Cybersecurity & Privacy

  • November 19, 2025

    Pillsbury Asks 2nd Circ. To Guard $4M Client Fee From SEC

    Pillsbury Winthrop Shaw Pittman LLP on Wednesday urged the Second Circuit to allow it to keep a $4 million advance payment retainer from the since-convicted former CEO of a bankrupt cybersecurity company, but the law firm conceded it should have clarified its rights after the government sought an asset freeze.

  • November 19, 2025

    Russian Tech Co. Hit With Sanctions Over Ransomware Links

    The U.S., U.K. and Australia on Wednesday announced coordinated sanctions on Russia-based Media Land LLC and employees of the so-called bulletproof hosting service over allegations that the business has acted as a key enabler for ransomware attacks.

  • November 18, 2025

    Pillsbury Winthrop Latest Firm Targeted By Data Breach Suit

    Pillsbury Winthrop Shaw Pittman LLP on Tuesday was hit with a proposed class action stemming from a data breach the firm says happened in April, adding to the growing litigation firms are facing in the aftermath of cyberattacks.

  • November 18, 2025

    Feds Grill NY Gov. Aide's Mom In Pursuit Of FARA Money Trail

    Federal prosecutors on Tuesday turned their focus to tracing the proceeds from a purported scheme by a former top New York state government staffer to secretly further the interests of the People's Republic of China, calling the defendant's own mother to the stand over a bank account alleged to have been used to move criminal funds.

  • November 18, 2025

    Software Provider Can't Shake Suit Over AT&T Call Recordings

    A California federal judge has refused to toss a putative class action accusing conversation analytics software provider Invoca Inc. of illegally recording AT&T customers' phone calls, finding that a pair of recent district court decisions supported the conclusion that the plaintiffs had adequately asserted a claim for wiretapping.

  • November 18, 2025

    Class Action Says Mich. Co. Didn't Protect Data From Hackers

    An engineering company focused on manufacturing failed to protect a massive amount of private data from a "notorious" hacker group, according to a proposed class action in Michigan federal court claiming the cybercriminals recently added it to their list of data breach victims.

  • November 18, 2025

    Plaintiffs Seek Meta Research Docs On Youth Users

    Plaintiffs urged a Los Angeles judge to compel Meta to produce unredacted internal documents that they say show its attorneys changed company research about the effects of social media on the young, citing a recent order by a Washington, D.C., judge in related litigation.

  • November 18, 2025

    23andMe Seeks OK On Updated $9M Settlement

    23andMe asked a Missouri bankruptcy judge to approve a deal that will modify a settlement with data breach claimants to encompass more claims and pay $9 million, saying doing so will avoid litigation.

  • November 18, 2025

    Kraken Valued At $20B In Latest Funding Round

    Crypto exchange Kraken announced Tuesday it raised $800 million in a funding round that garnered a $200 million investment from Citadel Securities, valuing the crypto exchange at $20 billion.

  • November 18, 2025

    Fla. Judge Tosses Data Breach Suit Against Food Charity

    A Florida federal judge tossed a proposed class action alleging a state food charity failed to protect its computer systems against a cyberattack, saying the lawsuit failed to state a claim. 

  • November 18, 2025

    Senate Dem Slams FCC's Carr Over Cybersecurity Plan

    A top Senate Democrat on telecom issues blasted Brendan Carr, head of the Federal Communications Commission, on Tuesday for seeking to roll back an FCC cybersecurity ruling issued late in the Biden administration responding to the Salt Typhoon cyberattack.

  • November 17, 2025

    Salesforce, Clients Accused Of Ignoring Data Breach Scheme

    Credit bureau TransUnion, airline Qantas and luxury goods seller Louis Vuitton — all clients of software company Salesforce Inc. — failed to adequately protect millions of users' data from a July "hub-and-spoke" data breach, a class action filed in California federal court claims.

  • November 17, 2025

    Online Star Defends Actions In Megan Thee Stallion Scandal

    Online personality Milagro "Mobz World" Cooper deflected blame for drawing attention to a deepfake porn video of rapper Megan Thee Stallion, saying she did not know it was fake as she took the stand Monday in Miami in the defamation trial against her.

  • November 17, 2025

    NetChoice Sues Virginia To Stop Social Media Limits For Kids

    A trade group representing Facebook, X and other tech companies on Monday sued the state of Virginia over a new law that limits children's access to social media, its latest lawsuit against state government efforts to reduce online harm to minors.

