Cybersecurity & Privacy

  • September 27, 2024

    Constitution Permits Blocked Anti-Laundering Law, Panel Told

    The U.S. government urged the Eleventh Circuit on Friday to reinstate the Corporate Transparency Act passed in 2021, arguing that the anti-money laundering law is within Congress' powers to regulate economic activity and necessary to have businesses report beneficial ownership to combat crimes like tax evasion and terrorist financing.

  • September 27, 2024

    UK Man Indicted On $4M 'Hack-To-Trade' Scheme

    New Jersey federal prosecutors announced Friday that a U.K. man has been arrested and is awaiting extradition on charges of hacking into the email accounts of several corporate executives in order to steal nonpublic information that he used to turn a profit of almost $4 million.

  • September 27, 2024

    FCC Chief Says Chevron's Fall Won't Slow Needed Regs

    Upcoming Federal Communications Commission rules are likely to survive judicial scrutiny even after the Chevron doctrine's demise because the policies are grounded on not only legal analysis but in-depth economic and engineering studies, the agency's chief said Friday.

  • September 27, 2024

    L'Oréal Can't Turn Off Try-On Tool BIPA Suit

    An Illinois federal judge on Friday refused to dismiss a proposed class action accusing L'Oréal USA of violating Illinois' biometric privacy law with its virtual try-on tool, saying the beauty giant failed to give the plaintiff constructive notice of its arbitration terms and that she'd done enough at this stage to plausibly allege it collected her biometric identifiers.

  • September 27, 2024

    Ga. Hospital Patients Ask Judge to Revive Facebook Data Suit

    A proposed class of patients claiming Piedmont Healthcare Inc. unlawfully shared their confidential health data with Facebook urged a federal judge to rethink his late-August decision tossing their suit, saying the judge failed to consider their claims the health system criminally violated HIPAA's privacy rule. 

  • September 27, 2024

    Insurer Says No Coverage For Conn. Firm's Data Breach

    A Connecticut personal injury firm's insurance company says it won't foot the bill for claims stemming from a hacker breaking into the firm's email system and stealing over $750,000 from a client, saying the firm's professional liability policy excluded "cyber security events."

  • September 27, 2024

    Gunster Says Absence Of Damages Sinks Data Breach Case

    Gunster Yoakley & Stewart PA wants a proposed class action lawsuit against it tossed in Florida federal court, arguing plaintiffs who had their personal information compromised when the law firm fell victim to a cyberattack can't show any harm was done.

  • September 27, 2024

    Feds Charge 3 Iranians In Trump Campaign Hack

    The U.S. Department of Justice on Friday unsealed an indictment accusing three Iranian citizens of hacking Donald Trump's presidential campaign as part of a "wide-ranging" cyber scheme that sought to sow distrust in U.S. elections.

  • September 26, 2024

    Attys Worry OpenAI IP Row Will Drag On Amid AI Policy Push

    A BigLaw attorney and consumer advocates found common ground during the seventh annual Berkeley Law AI Institute on Thursday expressing concerns that courts won't timely adjudicate copyright claims against OpenAI and others, while an FTC attorney noted the commission is already enforcing the Federal Trade Act against companies for over-hyping their AI.

  • September 26, 2024

    Legal Pros Grapple With Best Use Of AI As Clients Divide

    BigLaw attorneys and in-house counsel speaking at the annual Berkeley Law AI Institute on Thursday talked about how they've recently grappled with using the tools known as artificial intelligence in representing clients, saying some clients have either demanded or prohibited attorneys from using the tools, and others have taken seemingly contradictory positions.

  • September 26, 2024

    HHS Flags Ransomware Rise In New Deal With Wash. Provider

    A Washington state-based healthcare provider has agreed to pay $250,000 and boost its data security to resolve the U.S. Department of Health and Human Service's enforcement action over a 2017 ransomware attack, amid what the agency said has been a steep rise in reports of such cyberattacks over the past six years. 

  • September 26, 2024

    Senate Bill Calls For Stronger Healthcare Cyber Standards

    Democratic lawmakers introduced legislation Thursday aiming to better protect patient health information and avoid cyberattacks by strengthening cybersecurity standards, months after a highly publicized data breach earlier this year of a UnitedHealth unit that lacked basic security measures like two-factor authentication.

  • September 26, 2024

    Colo. AG Says He Won't Call 'Ticky Tack' Privacy Fouls

    Colorado Attorney General Phil Weiser told an audience of attorneys and privacy professionals Thursday that part of his privacy enforcement strategy is not to needle companies that are trying to comply with the law for minor violations.

  • September 26, 2024

    Snowflake, AT&T Data Breach Suit Must Be Joined, JPML Told

    An attorney for plaintiffs suing cloud provider Snowflake Inc., which counts AT&T Inc. among its clients and suffered a series of high-profile hacks, urged the Judicial Panel on Multidistrict Litigation Thursday to consolidate all related litigation, saying the disputes revolve around common issues.

  • September 26, 2024

    En Banc 9th Circ. Doubts Dismissal Of Shopify Privacy Suit

    Ninth Circuit judges sitting en banc Thursday appeared dubious of an earlier panel's conclusion that a California federal court lacked personal jurisdiction over Golden State consumers' privacy claims against Shopify Inc., questioning how internet companies could ever face tort claims if this were the law.

  • September 26, 2024

    Investor Ordered To Deposit $336K In Pot Co. Contract Suit

    A Nevada magistrate judge has ordered Capital Pure Assets Ltd. to deposit $336,000 with the court as part of a dispute with a cannabis payment company's subsidiary over a failed business venture, finding the subsidiary is likely to succeed on its claims that CPA tricked it into putting that amount into an escrow fund.

  • September 26, 2024

    Arthur J. Gallagher To Pay $21M To End Data Breach Suits

    Insurance broker Arthur J. Gallagher & Co. has agreed to pay $21 million to resolve several lawsuits consolidated in Illinois alleging that it failed to protect more than 3 million customers from a data breach that compromised their personally identifiable information, with an Illinois federal judge giving her initial blessing to the deal Thursday.

  • September 26, 2024

    Apple Protests Atty Fee Bid In $35M Deal With Scam Victims

    Apple Inc. urged a California federal court to limit the fee awarded to plaintiffs' attorneys from a $35 million settlement over allegations it did not stop scammers from tricking victims into using iTunes gift cards for payments, saying the 33% fee sought is too high for the "fair but unexceptional recovery."

  • September 25, 2024

    In-House Counsel To Play Central Role At AI Cos., VCs Say

    Venture capital firms expect in-house counsel at artificial intelligence companies to play a bigger role in their businesses due to regulatory uncertainties around AI, while a professor who helped pioneer the technology warned that transparency of commercial AI businesses should be "top of mind," attorneys heard at the seventh annual Berkeley Law AI Institute Wednesday.

  • September 25, 2024

    DoorDash, Uber Eats, Grubhub Win NYC Diner Data Law Row

    A New York federal judge on Tuesday granted DoorDash Inc. and other food delivery app companies a win in their lawsuit challenging a New York City law requiring delivery services to provide restaurants with certain customer info, ruling that the law is unconstitutional.

  • September 25, 2024

    Bumble Investor Says Dating App Overhyped Premium Model

    A Bumble Inc. investor has launched a proposed securities class action in Texas federal court accusing the dating app's parent company of misleading investors about its financial outlook and success of a "premium plus" subscription tier, and causing a dramatic decline in Bumble's common stock price.

  • September 25, 2024

    FTC Targets 'Robot Lawyer,' Others In AI Enforcement Sweep

    The Federal Trade Commission on Wednesday revealed a flurry of recent enforcement actions aimed at cracking down on the use of artificial intelligence to "supercharge" harmful and deceptive business practices, including a case targeting "lofty" claims made about a service that promised to provide "the world's first robot lawyer."

  • September 25, 2024

    City's Public Crash Reports Defy Privacy Law, NC Judge Says

    The city of Charlotte violated federal privacy law by making car accident reports public such that law firms could use the disclosed data for marketing purposes, a North Carolina federal judge said in granting summary judgment and certification to a class of drivers.

  • September 25, 2024

    Meta Wants 'License' To Cover Up Past Events, Justices Told

    Meta Platforms Inc. shareholders say the U.S. Supreme Court should not be swayed by the social media company's attempt to shake off a proposed class action tied to the Cambridge Analytica data scandal, warning a high court ruling in favor of Facebook's parent company could give publicly traded companies "license to intentionally mislead investors."

  • September 25, 2024

    Marriott Gets $8M Default Win In TM Robocall Scam Case

    A Virginia federal judge has granted Marriott International Inc. the maximum damages that the law allows for the company's trademark infringement claims against a pair of Mexican firms it accused of using its "Marriott Marks" for a robocall scam, ending the claims with an $8 million default judgment.

Expert Analysis

  • What To Know About Insurance Coverage For Antitrust Risks

    Author Photo

    With all the regulatory activity surrounding antitrust and unfair competition claims, as highlighted by last month's D.C. federal court decision that Google is a monopolist, businesses must not only ensure compliance, but also understand their potential insurance coverage when such claims arise, says Micah Skidmore at Haynes Boone.

  • What The SEC Liquidity Risk Management Amendments Entail

    Author Photo

    Fund managers should be cognizant of the U.S. Security and Exchange Commission's recent changes to certain reporting requirements and guidance related to open-end fund liquidity risk management programs, and update their filing systems if need be, says Rachael Schwartz at Sullivan & Worcester.

  • It's No Longer Enough For Firms To Be Trusted Advisers

    Author Photo

    Amid fierce competition for business, the transactional “trusted adviser” paradigm from which most firms operate is no longer sufficient — they should instead aim to become trusted partners with their most valuable clients, says Stuart Maister at Strategic Narrative.

  • Service Agreement Lessons From July's Global Tech Outage

    Author Photo

    The worldwide outages recently caused by Crowdstrike Holdings' misconfigured software update highlight the need to evaluate potential IT vendors, negotiate certain service agreement terms, and review existing agreements and diligence forms to help prevent future disruptions and mitigate the fallout should one occur, say attorneys at WilmerHale.

  • Calif. Bill, NTIA Report Illustrate Open-Model AI Safety Debate

    Author Photo

    The National Telecommunications and Information Administration’s balanced recommendations for preventing misuse of open artificial intelligence models, contrasted with a more aggressive California bill, demonstrate an evolving regulatory debate about balancing democratic access to this powerful new technology against potential risks to the public, say Stuart Meyer and Fredrick Tsang at Fenwick.

  • Complying With FTC's Final Rule On Sham Online Reviews

    Author Photo

    The Federal Trade Commission's final rule on deceptive acts and practices in online reviews and testimonials is effective Oct. 21, and some practice tips can help businesses avert noncompliance risks, say Airina Rodrigues and Jonathan Sandler at Brownstein Hyatt.

  • Opinion

    A Fuzzy Label With Bite: FTC Must Define Surveillance Pricing

    Author Photo

    The Federal Trade Commission recently issued orders to eight companies — including Mastercard, McKinsey and Chase — seeking information on "surveillance pricing," but the order doesn't explain the term or make the distinction between legal and illegal practices, leaving any company that uses personalized pricing in the dark, says Chris Wlach at Huge.

  • New Employer Liability Risks In Old Ill. Genetic Privacy Law

    Author Photo

    Illinois’ Genetic Information Privacy Act has been litigated very sparsely, but two recent federal court decisions — Taylor v. Union Pacific and McKnight v. United Airlines — holding that preemployment family medical history questions violated the 1998 law may encourage more lawsuits, say Peter Berk and Madison Shepley at Clark Hill.

  • How States Are Approaching AI Workplace Discrimination

    Author Photo

    As legislators across the U.S. have begun addressing algorithmic discrimination in the workplace, attorneys at Reed Smith provide an overview of the status, applicability and provisions of 13 state and local bills.

  • Navigating A Potpourri Of Possible Transparency Act Pitfalls

    Author Photo

    Despite the Financial Crimes Enforcement Network's continued release of guidance for complying with the Corporate Transparency Act, its interpretation remains in flux, making it important for companies to understand potentially problematic areas of ambiguity in the practical application of the law, say attorneys at Sidley.

  • The Risks Of Employee Political Discourse On Social Media

    Author Photo

    As election season enters its final stretch and employees increasingly engage in political speech on social media, employers should beware the liability risks and consider policies that negotiate the line between employees' rights and the limits on those rights, say Bradford Kelley and James McGehee at Littler.

  • A Preview Of AI Priorities Under The Next President

    Author Photo

    For the first time in a presidential election, both of the leading candidates and their parties have been vocal about artificial intelligence policy, offering clues on the future of regulation as AI continues to advance and congressional action continues to stall, say attorneys at Mintz.

  • How Methods Are Evolving In Textualist Interpretations

    Author Photo

    Textualists at the U.S. Supreme Court are increasingly considering new methods such as corpus linguistics and surveys to evaluate what a statute's text communicates to an ordinary reader, while lower courts even mull large language models like ChatGPT as supplements, says Kevin Tobia at Georgetown Law.

  • Finding Coverage For Online Retail Privacy Class Actions

    Author Photo

    Following recent court rulings interpreting state invasion of privacy and electronic surveillance statutes triggering a surge in the filing of privacy class actions against online retailers, companies should examine their various insurance policies, including E&O and D&O, for defense coverage of these claims, says Alison Gaske at Gilbert LLP.

  • The State Law Landscape After Justices' Social Media Ruling

    Author Photo

    Following the U.S. Supreme Court’s recent NetChoice ruling on social media platforms’ First Amendment rights, it’s still unclear if state content moderation laws are constitutional, leaving online operators to face a patchwork of regulation, and the potential for the issue to return to the high court, say attorneys at Crowell & Moring.

Want to publish in Law360?


Submit an idea

Have a news tip?


Contact us here
Can't find the article you're looking for? Click here to search the Cybersecurity & Privacy archive.
Hello! I'm Law360's automated support bot.

How can I help you today?

For example, you can type:
  • I forgot my password
  • I took a free trial but didn't get a verification email
  • How do I sign up for a newsletter?
Ask a question!