Cybersecurity & Privacy

  • May 15, 2024

    SolarWinds Says SEC's Cyber Breach Suit Goes Too Far

    SolarWinds Corp. on Wednesday asked a Manhattan federal judge to throw out the U.S. Securities and Exchange Commission's suit accusing the enterprise software company of deceiving investors about its lax cybersecurity, which left it open to a Russian hacking campaign.

  • May 15, 2024

    State Farm Can't Dodge TCPA Suit Over Robocalls

    State Farm must face a proposed class action alleging it violated the Telephone Consumer Protection Act by using a third-party company to make automated telemarketing calls without prior consent, an Illinois federal judge has ruled, saying the suit states a plausible claim of the insurer's vicarious liability for the robocalls.

  • May 15, 2024

    Flexibility In Info Security Policy May Add Compliance Burden

    New federal guidance for contractors handling sensitive, but unclassified information could introduce confusion and compliance burdens if agencies implement security controls without consulting contractors. 

  • May 15, 2024

    UnitedHealth Concealed DOJ Merger Investigation, Suit Says

    UnitedHealth Group has been hit with a proposed shareholder class action alleging that it failed to disclose that the U.S. Department of Justice had reopened an antitrust investigation into the health insurance giant following its acquisition of a healthcare data company, and that top executives had sold more than $120 million of shares knowing about the investigation before a news report revealed it to the public.

  • May 15, 2024

    En Banc 9th Circ. Will Mull Jurisdiction In Shopify Privacy Suit

    The Ninth Circuit agreed to review en banc a panel's decision dismissing a suit alleging payment processing company Shopify collects shoppers' sensitive information without permission, after the plaintiff argued the full court should hear the case to resolve how to assess personal jurisdiction in online misconduct cases.

  • May 15, 2024

    Anti-Trans Groups Fail To Block Wash. Youth Shelter Law

    A federal judge on Wednesday threw out a lawsuit filed by two anti-transgender groups challenging a Washington state law intended to ensure shelter for teens seeking gender-affirming care or reproductive health services, ruling that speculating on possible injury was not enough to clear a standing hurdle.

  • May 15, 2024

    FTC Chair Khan Defends Request For 25% Budget Increase

    Federal Trade Commission Chair Lina M. Khan defended a 25% budget increase request during a House appropriations hearing Wednesday, calling it "healthy" that aggressive Biden administration merger enforcement has made antitrust considerations top of mind for companies mulling transactions.

  • May 15, 2024

    House Panel Advances Tax-Exempt Org Oversight Bills

    The House Ways and Means Committee approved a package of bills Wednesday that would increase scrutiny of foreign donations to tax-exempt organizations, including legislation that would require those organizations to publicly report the donations.

  • May 15, 2024

    FCC Could Require ISP Reports On Internet Routing Security

    The Federal Communications Commission will vote on a plan next month to require the largest broadband providers to file confidential reports on security of the internet's main routing technology, the Border Gateway Protocol.

  • May 15, 2024

    Ex-FTX Exec Seeks Leniency, Saying He Was Kept In The Dark

    A former top FTX official has asked a Manhattan federal judge for a lenient 18-month sentence, saying he was not part of company co-founder Sam Bankman-Fried's inner circle and was as shocked as everyone else to learn that the crypto exchange was operating a fraud that siphoned billions in customer funds.

  • May 15, 2024

    Senators Release 'Road Map' For Crafting Federal AI Policy

    A bipartisan group of senators on Wednesday laid out a "road map" for artificial intelligence policy that calls for increased AI innovation funding, testing of potential harms posed by AI and consideration of the technology's workforce implications.

  • May 15, 2024

    Kirkland Guiding Billionaire McCourt On Bid To Buy TikTok

    Billionaire Frank McCourt, advised by Kirkland & Ellis, says he's building a consortium to purchase TikTok and redesign the platform to eliminate the collection of users' information, putting "people in control of their [own] digital identities and data." 

  • May 15, 2024

    Mortgage Co.'s $2.4M Data Breach Settlement Gets Initial OK

    A Connecticut federal judge gave her initial sign-off to a $2.4 million settlement between mortgage firm Planet Home Lending LLC and a consolidated class of customers whose personal data, including their Social Security numbers, was exposed in a cyberattack.

  • May 14, 2024

    Gunster Data Breach Affected 9K Clients' Data, Suit Says

    A former client of Gunster Yoakley & Stewart PA has filed a proposed class action in Florida federal court, alleging the law firm's weak cybersecurity systems allowed outsiders to access clients' personal and sensitive health information and that the firm waited over a year to inform those affected.