  • November 17, 2025

    Holyoak Leaves FTC For Interim US Atty In Utah

    Melissa Holyoak left the Federal Trade Commission on Monday to become Utah's interim U.S. attorney, leaving the FTC down to two commissioners, both Republicans, in the Trump administration's latest use of interim U.S. attorney appointments.

  • November 17, 2025

    SEC To Review Compliance With New Data Breach Rule

    The U.S. Securities and Exchange Commission announced Monday it will begin examining broker-dealers and investment advisers for compliance with a new rule requiring them to report data breaches to their customers.

  • November 17, 2025

    Atty Lowell Gets Delay In EBay Trial Amid NY AG Case Work

    A Massachusetts federal judge on Monday agreed to postpone the trial in a cyberstalking lawsuit against eBay and several former executives at the request of defense attorney Abbe David Lowell, who had cited his ongoing work for several high-profile clients, including New York Attorney General Letitia James in the Trump administration's criminal prosecution.

  • November 17, 2025

    Patients Net $2.55M Deal To End Plasma Co. Data Breach Case

    A group of patients is seeking a final seal of approval from a North Carolina federal judge on their $2.55 million settlement with a plasma collection company accused of failing to safeguard their personal data from hackers in an April 2024 data breach.

  • November 17, 2025

    Mich. Justice Questions Drug Dog Use After Pot Odor Ruling

    A Michigan Supreme Court justice said a case the top court declined to review Friday highlights the tension between the use of drug-sniffing dogs in traffic stops and the justices' recent ruling that the smell of marijuana alone is not sufficient probable cause to search a vehicle.

  • November 17, 2025

    NC Hospital Data Sharing Class Gets $2.45M Deal, $750K Fee

    A North Carolina Business Court judge gave final approval Monday to a $2.45 million class action settlement for almost half a million patients who accused a health system of sharing sensitive information with Meta Platforms Inc., with class counsel securing $750,000 in attorney fees.

  • November 14, 2025

    Lowe's Sheds Suit Over TikTok, Microsoft Trackers

    A California federal judge has thrown out a proposed class action accusing home improvement retailer Lowe's of illegally sharing website visitors' personal data with TikTok and Microsoft, finding that while the plaintiffs had adequately laid out their wiretap claim, they failed to allege the type of concrete injury necessary to sustain their suit.

  • November 14, 2025

    DOJ Targets North Korean IT Job Fraud, $15M Crypto Heist

    Four United States nationals and one Ukrainian have pled guilty in federal court to scheming with North Korea to help its citizens illegally secure remote information technology jobs with U.S. companies, the Department of Justice said Friday.

  • November 14, 2025

    Consumers Want 9th Circ. To Recertify Apple IPhone Class

    Apple users want the Ninth Circuit to restore the certification of their antitrust class accusing the technology giant of trapping them within the App Store, arguing a California federal judge improperly front-loaded the identification of individual members, when all that matters is that "nearly 200 million" users were harmed.

  • November 14, 2025

    Google, TikTok, Meta Fight Calif. Law Over Kids' Online Feeds

    TikTok, Meta and Google filed separate suits against California Attorney General Rob Bonta in federal court on Thursday seeking to block the state from enforcing a new law's requirement for parental consent before online platforms can deliver personalized content feeds to children, saying the provision infringes on their First Amendment rights.

  • November 14, 2025

    NC, Utah Attorneys General Launch Nationwide AI Task Force

    Democratic North Carolina Attorney General Jeff Jackson and Republican Utah Attorney General Derek Brown have announced the formation of a nationwide artificial intelligence task force in collaboration with developers OpenAI and Microsoft, as well as the Attorney General Alliance, a nonprofit group of bipartisan state attorneys general.

Expert Analysis

  • How Banks Can Harness New Customer ID Rule's Flexibility

    Author Photo

    Banking regulators' update to the customer identification process, allowing banks to collect some information from third parties rather than directly from customers, helps modernize anti-money laundering compliance and carries advantages for financial institutions that embrace the new approach, say attorneys at Bradley Arant.

  • Series

    Playing Soccer Makes Me A Better Lawyer

    Author Photo

    Soccer has become a key contributor to how I approach my work, and the lessons I’ve learned on the pitch about leadership, adaptability, resilience and communication make me better at what I do every day in my legal career, says Whitney O’Byrne at MoFo.

