Vendor News, Legal News, News
October 22, 2024
1133 views 4 secs 0

Four cyber companies fined for SolarWinds disclosure failures

The Record reports that the Securities and Exchange Commission has charged four cybersecurity firms for their disclosures stemming from the SolarWinds incident in 2020: The Securities and Exchange Commission (SEC) charged four companies —- Check Point, Avaya, Unisys and Mimecast — for making “materially misleading” disclosures related to cybersecurity risks and intrusions. Tuesday’s  announcement is  the result […]

Data Breach News, Legal News
October 19, 2024
943 views 3 mins 0

Virginia prosecutor sues alma mater Georgetown over data breach

There are so many data breaches and data leaks every day that potential class action lawsuits or announcements of law firm investigations of breaches seems somewhat de rigueur by now. But not all lawsuits stem from huge breaches. Here’s one that stems from a mistaken configuration that exposed student information for 24 hours. Reuters reports: […]

Insurance News, Legal News, News
October 15, 2024
1186 views 2 mins 0

Can cyberinsurers or reinsurers justifiably refuse to reimburse victims for ransom payments to those on the U.S. sanctioned list?

If your company is the victim of a ransomware attack and you decide you have no choice but to pay the threat actors, can your cyberinsurer or cyberinsurance reinsurer decline to reimburse you if the threat actors you paid are on Treasury’s sanctioned list? Would reimbursing them expose the cyberinsurer or reinsurer to problems with […]

Legal News, Data Breach News, Finance
October 09, 2024
463 views 56 secs 0

New York Data Breach Requirements Set Reporting Tone Nationally

Brian Montgomery is a partner at Pillsbury and a former NYDFS deputy superintendent. Mark Krotoski is a partner at Pillsbury and former national coordinator for the Computer Hacking and Intellectual Property Program at the Department of Justice. In an article on Bloomberg Law, they write: Cybersecurity regulations can be a constantly moving target, with digital advances and […]

Legal News, Data Breach News, Europe
October 06, 2024
1166 views 5 mins 0

Notifications to breach victims are too late and provide too little important information

A recent press release from the Dutch DPA (Autoriteit Persoonsgegevens) emphasizes that Dutch organizations need to do better in providing breach victims with timely information that they need to protect themselves. If the Dutch DPA thinks warnings or alerts sent to victims more than three weeks after a breach is “way too slow,” The Data […]

Data Breach News, Legal News, News
September 30, 2024
1092 views 2 mins 0

T-Mobile settles FCC charges over four data breaches

The Federal Communications Commission announced a major settlement today: WASHINGTON, September 30, 2024—The Federal Communications Commission today announced a groundbreaking data protection and cybersecurity settlement with T-Mobile to resolve the Enforcement Bureau’s investigations into significant data breaches that impacted millions of U.S. consumers. To settle the investigations, T-Mobile has agreed to important forward-looking commitments to address foundational […]

Data Breach News, Europe, Legal News, News
September 27, 2024
1659 views 6 mins 0

Meta fined $101.5M for 2019 breach that exposed hundreds of millions of Facebook passwords

TechCrunch reports: Reset your clocks: Meta has been hit with yet another privacy penalty in Europe. On Friday, Ireland’s Data Protection Commission (DPC) announced a reprimand and a €91 million fine — around $101.5 million at current exchange rates — after concluding a multiyear investigation into a 2019 security breach by Facebook’s parent company. […] After investigating, […]