David Wooding reports: Defence chiefs were told to get a grip yesterday after a surge in security and data breaches. Thousands of service families have had addresses and private information compromised. Figures reveal more than a quarter of all blunders since 2010 took place in the last year — 559 in 2020-21, and 2,000 in…
Category: Commentaries and Analyses
FTC Weighs In On Data Breach Notification
Liisa M. Thomas, Kari M. Rollins, and Julia K. Kadish of Sheppard, Mullin, Richter & Hampton LLP write: The FTC recently reminded companies that principles of fairness and the likelihood of harm may in some cases prompt breach notification. This requirement might exist even if state breach notice laws have not been triggered. The FTC emphasized at the…
Password recovery from beyond the grave
Richard Speed writes: Every disaster recovery plan needs to contain the “hit by a bus” scenario. But have you ever retrieved a password from beyond the grave? One Register reader has. Welcome to On Call. Today’s tale, told by a reader Regomized as “Mark” takes us back some 15 years when he was handling the…
San Diego Family Care Settles Data Breach Class Action for $1 Million
In May of 2021, San Diego Family Care disclosed a data breach that resulted from a ransomware attack on their hosting provider, Netgain Technology. In a class action lawsuit, complainants alleged that SDFC failed to protect patients’ information adequately and that SDFC did not promptly notify patients after learning of the breach. The lawsuit has…
United States and EU Foster Cooperation Against Ransomware Attacks
Ransomware has become a global problem that requires cooperation on a worldwide level. Judicial experts and practitioners from the United States and the European Union participated in a two-day workshop in The Hague organized by the U.S. Department of Justice and Eurojust. The event aimed to share best practices and enhance collaboration in confronting ransomware…
‘Too Much’ Data Breach Disclosure May Risk Additional Cyber Vulnerabilities
Isha Marathe reports: Even before Russia’s invasion of Ukraine, cyberattacks had been on the rise, leading to provisions from regulatory bodies such as the mandatory disclosures of incidents to protect investors and alert other businesses alike. Now, some attorneys and cybersecurity experts are asking if forced reporting of breaches and attacks at the level of detail that the U.S….