Draft of Cyber Incident Reporting Rules Posted

A draft of federal cyber incident reporting rules for the Cyber Incident Reporting for Critical Infrastructure Act of 2022 (CIRCIA) has been posted in the Federal Register. It’s not exactly light reading, weighing in at a whopping 447-page Notice of Proposed Rulemaking. The rules will require critical infrastructure entities to notify the federal government of […]

Data Breach News, Legal News, News
March 26, 2024
1351 views 56 secs 0

Credit card company secures $48M verdict following decade-long legal battle over massive insider data breach

The Readable explains: A decade-long legal battle involving a data breach that affected the majority of the South Korean population concluded last week. The court confirmed a compensation award of $48 million to a credit card company. The Supreme Court of Korea has rejected the appeal of the defense and ordered the company to pay […]

Legal News, Europe
March 26, 2024
1371 views 44 secs 0

U.K. Information Commissioner Office publishes new fining guidance

The Information Commissioner’s Office has published new data protection fining guidance setting out how it decides to issue penalties and calculate fines. The guidance provides greater transparency for organizations about how the ICO goes about using its fining power.  Tim Capel, ICO Director of Legal Service, said: “We believe the guidance will provide certainty and clarity for […]

Europe, Legal News
March 18, 2024
612 views 19 secs 0

The CJEU Ruled that Supervisory Authorities Can Order the Deletion of Unlawfully Processed Personal Data

On March 14, 2024, the Court of Justice of the EU (“CJEU”) ruled that EU supervisory authorities have the (corrective) power to order data controllers who have been found to process personal data unlawfully to erase such personal data, even if the data subjects have not requested the erasure.  (Case C‑46/23) The CJEU ruled that […]

Malware Ransomware, Legal News
February 22, 2024
1156 views 2 mins 0

Reward Offers for Information on LockBit Leaders and Designating Affiliates

Law enforcement has been providing new information each day about the disruption to LockBit’s operations. In today’s news, there’s a reward offered for information on the perpetrators and affiliates. The reward offer was published by the U.S. Department of State: The Department of State is announcing reward offers totaling up to $15 million for information […]

Legal News, Data Breach News
February 20, 2024
1148 views 2 mins 0

Breach notification laws do little to nothing to reduce breaches, study claims

Tech Times reports: A study by researchers from the University of Minnesota and George Mason University has reportedly claimed that US cybersecurity laws on breach notifications have little to no effect on curbing data breach incidents in the country.  The legislation that requires businesses to tell customers if their data has been compromised, known as breach notification laws (BNLs), enacted by governments of […]

Legal News
February 09, 2024
1088 views 2 mins 0

FCC Updates Security Breach Rules for Telecommunications Service Breaches

In honor of Privacy Day, Steven A. Augustino and Jack Pringle of Nelson Mullins have highlighted new security breach rules promulgated by the Federal Communications Commission (FCC). Their article begins by pointing out something also noted in the healthcare sector, where increasing concurrent jurisdiction increases the number of federal and state regulations entities must comply […]

Insurance News, Commentaries and Analyses, Legal News
February 03, 2024
1366 views 3 mins 0

Do you know what your cyber policy covers? (Southwest Airlines v. Liberty Insurance Underwriters)

An article by attorneys at Barnes & Thornburg LLP discusses a court case that serves as a useful reminder of how provisions of cyber policies may be interpreted when it comes to coverage of cyber-related incidents — even when those incidents are not data breaches. In 2016, Southwest Airlines suffered a computer system failure that […]