  • May 14, 2024

    Davis Wright-Led TikTok Creators Challenge Potential Ban

    Following TikTok Inc.'s lead, a group of creators on Tuesday lodged their own challenge to a new federal law that would exclude the popular app from the U.S. market unless it cuts ties with its Chinese parent company, telling the D.C. Circuit that the measure undermines the First Amendment.

  • May 14, 2024

    Telecoms Settle FCC Probe Into Undersea Cables For $2M

    Two telecoms will pay $1 million each to resolve a Federal Communications Commission probe into an undersea cable system that connected the U.S. with Colombia and Costa Rica without FCC approval.

  • May 14, 2024

    Chamber Cautions FCC Against Making Anti-Arbitration Rules

    Business leaders told the Federal Communications Commission that it cannot bar wireless providers from requiring arbitration clauses with customers to resolve disputes arising from cellphone SIM card and port-out fraud.

  • May 14, 2024

    NIST Finalizes Revised Security Guidelines For Sensitive Info

    The National Institute of Standards and Technology on Tuesday released a final version of revised guidelines for contractors and other entities who handle sensitive unclassified federal information, intended to clarify and streamline those requirements.

  • May 14, 2024

    Casino App User Can't Hide Arbitration Details, Chancery Says

    A mobile app slot-machine player who lost an arbitration dispute with the game's operator may not keep the details of the arbitration award confidential in Delaware court filings, a Chancery Court vice chancellor said Tuesday, denying a request for ongoing confidential treatment.

  • May 13, 2024

    11th Circ. Says Class Attys Self-Dealt In $35M TCPA Settlement

    The Eleventh Circuit on Monday dismissed a proposed $35 million settlement of a class action alleging GoDaddy.com violated the Telephone Consumer Protection Act by sending unwanted marketing texts, saying the deal may have come by through nefarious means.

  • May 13, 2024

    Vt. On Brink Of Enacting Privacy Bill With Lawsuit Mechanism

    The Vermont legislature has sent to the governor's desk a comprehensive data privacy bill that would not only require companies to scale back their data collection efforts and ramp up safeguards for children, but also give consumers the rare opportunity to sue large businesses that violate the law in certain circumstances. 

  • May 13, 2024

    Student Loan Servicer Faces Suit Over Tax Form Data Breach

    An education-focused subsidiary of payment processor Global Payments Inc. faces a proposed class action accusing it of negligence after it disclosed that part of its website allowed bad actors unfettered access to certain student tax documents for months at a time.

  • May 13, 2024

    SEC, FinCEN Propose Money Manager Customer ID Rule

    The U.S. Securities and Exchange Commission and the Treasury Department's Financial Crimes Enforcement Network on Monday proposed a rule that would require money managers such as hedge funds and private equity firms to document and maintain customer identification programs.

  • May 13, 2024

    FTC Can't Modify $5B Meta Privacy Deal, DC Circ. Told

    Meta Platforms Inc. told the D.C. Circuit on Monday that the Federal Trade Commission lacks the ability to unilaterally modify a $5 billion privacy settlement, contending that the courts are the ones responsible for enforcing the agreement.

  • May 13, 2024

    Wash. Hospital Scores Exit In Facebook Privacy Suit, For Now

    A Washington federal judge has tossed a proposed class action accusing a Seattle-area hospital of sharing patients' confidential health information by using Facebook browser tracking tools, ruling on Monday the plaintiff has failed to show that her own private information was input into the website and shared with a third party.

Expert Analysis

  • Copyright Lessons Following Ruling In Artist AI Suit

    Author Photo

    The recent California district court ruling in Andersen v. Stability AI — that artists needed to specify how the training of artificial intelligence tools violated their copyrights — shows that lawyers on either side of generative AI matters must carefully navigate copyright issues including temporary copying and data sourcing, says Carlos Araya at Magnolia Abogados.

  • The Legal Industry Needs A Cybersecurity Paradigm Shift

    Author Photo

    As law firms face ever-increasing risks of cyberattacks and ransomware incidents, the legal industry must implement robust cybersecurity measures and privacy-centric practices to preserve attorney-client privilege, safeguard client trust and uphold the profession’s integrity, says Ryan Paterson at Unplugged.

  • 5 Reasons Associates Shouldn't Take A Job Just For Money

    Author Photo

    As a number of BigLaw firms increase salary scales for early-career attorneys, law students and lateral associates considering new job offers should weigh several key factors that may matter more than financial compensation, say Albert Tawil at Lateral Hub and Ruvin Levavi at Power Forward.

