Cybersecurity & Privacy

  • April 02, 2024

    Ga. Children's Hospital Accused Of Mining Patient Data

    A major Georgia pediatric healthcare system has been using web data trackers to illegally transmit confidential patient data to Facebook and other companies to boost its bottom line, according to a proposed class action filed in the Peach State on Tuesday.

  • April 02, 2024

    UK Reaches Landmark AI Risk Testing Agreement With US

    The U.K. government said Tuesday it had reached a landmark agreement with the U.S. to share the testing of advanced models for artificial intelligence, after highlighting in a report its increasing use by cybercriminals to attack financial institutions and business.

  • April 01, 2024

    Full 9th Circ. Won't Review OK Of $90M Facebook Data Deal

    The Ninth Circuit on Monday declined objectors' request for the full appellate court to revisit a three-judge panel's decision to affirm a $90 million settlement that resolves allegations Facebook illegally tracked logged-out users' browsing activity, saying no judge voted to rehear the matter.

  • April 01, 2024

    FTC Won't Add Face Scan Tool To COPPA Consent Options

    The Federal Trade Commission has declined for now to approve a new method for obtaining parental consent under the Children's Online Privacy Protection Act that would involve analyzing facial geometry to verify adults' identity, saying that it expects a forthcoming government report to provide vital additional information about the technology underlying the proposed tool. 

  • April 01, 2024

    AmEx Sends Credit Card Applicants' Data To Meta, Suit Says

    American Express was recently hit with a putative class action in New York federal court by a California resident alleging the company illegally shares with Facebook sensitive financial and personally identifiable information of people who apply online for credit cards.

  • April 01, 2024

    Cybersecurity Heads Back SolarWinds' Push To Nix SEC Suit

    Cybersecurity experts from dozens of private companies decried the U.S. Securities and Exchange Commission's lawsuit against SolarWinds and its cybersecurity head, arguing the unprecedented effort to hold the pair accountable for a 2020 cyberattack could undermine U.S. national security.

  • April 01, 2024

    FCC Grants Extensions To 6 Carriers Under 'Rip And Replace'

    The Federal Communications Commission is once again granting deadline extensions for the replacement of Chinese-made telecommunications equipment for service providers claiming that supply chain problems and the lack of full "rip and replace" funding is delaying the work.

  • April 01, 2024

    Wireless Cos. Push Back On Neutrality For Network 'Slicing'

    The mobile services industry is fighting public advocates' efforts to make sure so-called network "slicing" is covered by net neutrality rules the Federal Communications Commission is planning to reimpose on internet providers.

  • April 01, 2024

    FDIC Dings 2 More Banks Over 3rd-Party Relationships

    The Federal Deposit Insurance Corp. has ordered an Ohio community bank and a New York digital "hybrid" bank to strengthen their oversight of business partners, the latest in the agency's recent spate of enforcement actions over banks' management of their third-party relationships with financial technology firms and other outside companies.

  • April 01, 2024

    Cooley, Latham Guide Data Security Firm Rubrik's IPO Filing

    Venture-backed data security firm Rubrik Inc. on Monday filed long-awaited plans for an initial public offering, represented by Cooley LLP and underwriters counsel Latham & Watkins LLP, marking the latest sign of a recovering IPO market.

  • April 01, 2024

    Google Agrees To Delete Data To End 'Incognito' Class Claims

    Google LLC on Monday agreed to delete billions of data records that reflect certified class members' private browsing activities as part of a nonmonetary eve-of-trial settlement to resolve allegations that the tech giant surreptitiously tracks Chrome users running the browser's incognito mode.

  • April 01, 2024

    AT&T's Huge Data Breach Triggers Flood Of Consumer Suits

    Telecom giant AT&T Inc. was hit with a wave of litigation accusing the company of failing to safeguard customers' sensitive data just days after it reported that detailed personal information from more than 70 million past and current users surfaced online.

  • April 01, 2024

    Women Must Arbitrate Suit Over Ex-Coach's Hidden Cam

    Newly discovered texts and files on a former Temple University football coach's devices won't help three women revive or revise their lawsuits against the coach and the dog-sitting app he used to recruit them, a Pennsylvania federal judge ruled Friday.

  • April 01, 2024

    One Set Of Amazon Buyers Can't Cancel Later Antitrust Case

    Antitrust lawsuits against Amazon.com in New York and Washington federal court will remain separate after a New York federal judge refused Friday to let online shoppers in the earlier-filed Washington case intervene in — and junk — the other proposed class action filed two years later.

  • April 01, 2024

    Allstate Liable For Contractors' Illegal Marketing Calls

    An Illinois federal judge found that Allstate violated the Telephone Consumer Protection Act when its telemarketing subcontractor made phone calls to a man whose number was on Allstate's internal do-not-call list.

  • April 01, 2024

    Indicted Crypto Whiz Says Software Development Not A Crime

    The founder of the Tornado Cash cryptocurrency exchange told a Manhattan federal judge that the government had wrongly charged him with scheming to launder money and dodge sanctions, saying that the only agreement he'd made with others was to build legal, open-source software.

  • March 29, 2024

    DC Circ. Rejects Meta's Bid To Delay FTC Privacy Tweaks

    A D.C. Circuit panel on Friday refused Meta Platforms Inc.'s bid to delay the Federal Trade Commission from pursuing changes to a $5 billion privacy settlement, saying the social media giant failed to show why it's entitled to an emergency injunction while it's challenging the FTC's structure.

  • March 29, 2024

    SentinelOne Execs Face Derivative Suit Over Accounting Error

    Cybersecurity company SentinelOne was hit with a shareholder derivative suit in California federal court Friday over a 35% stock price drop that the plaintiff claimed was the result of the company's disclosure about its internal controls and subsequent inflation of its annualized recurring revenue.

  • March 29, 2024

    X Corp. Still Must Face Breach Suit Over 200M Users

    A California federal judge on Friday trimmed a proposed class action alleging X Corp., the former Twitter Inc., failed to protect the data of 200 million users whose information was exposed in a data breach, allowing the users to amend some allegations while permanently tossing a California Consumers Legal Remedies Act claim.

  • March 29, 2024

    BofA Sued After FTC Imposter Steals $2M From Accounts

    A 67-year-old Florida woman has sued Bank of America over alleged negligence and violations of several federal laws, claiming in the case that was removed to federal court this week that the financial services company failed to protect her accounts as she fell victim to a sophisticated social engineering scam by a person posing as a Federal Trade Commission investigator who stole $2 million.

  • March 29, 2024

    4th Circ. Revives Data Breach Suit Against Medical Center

    The Fourth Circuit on Friday revived a proposed class action alleging that Sandhills Medical Foundation Inc. failed to protect the personal information of patients whose data was leaked following a cyberattack, saying the health care provider is not shielded under federal immunity and that the government cannot be substituted as a defendant.

  • March 29, 2024

    GEO Group Brass Agree To Reforms To End Derivative Suit

    Shareholders who claimed executives of private prison contractor GEO Group Inc. lied about financing deals with major banks told a Florida federal judge that the company has agreed to a host of corporate reforms to end the derivative suit, which will include the appointment of a chief compliance officer.

  • March 29, 2024

    Blackbaud Defeats 7 Insurers' Claims For Data Breach Costs

    Complaints by seven insurers seeking reimbursement for $2.1 million in expenses paid to insureds following a ransomware attack on software company Blackbaud Inc. were torn apart by a Delaware state judge, who called the insurers' allegations "conclusory," tossing the two cases.

  • March 29, 2024

    FCC Looks To Stamp Out Call Routing Security Breaches

    The protocols that mobile telecom operators use to talk to each other leave their customers particularly vulnerable to location tracking, according to the Federal Communications Commission, which says it's time to take a closer look at the matter.

  • March 29, 2024

    Up Next After Bankman-Fried Sentencing: FTX Cooperators

    Now that FTX founder Sam Bankman-Fried has been sentenced to 25 years in prison for an $11 billion fraud on the collapsed crypto exchange, it's time for the three top lieutenants who testified against him at trial to face their own judgments — and experts say the cooperators are well positioned to avoid jail time.

Expert Analysis

  • 7 Critical Copyright And AI Questions Courts Need To Address

    Author Photo

    U.S. courts have yet to rule on many copyright issues regarding generative artificial intelligence technologies, so developers and users should consider several questions when evaluating risks, developing risk mitigation plans and making decisions about particular use cases, say John Delaney and Sean West at Perkins Coie.

  • What New DHS Cybersecurity Policy Means For Bid Protests

    Author Photo

    The U.S. Department of Homeland Security's recently unveiled policy of factoring cybersecurity self-assessments into its overall evaluation of contractors could raise novel bid protest considerations for offerors in both the pre-award and post-award contexts, say Amy Hoang at Seyfarth and Sandeep Kathuria at L3Harris Technologies.

  • Why E-Commerce Tools Are Under Fire Amid Privacy Lawsuits

    Author Photo

    As lawsuits try to shoehorn new technologies into decades-old privacy laws never intended for the digital age, e-commerce tools and the companies that use them are increasingly at risk, and retailers should act now to minimize their potential exposure, say attorneys at Benesch.

  • Opinion

    Metaverse Regs Pose Risks To Consumer Safety And Privacy

    Author Photo

    The U.K.'s recently passed Online Safety Act, and other pending proposals globally, could remove metaverse users' anonymity — with potentially catastrophic ramifications for virtual world activity, consumer privacy and safety, and the line between government authority and platform decision making, says attorney Donna Etemadi.

  • Opinion

    Legal Profession Gender Parity Requires Equal Parental Leave

    Author Photo

    To truly foster equity in the legal profession and to promote attorney retention, workplaces need to better support all parents, regardless of gender — starting by offering equal and robust parental leave to both birthing and non-birthing parents, says Ali Spindler at Irwin Fritchie.

  • Pay Attention To Contract Law Tenets Amid AI Incorporation

    Author Photo

    Providers of information technology products and services are rushing to market with various generative artificial intelligence-based solutions and attempting to unilaterally amend existing agreements with their customers, but parties should beware that such amendments may be one-sided, say Jeffrey Harvey and Sharon Harrington at Hunton.

  • How FinCEN's Proposed Rule Stirs The Pot On Crypto Mixing

    Author Photo

    The Financial Crimes Enforcement Network’s recently issued proposal aims to impose additional reporting requirements to mitigate the risks posed by convertible virtual currency mixing transactions, meaning financial institutions may need new monitoring techniques to detect CVC mixing beyond just exposure, say Jared Johnson and Jordan Yeagley at Buchanan Ingersoll.

  • 2nd Circ. Defamation Ruling May Chill NY Title IX Reports

    Author Photo

    The Second Circuit’s recent decision, holding accusers in Connecticut Title IX sexual misconduct cases are not immune to defamation claims, means that New York higher education institutions should reassess whether their disciplinary hearing procedures both protect due process and encourage victim and witness participation, says Nicole Donatich at Cullen and Dykman.

  • Series

    Writing Thriller Novels Makes Me A Better Lawyer

    Author Photo

    Authoring several thriller novels has enriched my work by providing a fresh perspective on my privacy practice, expanding my knowledge, and keeping me alert to the next wave of issues in an increasingly complex space — a reminder to all lawyers that extracurricular activities can help sharpen professional instincts, says Reece Hirsch at Morgan Lewis.

  • What Lawyers Must Know About Calif. State Bar's AI Guidance

    Author Photo

    Initial recommendations from the State Bar of California regarding use of generative artificial intelligence by lawyers have the potential to become a useful set of guidelines in the industry, covering confidentiality, supervision and training, communications, discrimination and more, say attorneys at Debevoise.

  • Industry Must Elevate Native American Women Attys' Stories

    Author Photo

    The American Bar Association's recent research study into Native American women attorneys' experiences in the legal industry reveals the glacial pace of progress, and should inform efforts to amplify Native voices in the field, says Mary Smith, president of the ABA.

  • A Look At Mass. Sports Betting Data Privacy Regulations

    Author Photo

    The Massachusetts Gaming Commission recently approved data privacy regulations under the state's sports wagering act to promote responsible gaming, showing a trend of regulators directing companies on how to protect personal information used by artificial intelligence systems, say Liisa Thomas and Kathryn Smith at Sheppard Mullin.

  • White House Activity Is A Band-Aid For Regulating AI In Health

    Author Photo

    In the medium term, recent White House actions will have a greater impact on AI in the health care industry than Congress' sluggish efforts to regulate it, but ultimately legislation of AI's development and use in the health space will fall to Congress, say Wendell Bartnick and Vanessa Perumal at Reed Smith.

  • Crypto, Audit Cases Dominate SEC's Enforcement Focus In '23

    Author Photo

    Attorneys at Covington examine the U.S. Securities and Exchange Commission's fiscal year 2023 enforcement results, which marked the SEC's third consecutive year of increasing enforcement activity since Chair Gary Gensler took over in 2021 — this time driven by a focus on combating cryptocurrency-related scams and enforcing recordkeeping compliance.

  • New York Cybersecurity Amendments Raise Regulatory Bar

    Author Photo

    Financial service providers both in and outside New York should study recent changes to the state financial regulator's cybersecurity requirements, which add governance controls, technical safeguards and incident response protocols to improve what is already becoming the national benchmark for robust cybersecurity compliance programs, say attorneys at Baker McKenzie.

Want to publish in Law360?


Submit an idea

Have a news tip?


Contact us here
Can't find the article you're looking for? Click here to search the Cybersecurity & Privacy archive.
Hello! I'm Law360's automated support bot.

How can I help you today?

For example, you can type:
  • I forgot my password
  • I took a free trial but didn't get a verification email
  • How do I sign up for a newsletter?
Ask a question!