  • How Trump Cybersecurity EO Narrows Biden-Era Standards

    Author Photo

    President Donald Trump recently signed Executive Order No. 14306, which significantly narrows the scope and ambition of a Biden executive order focused on raising federal cybersecurity standards among federal vendors, say attorneys at Jenner & Block.

  • Opinion

    The SEC Should Embrace Tokenized Equity, Not Strangle It

    Author Photo

    The U.S. Securities and Exchange Commission should grant no-action relief to firms ready to pilot tokenized equity trading, not delay innovation by heeding protectionist industry arguments, says J.W. Verret at George Mason University.

  • And Now A Word From The Panel: Back In Action

    Author Photo

    A lack of new petitions at the May hearing session of the Judicial Panel on Multidistrict Litigation caught many observers' attention — but a rapid uptick in petitions scheduled to be heard at this week's session illustrates how panel activity always ebbs and flows, says Alan Rothman at Sidley.

  • Compliance Changes On Deck For Banks Under Texas AI Law

    Author Photo

    Financial services companies, including banks and fintechs, should evaluate their artificial intelligence usage to prepare for Texas' newly passed law regulating AI governance, noting that the enforcement provisions provide for an affirmative defense to liability, say attorneys at Mitchell Sandler.

  • Series

    Law School's Missed Lessons: Learning From Failure

    Author Photo

    While law school often focuses on the importance of precision, correctness and perfection, mistakes are inevitable in real-world practice — but failure is not the opposite of progress, and real talent comes from the ability to recover, rethink and reshape, says Brooke Pauley at Tucker Ellis.

  • 23andMe Fine Signals ICO's New GDPR Enforcement Focus

    Author Photo

    Many of the cybersecurity failures identified by the Information Commissioner’s Office in its investigation of 23andMe, recently resulting in a £2.3 million fine, were basic lapses, but the ICO's focus on several new U.K. General Data Protection Regulation considerations will likely carry into the future, say lawyers at Womble Bond.

  • Midyear Rewind: How Courts Are Reshaping VPPA Standards

    Author Photo

    The first half of 2025 saw a series of cases interpreting the Video Privacy Protection Act as applied to website tracking technologies, including three appellate rulings deepening circuit splits on what qualifies as personally identifiable information and who qualifies as a consumer under the statute, say attorneys at Perkins Coie.

  • How The Healthline Privacy Settlement Redefines Ad Tech Use

    Author Photo

    The Healthline settlement is the first time California has drawn a clear line in the sand around how website tracking must function in practice, so if your site uses tracking technologies, especially around sensitive content like health or finance, regulators are inspecting your website's back end, not just its banner, say attorneys at Baker Donelson.

  • Series

    Adapting To Private Practice: From ATF Director To BigLaw

    Author Photo

    As a two-time boomerang partner, returning to BigLaw after stints as a U.S. attorney and the director of the Bureau of Alcohol, Tobacco, Firearms and Explosives, people ask me how I know when to move on, but there’s no single answer — just clearly set your priorities, says Steven Dettelbach at BakerHostetler.

  • New DOJ Penalty Policy Could Spell Trouble For Cos.

    Author Photo

    In light of the U.S. Department of Justice’s recently published guidance making victim relief a core condition of coordinated resolution crediting, companies facing parallel investigations must carefully calibrate their negotiation strategies to minimize the risk of duplicative penalties, say attorneys at Debevoise.

  • 5 Consumer Protection Compliance Issues In NY State Budget

    Author Photo

    Companies that engage with New York consumers should promptly familiarize themselves with new state budget provisions that require finance and retail companies to make certain business practices more transparent and easier for customers to execute, say attorneys at Mintz.

  • Balancing The Promises And Perils Of Tokenizing Securities

    Author Photo

    Tokenizing listed securities offers the promise of greater efficiency, accessibility and innovation, but a recent U.S. Securities and Exchange Commission statement makes clear that the federal securities laws continue to apply to tokenized securities, so financial institutions and technology developers must work together to create clear rules, say attorneys at Orrick.

  • High Court Cert Spotlights Varying Tests For Federal Removal

    Author Photo

    A recent decision by the U.S. Supreme Court to review Chevron v. Plaquemines Parish, a case involving the federal officer removal statute, highlights three other recent circuit court decisions raising federal removal questions, and serves as a reminder that defendants are the masters of removal actions, says Varun Aery at Hollingsworth.

Want to publish in Law360?


Submit an idea

Have a news tip?


Contact us here
Can't find the article you're looking for? Click here to search the Cybersecurity & Privacy archive.