  • SEC Registrants Likely Won't Get Cyber Disclosure Delays

    Author Photo

    The U.S. Securities and Exchange Commission's sweeping cybersecurity disclosure final rules, its SolarWinds enforcement action and recent U.S. Department of Justice guidance show the pressure is on registrants to disclose incidents timely and accurately, but the circumstances in which an extension will be granted are extremely rare, say attorneys at Pillsbury.

  • Following Banking Regulators' Breadcrumbs To 2024 Priorities

    Author Photo

    Through blog posts, speeches, and formal guidance and regulations, prudential and other federal and state financial regulators laid out a road map last year pointing to compliance priorities that should be reflected in financial institutions' planning this year, say Laurel Loomis Rimon and Gina Shabana at Jenner & Block.

  • Directors And Officers Face Unique AI-Related Risks

    Author Photo

    As privacy, intellectual property and discrimination lawsuits focusing on artificial intelligence increase, corporate directors and officers must stay aware of associated risks, including those related to compliance, litigation and cybersecurity, says Jonathan Meer at Wilson Elser.

  • Series

    Playing Competitive Tennis Makes Me A Better Lawyer

    Author Photo

    My experience playing competitive tennis has highlighted why prioritizing exercise and stress relief, maintaining perspective under pressure, and supporting colleagues in pursuit of a common goal are all key aspects of championing a successful legal career, says Madhumita Datta at Lowenstein Sandler.

  • New Strain Of Web Tracking Suits Pose Risks For Retailers

    Author Photo

    Amid an ongoing surge of California state and federal lawsuits that are using novel theories to allege companies used certain recording technologies to illegally track website users, retailers should take steps to develop a potential argument that customers consented to any alleged uses of these devices, say attorneys at Benesch.

  • Series

    The Pop Culture Docket: Judge Djerassi On Super Bowl 52

    Author Photo

    Philadelphia Court of Common Pleas Judge Ramy Djerassi discusses how Super Bowl 52, in which the Philadelphia Eagles prevailed over the New England Patriots, provides an apt metaphor for alternative dispute resolution processes in commercial business cases.

  • Unraveling The Bundled Benefits Of Retail Memberships

    Author Photo

    The recent prevalence of paid retail memberships and the associated findings of a consumer survey suggest that assessing consumer preferences and welfare may be important when considering resolution mechanisms in antitrust contexts, say Rosa M. Abrantes-Metz at Berkeley Research Group, Mame Maloney at The Brattle Group and Jeff Brazell at the University of Utah.

  • NC TikTok Order Holds Lessons On Handling State AG Probes

    Author Photo

    Earlier this month, a North Carolina appeals court compelled TikTok to give the state attorney general information relating to 98,000 recorded Zoom meetings, reminding companies that successful civil litigation strategies may have the opposite effect in the state or regulatory investigation context, say attorneys at Troutman Pepper.

  • Takeaways From SEC's Aggressive Cybersecurity Moves

    Author Photo

    The U.S. Securities and Exchange Commission's intensifying policy on cybersecurity and securities violations in the wake of a data breach — like its enforcement action against SolarWinds and its security officer — has emboldened shareholders to file related suits, creating a heightened threat to public companies, say attorneys at Baker McKenzie.

  • Considerations For Lawyer Witnesses After FTX Trial

    Author Photo

    Sam Bankman-Fried's recent trial testimony about his lawyers' involvement in FTX's business highlights the need for attorney-witnesses to understand privilege issues in order to avoid costly discovery disputes and, potentially, uncover critical evidence an adversary might seek to conceal, says Lawrence Bluestone at Genova Burns.

  • How Merck Settlement Can Inform Cyberinsurance Approach

    Author Photo

    This month's settlement in Merck v. ACE spotlights how cyber exclusions have evolved since the significant decision in the case — allowing for insurance coverage despite the presence of a policy war exclusion — and where else corporate risk managers may look for coverage in case of a cyberattack, say attorneys at McGuireWoods.

  • What Businesses Should Know About NJ Privacy Bill

    Author Photo

    New Jersey’s recently passed comprehensive privacy bill S.B. 332 presents businesses with a nuanced framework and compliance obligations, including opt-in consent requirements for sensitive data, with recommendations for businesses to organize data, review consent requirements and more, says Trisha Sircar at Katten.

Want to publish in Law360?


Submit an idea

Have a news tip?


Contact us here
Can't find the article you're looking for? Click here to search the Cybersecurity & Privacy archive.
Hello! I'm Law360's automated support bot.

How can I help you today?

For example, you can type:
  • I forgot my password
  • I took a free trial but didn't get a verification email
  • How do I sign up for a newsletter?
Ask a question!