Cybersecurity & Privacy

  • November 27, 2024

    X Corp Says Gov't Trying To 'Muzzle' Doc In Bitter HIPAA Case

    X Corp has told a Texas federal judge that government prosecutors were trying to "muzzle" a doctor accused of sharing protected patient information while talking to the press about a hospital's gender-affirming care practices, saying the government was out of line.

  • November 27, 2024

    $83M Air Force Award Must Account For Merger, GAO Says

    The U.S. Government Accountability Office says the Air Force must reconsider its award of an $83 million task order, saying the veteran-owned small business protesting the award possessed the requisite certification following a merger.

  • November 27, 2024

    Zoom Offers SEC $18M To Settle 2020 Privacy Probe

    Zoom Communications disclosed in a U.S. Securities Exchange and Commission filing that it has offered $18 million to settle an agency investigation into "various security, data protection and privacy matters," including the videoconferencing platform's encryption.

  • November 27, 2024

    Amazon Judge Says Appeal Too Soon In Ongoing Privacy Suit

    A Washington federal judge has said he won't issue a final judgment to allow consumers to appeal his previous ruling tossing most of the claims in a suit alleging that palm scanners at joint Starbucks-Amazon stores violate biometric privacy law, because one of the plaintiffs has a remaining claim.

  • November 27, 2024

    Arkansas Can't Bring Suit Against Crypto Miner For Now

    An Arkansas federal judge has temporarily barred state officials from taking action against a Chinese-born U.S. citizen's crypto mining operation after he challenged the investigation against him and the laws underpinning it as discriminatory and unconstitutional.

  • November 27, 2024

    Fintech Co. Ingo, Consumers Reach Deal To End Breach Suit

    Fintech deposit underwriter Ingo Money Inc. has reached a handshake deal to settle proposed class action claims that for seven months it sat on news that hackers had gotten hold of a "gold mine" of customers' personal information.

  • November 27, 2024

    Burger King Franchisee Can Tap AIG For BIPA Suit, Eventually

    An Illinois federal judge ruled Tuesday that an AIG subsidiary has a duty to defend a Burger King franchisee in a suit brought by employees claiming its timekeeping practices violated Illinois' biometric privacy law, but only after the limits of all other insurance have been exhausted.

  • November 27, 2024

    5th Circ. Reverses Treasury's Block Of Crypto Mixer

    The Fifth Circuit has rejected the government's blacklisting of Tornado Cash for "its role in laundering virtual currency for malicious cyber actors," saying the cryptocurrency service's immutable smart contracts, or lines of privacy-enabling software code, are not "property" and are therefore unownable and cannot be blocked under the International Emergency Economic Powers Act.

  • November 27, 2024

    Data Cos. Lose Challenge To NJ Judicial Privacy Law

    A federal judge has ruled that the New Jersey judicial privacy and security measure known as Daniel's Law is constitutional, handing a defeat to a large group of data brokers accused of illegally posting judges' names and addresses online.

  • November 27, 2024

    Better, Faster, Stranger: What Attys Think Of Our AI Future

    Law firms are increasingly embracing the use of artificial intelligence, wary of its limitations but enchanted by its potential to transform the practice of law through smaller headcounts and cheaper litigation.

  • November 26, 2024

    Sundance Can't Ditch Suit Over Purchase Data Disclosures

    A Utah federal judge has refused to toss a proposed class action accusing specialty retailer Sundance of unlawfully sharing its customers' private information with various third parties, finding that a ban on class actions contained in the state law being relied on by the plaintiffs didn't doom the dispute. 

  • November 26, 2024

    X Partially Revives Lawsuit Against Israeli Data Scraping Firm

    X Corp. partially revived its lawsuit Tuesday against Israeli data scraping firm Bright Data after a California federal judge allowed the social media company to amend some of its claims and add new ones, finding X now plausibly alleges the defendant's "sophisticated efforts" to access the platform caused harm.

  • November 26, 2024

    Truepill's $7.5M Patent Data Theft Settlement Gets Initial OK

    A California federal judge Tuesday preliminarily backed a $7.5 million deal resolving a proposed class action alleging that online pharmacy PostMeds Inc., which does business as Truepill, failed to protect the sensitive information of millions of patients from a data breach.

  • November 26, 2024

    Smart Devices Fail To Disclose Security Lifespan, FTC Says

    As holiday shopping gets underway, the Federal Trade Commission is raising alarm about smart device update disclosures, saying an overwhelming majority of devices – from hearing aids to home security cameras and fitness devices — come without clear information on how long the manufacturer will keep them protected from security risks.

