News & Analysis as of

Data Breach Today's Popular Updates State Attorneys General

Troutman Pepper Locke

State AGs and the FTC Warn of 23andMe Risks Following Bankruptcy Announcement

Troutman Pepper Locke on

Several state attorneys general (AGs) and the Federal Trade Commission (FTC) have begun scrutinizing ancestry tracking company 23andMe following its recent announcement that it has filed for Chapter 11 bankruptcy. As part of...more

Morrison & Foerster LLP

2024 State AGs Year in Review

In 2024, state attorneys general (State AGs) focused on a broad variety of areas and industries including, in particular, emerging industries such as artificial intelligence (AI) and privacy and social media protections....more

Cozen O'Connor

Enzo Biochem Reaches $4.5M Settlement with CT, NJ, and NY Over 2023 Data Breach

Cozen O'Connor on

The New York, Connecticut, and New Jersey AGs entered into settlements with biotechnology company Enzo Biochem, Inc. and its subsidiary Enzo Clinical Labs, Inc. (collectively, “Enzo”), to resolve allegations stemming from a...more

Paul Hastings LLP

Paul Hastings Hosts Panel on Perspectives from Cybersecurity Regulators

Paul Hastings LLP on

On May 8, 2024, Paul Hastings Hosted the Cybersecurity Law Workshop at this spring’s Privacy + Security Forum with a panel on perspectives from cybersecurity regulators. The panel was moderated by Paul Hastings Global Chair...more

Foley Hoag LLP - Security, Privacy and the...

In Wake of Healthcare System Cyberattack, 22 State Attorneys General Call for Further Action of Data Privacy

On April 25, 2024, the attorneys general of 22 states issued a letter encouraging UnitedHealth Group and its subsidiary, Change Healthcare, to take additional steps to respond to a massively disruptive cyberattack. The broad,...more

Cozen O'Connor

Bipartisan AGs Tell Health Care Company to Step Up Response to Cyber Attack

Cozen O'Connor on

A multistate coalition of 17 Democratic and 5 Republican AGs wrote a letter to UnitedHealth Group Inc. urging the company to improve its response following a cyberattack on its subsidiary Change Healthcare, which provides a...more

Troutman Pepper Locke

More Privacy, Please – November/December 2023

Troutman Pepper Locke on

In recent regulatory and enforcement developments, the California Privacy Protection Agency (CPPA) proposed a regulatory framework for automated decision-making technology (ADMT) and revisions to the California Consumer...more

Faegre Drinker Biddle & Reath LLP

State AG Updates: Data Privacy & Security; Consumer Protection; Wage & Employment; Unfair & Deceptive Practices; Health Care Fraud...

At a Glance - In this final edition for 2023, the number and breadth of data privacy and security enforcement actions demonstrate that state AGs are flexing their muscles and playing a significant regulatory role in this...more

Troutman Pepper Locke

More Privacy, Please - September/October 2023

Troutman Pepper Locke on

Editor’s Note: The FTC continues to crack down on privacy and cybersecurity, including issuing a new warning to tax preparation companies and entering into a consent decree with 1Health.io. VPPA and BIPA litigation continues...more

Faegre Drinker Biddle & Reath LLP

State AG Updates: Arizona, Texas, California, North Carolina, Washington, New York and an AG Coalition

In this edition of Faegre Drinker’s State Attorneys General Update, we discuss: • The Arizona AG’s $85 million settlement with Google relating to location-tracking data...more

Davis Wright Tremaine LLP

NY Attorney General Settlement Highlights Challenges of Username and Password Breaches

October was a busy month in New York for cybersecurity enforcement. In addition to a $4.5 million settlement between the New York Department of Financial Services and EyeMed Vision Care (discussed in a forthcoming blog post),...more

Rivkin Radler LLP

EyeMed Fined $600K for 2020 Data Breach

Rivkin Radler LLP on

On January 24, New York Attorney General Letitia James announced a settlement with EyeMed Vision Care LLC based on shortcomings in the company’s data security procedures. The problems were discovered during the state’s...more

Rivkin Radler LLP

NJ Infertility Clinic Reaches $495,000 Data Breach Settlement

Rivkin Radler LLP on

The New Jersey Attorney General’s Office announced on October 12 that Diamond Institute for Infertility and Menopause, LLC, based in Millburn, NJ, will pay a $495,000 penalty for allegedly violating HIPAA and state law by...more

Jackson Lewis P.C.

