Legal News
November 06, 2024
550 views 6 mins 0

South Korea fined Meta $15.67M for illegally collecting and sharing Facebook users’ information

South Korea’s Personal Information Protection Commission has fined Meta 21.61 billion won for leaking the personal information about its users without their consent. That’s $15.5 million at today’s conversion rate. Joong Ang Daily reports: The Personal Information Protection Commission (PIPC) said Meta had collected such information about 980,000 users located in Korea via their Facebook […]

Legal News
November 03, 2024
1001 views 6 mins 0

 Cybercrime: Arrests in Hesse and Rhineland-Palatinate

Bundeskriminalamt (BKA) announced the seizure of two websites and two arrests: In an internationally coordinated operation by the Central Office for Combating Internet Crime ( ZIT ) of the Public Prosecutor General’s Office in Frankfurt am Main, the Hessian State Criminal Police Office ( HLKA ) and the Federal Criminal Police Office ( BKA ) on suspicion of various cybercrime offenses, officers of the HLKA executed […]

Legal News, Healthcare
October 29, 2024
1051 views 9 secs 0

Exemptions from the Drug Supply Chain Security Act Enhanced Drug Distribution Security Requirements

Christopher R. Smith of Epstein Becker & Green, P.C. writes: On July 12, 2024, the FDA provided small dispensers—those employing 25 or fewer full-time pharmacists or pharmacy technicians—with an exemption from the Drug Supply Chain Security Act’s (“DSCSA”) enhanced drug distribution security (“EDDS”) requirements until November 27, 2026.[1]  The FDA had previously announced a stabilization period effectively delaying […]

Vendor News, Legal News, News
October 22, 2024
1213 views 4 secs 0

Four cyber companies fined for SolarWinds disclosure failures

The Record reports that the Securities and Exchange Commission has charged four cybersecurity firms for their disclosures stemming from the SolarWinds incident in 2020: The Securities and Exchange Commission (SEC) charged four companies —- Check Point, Avaya, Unisys and Mimecast — for making “materially misleading” disclosures related to cybersecurity risks and intrusions. Tuesday’s  announcement is  the result […]

Data Breach News, Legal News
October 19, 2024
1034 views 3 mins 0

Virginia prosecutor sues alma mater Georgetown over data breach

There are so many data breaches and data leaks every day that potential class action lawsuits or announcements of law firm investigations of breaches seems somewhat de rigueur by now. But not all lawsuits stem from huge breaches. Here’s one that stems from a mistaken configuration that exposed student information for 24 hours. Reuters reports: […]

Insurance News, Legal News, News
October 15, 2024
1474 views 2 mins 0

Can cyberinsurers or reinsurers justifiably refuse to reimburse victims for ransom payments to those on the U.S. sanctioned list?

If your company is the victim of a ransomware attack and you decide you have no choice but to pay the threat actors, can your cyberinsurer or cyberinsurance reinsurer decline to reimburse you if the threat actors you paid are on Treasury’s sanctioned list? Would reimbursing them expose the cyberinsurer or reinsurer to problems with […]

Legal News, Data Breach News, Finance
October 09, 2024
543 views 56 secs 0

New York Data Breach Requirements Set Reporting Tone Nationally

Brian Montgomery is a partner at Pillsbury and a former NYDFS deputy superintendent. Mark Krotoski is a partner at Pillsbury and former national coordinator for the Computer Hacking and Intellectual Property Program at the Department of Justice. In an article on Bloomberg Law, they write: Cybersecurity regulations can be a constantly moving target, with digital advances and […]

Legal News, Data Breach News, Europe
October 06, 2024
1262 views 5 mins 0

Notifications to breach victims are too late and provide too little important information

A recent press release from the Dutch DPA (Autoriteit Persoonsgegevens) emphasizes that Dutch organizations need to do better in providing breach victims with timely information that they need to protect themselves. If the Dutch DPA thinks warnings or alerts sent to victims more than three weeks after a breach is “way too slow,” The Data […]