  • November 26, 2024

    T-Mobile, Sprint Slam FCC Privacy Fine At DC Circ.

    T-Mobile and Sprint are asking the D.C. Circuit to knock down $92 million in fines the FCC slapped them with for selling users' sensitive location data, saying that a recent U.S. Supreme Court decision backs their contention they deserved a jury trial.

  • November 26, 2024

    Victim Shares Blame For $1.4M Scam, Connecticut Atty Says

    A New Jersey real estate development company is at least partly to blame after it transferred more than $1.4 million to a fraudster without taking proper precautions, a Connecticut attorney said Tuesday in response to a federal lawsuit that accuses her of involvement in the scam.

  • November 26, 2024

    FTC Says AI Weapons-Screening Biz Hyped Faulty Scanners

    The Federal Trade Commission on Tuesday accused Evolv Technologies of making false and unsupported claims that its AI-powered security screening products detect weapons while ignoring harmless personal items.

  • November 26, 2024

    Bojangles' Restaurants Sued Over Weekslong Cyberattack

    A former employee of Southern-style fast-food chain Bojangles' Restaurants Inc. said the company negligently failed to protect his and his proposed class members' personal information, allowing hackers to access it earlier this year in a cyberattack that lasted for weeks.

  • November 25, 2024

    Mich. Atty's Voting Machine Criminal Trial Delayed Again

    A Michigan state judge on Monday yet again delayed the criminal trial of an attorney accused of accessing 2020 voting machines after reiterating that he would not disqualify special prosecutors from arguing the case, giving more time for others similarly charged to chime in about newly discovered evidence.

  • November 25, 2024

    Fla. IT Worker Gets 4 Years In Chinese Spying Case

    An information technology worker who pled guilty to working as a "cooperative contact" for the Chinese government was sentenced in Florida federal court Monday to four years behind bars, the U.S. Department of Justice said.

  • November 25, 2024

    Geico, Travelers To Pay NY $11.3M To Settle Data Security Row

    New York's financial services regulator and attorney general revealed Monday that they've hit Geico and Travelers with $11.3 million in penalties for the auto insurers' alleged failure to adequately secure driver's license numbers, birth dates and other personal information that was compromised as part of a hacking campaign targeting online rate quote tools.

  • November 25, 2024

    'Shameful': Dems Rip Credit Bureaus Over Scrapped Hearing

    Democratic senators on Monday lit into the Big Three credit bureaus for allegedly backing out of preelection commitments to testify last week before the Senate Banking Committee, calling the move "shortsighted and shameful."

  • November 25, 2024

    Pitt Ordered To Disclose Docs Jolie Says Will Prove Abuse

    A California judge overseeing a dispute between Brad Pitt and Angelina Jolie over a multimillion-dollar French winery ruled Monday that Pitt must disclose documents and communications that Jolie says will prove he sought to cover up his domestic violence against her and their children.

  • November 25, 2024

    Construction Co. Seeks Coverage For $1.9M Email Spoof

    A construction company told an Alaska federal court that a Travelers unit acted in bad faith by refusing to provide directors and officers coverage for an email spoofing scheme that caused the company to wire roughly $1.9 million of a partner construction company's funds to an "imposter."

  • November 25, 2024

    Spectrum, Rip And Replace Are Top FCC Priorities, Carr Says

    Congress needs to focus next year on restoring the Federal Communications Commission's authority to auction spectrum bands and figure out how to pay for adequate telecom cybersecurity, says Brendan Carr, the agency's upcoming Republican chair.

Expert Analysis

  • RealPage Suit Shows Growing Algorithm, AI Pricing Scrutiny

    Author Photo

    The U.S. Department of Justice's suit against RealPage for helping fix rental rates, filed last week, demonstrates how the use of algorithmic and artificial intelligence tools to assist with pricing decisions is drawing increasing scrutiny and action across government agencies, and specifically at the Federal Trade Commission and the DOJ, say Andre Geverola and Leah Harrell at Arnold & Porter.

  • What NFL Draft Picks Have In Common With Lateral Law Hires

    Author Photo

    Nearly half of law firm lateral hires leave within a few years — a failure rate that is strikingly similar to the performance of NFL quarterbacks drafted in the first round — in part because evaluators focus too heavily on quantifiable metrics and not enough on a prospect's character traits, says Howard Rosenberg at Baretz+Brunelle.

  • CrowdStrike Incident Highlights Third-Party Risk For Banks

    Author Photo

    The global business disruptions caused by CrowdStrike's faulty software update last month serves as a reminder that banks should assess operational and compliance risks associated with third-party service providers and create resiliency plans extending down to fourth- and fifth-level providers, says Craig Landrum at Jones Walker.