Connecticut On Its Way To An Enhanced Data Breach Notification Law

Jackson Lewis P.C. on

State legislatures across the nation are prioritizing privacy and security matters, and Connecticut is no exception. This week, Connecticut Attorney General William Tong announced the passage of An Act Concerning Data Privacy...more

Cozen O'Connor

Water Filtration Retailer Settles Allegations Stemming From 2019 Data Breach

Cozen O'Connor on

New York AG Letitia James reached a settlement with online water filtration retailer Filters Fast LLC to resolve allegations that it failed to protect customers’ payment card information in a 2019 data breach in violation of...more

The Volkov Law Group

Sabre Travel Services Settles Data Breach Charges with State Attorneys General for $2.4 Million

The Volkov Law Group on

Sabre Corporation, the travel technology company, agreed to pay $2.4 million as a settlement with twenty-seven (27) State Attorneys General for a 2017 data breach involving hotel booking services....more

Mintz - Privacy & Cybersecurity Viewpoints

Data Breaches Can Cost $$ – Plus Ongoing Obligations (ask Home Depot): Lessons and Takeaways

The Home Depot, Inc. (“Home Depot”) recently entered into a multi-state Assurance of Voluntary Compliance with Attorneys General of 46 states and the District of Columbia (the “Settlement”) stemming from a massive 2014 data...more

Skadden, Arps, Slate, Meagher & Flom LLP

Privacy & Cybersecurity Update - October 2020

In this month's edition of our Privacy & Cybersecurity Update, we examine the U.S. Treasury's advisories regarding the role of financial intermediaries in ransomware payments, a ruling by the Israeli data protection authority...more

Sheppard Mullin Richter & Hampton LLP

What the First Enforcement Action under NYDFS Cybersecurity Reg Means to Companies

Late this summer the New York Department of Financial Services (NYDFS) announced its first enforcement action since the cybersecurity rules went into effect in March 2017. The action was brought against First American Title...more

Troutman Pepper Locke

New York AG Announces Settlement with Dunkin’ Regarding Data Breach Lawsuit

Troutman Pepper Locke on

On Tuesday, September 15, New York Attorney General Letitia James announced a settlement with Dunkin’ Brands Inc. regarding a lawsuit in New York state court titled The People of The State of New York et al. v. Dunkin’ Brands...more

Womble Bond Dickinson

Finding a Test for Reasonable Security Practices: Embrace Complexity and Specifics

Womble Bond Dickinson on

Most people have a warped and deeply unrealistic understanding of data security. There is no such thing as absolute security. For a thing to have value, you must be able to access the value – in effect, to use it. In order...more

Akin Gump Strauss Hauer & Feld LLP

New Privacy Division Created by Massachusetts Attorney General

Massachusetts Attorney General (AG) Maura Healey announced the creation of a Data Privacy and Security Division, focusing on protecting consumers from privacy and security breaches and threats. AG Healey named Sara Cable as...more

Akin Gump Strauss Hauer & Feld LLP

Vermont Attorney General Provides Guidance on Security Breach Notice Act

On March 5, 2020, Gov. Phil Scott (VT-R) signed into law amendments to the Security Breach Notice Act (the “Act”). The amendments, which originated in the State Senate as part of an initiative addressing a number of data...more

Polsinelli

States’ Data Breach Notification Statute Amendments in Quarters 3-4 of 2019

Polsinelli on

From late June 2019 through mid-October 2019, a handful of states amended their data breach notification statutes. Specifically, six states amended their states to (1) require notice to the State Attorney General, (2) broaden...more

Eversheds Sutherland (US) LLP

FTC effectively shuts down Utah company’s operations pending compliance with mandated data security plan

With companies increasingly worried about what the California Attorney General, and private litigants, will do once the California Consumer Privacy Act comes into effect, they should not lose sight of what the Federal Trade...more

28 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide