit has been filed over the data breach that compromised patient information at Huntsville Hospital
Source: California DFPI, August 13, 2026
Miscellaneous News
The Record reports: Just in time for the World Cup’s “knockout” round, the U.S. government announced the seizure of hundreds
The New Humanitarian reports: A cyber-attack targeting the World Food Programme has exposed sensitive personal information belonging to some 600,000

On August 25, Boston Scientific discovered a cybersecurity incident was affecting some information technology systems, resulting in a network outage and disruption to the medical device firm’s operations. The incident impacted access to certain operating systems and business applications, including the ability to process and ship customer orders. Since then, the firm has provided daily updates on its situation. The most recent update yesterday indicates: The investigation into the cybersecurity incident is ongoing and we continue to work with CrowdStrike

“TeamPCP” has been arrested in Australia. The leader’s arrest had been widely anticipated across online channels and discussions, and the leader had even said he expected to be arrested and might just turn himself in. Now The Register reports: The Australian city of Perth is by some measures the world’s most isolated major metropolis, but is still sufficiently connected to US law enforcement authorities that the FBI was able to help Australia’s Federal Police (AFP) to find two men they

CyberInsider reports that ShinyHunters claims to have hit a major healthcare software provider, and that hundreds of millions of records have been acquired, although the number of unique patients is not yet determined. McKesson has acknowledged that it is investigating the claims. Read more at CyberInsider.

A reminder that the details of states’ data breach notification laws really do matter. A notification that may be satisfactory in most states may be noncompliant in another state and really cost the firm. From attorneys at BakerHostetler: One ruling is not a trend. And there can be unique factors at play in regulatory investigations related to large incidents. But a summary judgment ruling in favor of a state in a lawsuit against a telecom shows how not achieving technical

There has been another ruling that makes it harder for plaintiffs in data breach litigation to prove standing. As seen on JDSupra: Helpful guidance for businesses, and for Massachusetts state courts. In 2021, the U.S. Supreme Court held in TransUnion, LLC v. Ramirez that in a suit for damages, “the mere risk of future harm, without more, cannot qualify as a concrete harm” sufficient to establish standing under Article III of the Constitution. (Emphasis added). Since then, federal district courts and courts of
Categories
On August 25, Boston Scientific discovered a cybersecurity incident was affecting some information technology systems, resulting in a network outage
“TeamPCP” has been arrested in Australia. The leader’s arrest had been widely anticipated across online channels and discussions, and the
CyberInsider reports that ShinyHunters claims to have hit a major healthcare software provider, and that hundreds of millions of records
TechTimes reports: Notification letters from a company called AssuranceAmerica began arriving in mailboxes on July 10 — and if one
WJAR reports: A data breach four months ago has Warwick-based Beacon Mutual Insurance notifying people whose personal information was compromised
CyberInsider reports that ShinyHunters claims to have hit a major healthcare software provider, and that hundreds of millions of records

On August 25, Boston Scientific discovered a cybersecurity incident was affecting some information technology systems, resulting in a network outage and disruption to the medical device firm’s operations. The incident impacted access to certain operating systems and business applications, including the ability to process and ship customer orders. Since then, the firm has provided daily updates on its situation. The most recent update yesterday indicates: The investigation into the cybersecurity incident is ongoing and we continue to work with CrowdStrike

“TeamPCP” has been arrested in Australia. The leader’s arrest had been widely anticipated across online channels and discussions, and the leader had even said he expected to be arrested and might just turn himself in. Now The Register reports: The Australian city of Perth is by some measures the world’s most isolated major metropolis, but is still sufficiently connected to US law enforcement authorities that the FBI was able to help Australia’s Federal Police (AFP) to find two men they

CyberInsider reports that ShinyHunters claims to have hit a major healthcare software provider, and that hundreds of millions of records have been acquired, although the number of unique patients is not yet determined. McKesson has acknowledged that it is investigating the claims. Read more at CyberInsider.

A reminder that the details of states’ data breach notification laws really do matter. A notification that may be satisfactory in most states may be noncompliant in another state and really cost the firm. From attorneys at BakerHostetler: One ruling is not a trend. And there can be unique factors at play in regulatory investigations related to large incidents. But a summary judgment ruling in favor of a state in a lawsuit against a telecom shows how not achieving technical
A reminder that the details of states’ data breach notification laws really do matter. A notification that may be satisfactory
The Daily Hodl reports: A proposed class action settlement is offering cash payments and monitoring services to millions affected by
There has been another ruling that makes it harder for plaintiffs in data breach litigation to prove standing. As seen
Fox54 in Alabama reports: A second proposed class-action lawsuit has been filed over the data breach that compromised patient information at Huntsville Hospital
Source: California DFPI, August 13, 2026
Miscellaneous News
The Record reports: Just in time for the World Cup’s “knockout” round, the U.S. government announced the seizure of hundreds
The New Humanitarian reports: A cyber-attack targeting the World Food Programme has exposed sensitive personal information belonging to some 600,000
Categories
On August 25, Boston Scientific discovered a cybersecurity incident was affecting some information technology systems, resulting in a network outage
“TeamPCP” has been arrested in Australia. The leader’s arrest had been widely anticipated across online channels and discussions, and the
CyberInsider reports that ShinyHunters claims to have hit a major healthcare software provider, and that hundreds of millions of records
TechTimes reports: Notification letters from a company called AssuranceAmerica began arriving in mailboxes on July 10 — and if one
WJAR reports: A data breach four months ago has Warwick-based Beacon Mutual Insurance notifying people whose personal information was compromised
CyberInsider reports that ShinyHunters claims to have hit a major healthcare software provider, and that hundreds of millions of records