  • Foreign Threat Actors Pose Novel Risks To US Tech Cos.

    Author Photo

    A recent bulletin jointly issued by several U.S. intelligence agencies warns technology startups and the venture capital community about national security risks posed by foreign threat actors, so companies interested in raising foreign capital should watch for several red flags, say Robert Friedman and Jacob Marco at Holland & Knight.

  • Replacing The Stigma Of Menopause With Law Firm Support

    Author Photo

    A large proportion of the workforce is forced to pull the brakes on their career aspirations because of the taboo surrounding menopause and a lack of consistent support, but law firms can initiate the cultural shift needed by formulating thoughtful workplace policies, says Barbara Hamilton-Bruce at Simmons & Simmons.

  • Class Actions At The Circuit Courts: August Lessons

    Author Photo

    In this month's review of class action appeals, Mitchell Engel at Shook Hardy considers certification cases touching on classwide evidence of injury from debt collection practices, defining coupon settlements under the Class Action Fairness Act, proper approaches for evaluating attorney fee awards in class action settlements, and more.

  • Planning Law Firm Content Calendars: What, When, Where

    Author Photo

    During the slower month of August, law firms should begin working on their 2025 content calendars, planning out a content creation and distribution framework that aligns with the firm’s objectives and maintains audience engagement throughout the year, says Jessica Kaplan at Legally Penned.

  • 4 Steps To Address New Sanctions Time Bar Extension

    Author Photo

    Recent guidance from the Office of Foreign Assets Control clarifies details of the newly extended statute of limitations for civil and criminal enforcement of U.S. sanctions law, so compliance teams should implement key updates, including to lookback periods and recordkeeping policies, say attorneys at Freshfields.

  • Incident Response Lessons From The CrowdStrike Failure

    Author Photo

    CrowdStrike's incident highlights a growing problem within modern digital infrastructures — single points of failure that cause widespread disruption when things go wrong — so organizations should carefully review their digital infrastructure to identify unique areas of exposure or vulnerability, say Erik Dullea at Husch Blackwell and Kip Boyle at Cyber Risk Opportunities.

  • Series

    Playing Golf Makes Me A Better Lawyer

    Author Photo

    Golf can positively affect your personal and professional life well beyond the final putt, and it’s helped enrich my legal practice by improving my ability to build lasting relationships, study and apply the rules, face adversity with grace, and maintain my mental and physical well-being, says Adam Kelly at Venable.

  • What FCA Cases May Look Like In The Age Of Generative AI

    Author Photo

    Generative artificial intelligence raises unique considerations both in the context of potentially leading to False Claims Act cases and in the discovery and litigation phases of these lawsuits, says attorney Rachel Rose.

  • Law Firms Should Move From Reactive To Proactive Marketing

    Author Photo

    Most law firm marketing and business development teams operate in silos, leading to an ad hoc, reactive approach, but shifting to a culture of proactive planning — beginning with comprehensive campaigns — can help firms effectively execute their broader business strategy, says Paul Manuele at PR Manuele Consulting.

  • 3 Ways To Limit Risks Of Black-Box AI In Financial Services

    Author Photo

    As regulators increasingly highlight the potential for artificial intelligence to make unfair consumer credit decisions, and require financial institutions to explain how these so-called black-box algorithms arrive at conclusions, companies should consider three key questions to reduce their regulatory risks from these tools, say Jeffrey Naimon and Caroline Stapleton at Orrick.

  • Takeaways From EU's 'Pay Or Consent' Advertising Probe

    Author Photo

    Anne-Gabrielle Haie and Charles Whiddington at Steptoe examine key points from the European Commission's recent investigation into Big Tech's use of "pay or consent" advertising models, as well as the European Data Protection Board’s opinion on how such models can comply with EU competition and data protection laws.

  • Energy And AI: Key Issues And Future Challenges

    Author Photo

    Artificial intelligence promises new technical advantages for the energy industry, but it is also responsible for vast, and growing, energy consumption — so the future of AI and energy will require balancing technological advancement with regulatory oversight, environmental responsibility and infrastructure development, say attorneys at Morgan Lewis.

Want to publish in Law360?


Submit an idea

Have a news tip?


Contact us here
Can't find the article you're looking for? Click here to search the Cybersecurity & Privacy archive.
Hello! I'm Law360's automated support bot.

How can I help you today?

For example, you can type:
  • I forgot my password
  • I took a free trial but didn't get a verification email
  • How do I sign up for a newsletter?
Ask a question!