According to a Bloomberg article posted earlier this morning, the U.S. Health and Human Services Department (“HHS”) suffered a cyber attack on its computer systems Sunday night. The attack appears to have been intended to slow the agency’s systems, but
Data Privacy & Security Observer
Legal Developments and Thought Leadership in Data Privacy and Cyber Security
The Data Privacy & Security Observer, published by Balch & Bingham LLP, focuses on legal developments and regulatory updates related to data privacy, cybersecurity, and information security. The blog covers state and federal privacy laws, including comprehensive state privacy statutes and regulations governing consumer data rights, consent, and data processing obligations. It also addresses cybersecurity threats, advisories, and mitigation strategies, particularly those affecting critical infrastructure and operational technology. Additionally, the blog discusses emerging issues such as artificial intelligence governance, automated decision-making technology regulations, and compliance challenges for businesses and organizations.
Latest from Data Privacy & Security Observer - Page 6
FTC Issues Opinion and Final Order Against Cambridge Analytica
On December 6, 2019, the FTC issued an opinion finding that Cambridge Analytica, they had engaged in deceptive practices to collect personal information from several users of Facebook for purposes of voter profiling and targeting. In addition, the Commission found…
Senate Democrats Introduce the Consumer Online Privacy Rights Act (COPRA)
Yesterday (November 26, 2019), a comprehensive federal privacy bill was introduced that would grant individuals broad rights with respect to their data, impose new obligations on data processors, and expand the Federal Trade Commission’s enforcement authority with respect to privacy,…
Governor Signs Five Amendments to CCPA
Last Friday, October 11, 2019, one day after the California Attorney General issued proposed regulations to implement the California Consumer Privacy Act of 2018 (“CCPA”), the California Governor, Gavin Newsom, announced that he signed all five of the September 2019…
California Attorney General Issues Proposed CCPA Regulations
Today, on October 10, 2019, the California Attorney General (“AG”) issued long-awaited proposed regulations implementing the California Consumer Privacy Act of 2018 (“CCPA”). The AG also issued a notice of proposed rulemaking action and an initial statement of reasons elaborating on…
Equifax Will Pay Minimum of $575 Million, up to $700 Million, in Settlement Over 2017 Data Breach
Today, the FTC announced that Equifax, Inc. will pay at least $575 million (and potentially up to $700 million) as part of a proposed global settlement with the Federal Trade Commission (FTC), the Consumer Financial Protection Bureau (CFPB), and 50…
Significant UK GDPR Penalties & Record FTC/Facebook Settlement Reveal Valuable Insight into Current Landscape of Privacy Governance and Compliance
China Releases Draft Measures for Data Security Management
*written with assistance from co-author and W&L law student, Isabella Gray.
On May 28, 2019, the Cyberspace Administration of China (“Cybersecurity Administration”) released a set of draft Measures for Data Security Management (the “Draft Measures”). The Draft Measures provide articles…
Middle District of Alabama Denies Class Certification in Data Breach Claim Brought by Bank Against Retailer
In our Southeast Financial Litigation Monitor, our own Lindsey Catlett posts about a recent opinion in Southern Independent Bank vs. Fred’s Inc., in which the Middle District of Alabama denied class certification following a data breach which allegedly affected over…
Illinois Supreme Court Finds Actual Harm Unnecessary for Standing in Biometric Privacy Case
In an opinion issued today (January 25, 2019), the Illinois Supreme Court found that a Six Flags season pass holder can claim a violation of the state’s biometric privacy law by collecting the thumbprint of plaintiff Stacy Rosenbach’s son without…
