News & Analysis as of

Penalties Ransomware

K&L Gates LLP

Pay the Price, Now ‘Fess Up’: Reporting Obligations for Ransomware Payments Are Live

K&L Gates LLP on

As of 29 May 2025, the requirement on businesses to report ransomware payments they make has come into effect. What is the Requirement? If a reporting business entity becomes impacted by a cyber security incident and ends up...more

Hogan Lovells

Australia mandates first-of-its-kind reporting of ransomware payments

Hogan Lovells on

Australia has implemented a first-of-its kind requirement for eligible businesses to report ransomware payments. From 30 May 2025, eligible businesses that make a payment in response to a cyber security incident, or become...more

Alston & Bird

UK Data Protection Regulator Fines UK Law Firm ~$80,000 Following Ransomware Incident

Alston & Bird on

On April 14, 2025, the UK data protection regulator (the Information Commissioner’s Office (“ICO”)) fined DPP Law (“DPP”) £60,000 (approximately $80,000) following a ransomware incident. In its penalty notice, the ICO found...more

Lippes Mathias LLP

Hospital Administrators – Is Your Hospital Cyber-Secure?

Lippes Mathias LLP on

On October 2, 2024, New York adopted new regulations requiring general hospitals to implement heightened cybersecurity safeguards. General hospitals, as defined in Article 28 of the NY Public Health Law, generally must begin...more

BakerHostetler

It’s Officially Enforcement Season: OCR Announces First Penalty Under New Risk Analysis Initiative

BakerHostetler on

On October 31, 2024, the U.S. Department of Health and Human Services Office for Civil Rights (OCR) embraced the end of Spooky Season by announcing two more ransomware-related enforcement actions. ...more

Pillsbury Winthrop Shaw Pittman LLP

Bipartisan Cyber Incident Reporting for Critical Infrastructure Act of 2022 Signed into Law

Under the new law, critical infrastructure owners and operators will be required to report significant cyber incidents to the Department of Homeland Security’s (DHS) Cybersecurity and Infrastructure Security Agency (CISA)...more

Nelson Mullins Riley & Scarborough LLP

[Event] 2021 South Florida Health Forum - November 2nd, Fort Lauderdale, FL

Please join Nelson Mullins Riley & Scarborough for the 2021 South Florida Health Forum. We look forward to reconnecting with you after a year away from our annual event....more

Sheppard Mullin Richter & Hampton LLP

Do You Have a Risk-Based Sanctions Compliance Program?: In the Event of a Ransomware Attack, OFAC Wants to Know

In the wake of increased ransomware attacks over the course of the last several months, the US Department of Treasury’s Office of Foreign Assets Control (OFAC) has updated a guidance it released last year on potential...more

K2 Integrity

OFAC Releases Updated Ransomware Advisory and Announces First Designation of Cryptocurrency Exchange

K2 Integrity on

On 21 September 2021, the U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC) issued an updated advisory that highlights the sanctions risks associated with making ransomware payments. OFAC reiterated...more

Morrison & Foerster LLP

OFAC 2020 Year In Review

In too many ways to count, 2020 was an extraordinary year. As we move into 2021 with optimism for an end to the pandemic and better days ahead, we understand that the activity last year of the U.S. Department of the...more

Saul Ewing LLP

Paying or Facilitating Payment of Ransomware Demands May Result in Criminal and Civil Penalties From OFAC

Saul Ewing LLP on

Companies that make or facilitate ransomware payments were given a strong reminder of their due-diligence and compliance obligations by the U.S. Department of the Treasury’s Office of Foreign Assets Control (“OFAC”). ...more

11 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide