The Cybersecurity and Infrastructure Security Agency (CISA) and the UK National Cyber Security Centre (NCSC) have confirmed that threat actors are using FIRESTARTER malware to maintain persistence on Cisco network devices, allowing the threat actors to maintain access even after
Data Privacy + Cybersecurity Insider
Leveraging Knowledge to Manage Your Data Risks
Data Privacy + Cybersecurity Insider, published by Robinson & Cole LLP, focuses on legal developments and issues related to data privacy, cybersecurity, and information security. The blog covers topics such as data breaches, regulatory enforcement actions, privacy litigation, law enforcement access to digital data, AI governance and risks, and the implications of forum selection clauses in privacy class actions. It also addresses emerging challenges in technology law including blockchain security vulnerabilities, cross-chain bridge incidents, and the evolving standards for protecting personal and sensitive information in various contexts.
Latest from Data Privacy + Cybersecurity Insider - Page 11
No Standing in the Parking Lot: Court Dismisses DPPA Suit
The Driver’s Privacy Protection Act (DPPA) may not draw as much regular attention as statutes like the VPPA, CCPA, or TCPA, but it remains a source of privacy litigation risk where motor vehicle record information is involved. The DPPA is…
From Future Requirement to Present Risk: California Privacy Audit Readiness
California companies may have less time than they think to prepare for privacy audits. The California Privacy Protection Agency’s (CPPA) new Audits Division, created in February 2026, is expected to begin assessing companies’ compliance with the California Consumer Privacy Act…
Privacy Trends Fashion, Beauty, and Wearable Tech Brands Need to Watch
Fashion, beauty, and wearable technology brands are heading into 2026 with a lot more to think about concerning data privacy. What used to feel like a back-end legal issue is now shaping how companies design products, personalize experiences, and build…
Privacy Tip #490 – Dating App Hijacks + Repurposes College Student’s TikTok Video
In the category of how technology can be fun, yet dangerous, a 19 year old college student alleges that the dating app Meete took a video she innocently posted on TikTok of her high school graduation, then “overlayed it with…
Phishing Now Top Method for Initial Unauthorized Network Access
According to Cisco Talus researchers, phishing is the primary method threat actors use to gain unauthorized access to networks, accounting for more than one-third of all incidents in the first quarter of 2026. This increase is attributed to threat actors…
SCOTUS Hears the Next Big Fourth Amendment Fight Over Digital Location Data
Earlier this year, the Pennsylvania Supreme Court held that users generally lack a reasonable expectation of privacy in unprotected Google search records, underscoring how aggressively some courts are still applying third-party doctrine principles to digital data. Commonwealth v. Kurtz, 348…
CCPA Employee Data Rulemaking Could Reshape Employer Privacy Compliance in California
The California Consumer Privacy Act (CCPA) continues to stand apart as the only comprehensive state privacy law in the U.S. that applies to personal information relating to employees, job applicants, and independent contractors. Since that coverage expanded in January 2023,…
Tempus AI Faces Class Action Cases for Collection of Genetic Information in Acquisition
Multiple class action cases have been filed against Tempus AI alleging that, during its acquisition of Ambry Genetics, the company improperly collected and disclosed genetic information without obtaining prior written consent from individuals during its acquisition of Ambry. Tempus acquired…
EU AI Act Update: Omnibus Talks Stall, but Clock Is Still Ticking
Talks between European Union legislators broke down on Wednesday as they tried to agree on proposed amendments to the EU AI Act. At the center of the debate is the Digital Omnibus on AI, first introduced in November 2025, which…