German security researchers at risk of prosecution for “hacking” because of a plain text hardcoded password?

Over on Infosec.Exchange, Will Palant posted: Yellow Flag @WPalant@infosec.exchange German law is making security research a risky business. Current news: A court found a developer guilty of “hacking.” His crime: he was tasked with looking into a softw… Continue reading German security researchers at risk of prosecution for “hacking” because of a plain text hardcoded password?

NYS announces $8 Million Penalty Against Genesis Global Trading, Inc. After DFS Investigation Finds Significant Failings in Anti-Money Laundering and Cybersecurity Programs

January 12, 2024 New York State Department of Financial Services (DFS) Superintendent Adrienne A. Harris today announced that Genesis Global Trading, Inc. (“Genesis Global Trading”) will pay an $8 million penalty to New York State for compliance failur… Continue reading NYS announces $8 Million Penalty Against Genesis Global Trading, Inc. After DFS Investigation Finds Significant Failings in Anti-Money Laundering and Cybersecurity Programs

After Barrage of Hacks, Hospitals Will Face New Federal Cybersecurity Rules Tied to Funding

Eric Geller reports: The Biden administration plans to unveil new cybersecurity requirements for hospitals in the coming weeks as government officials scramble to stem a disturbing tide of hacks that have crippled health-care providers, delayed procedu… Continue reading After Barrage of Hacks, Hospitals Will Face New Federal Cybersecurity Rules Tied to Funding

Attorney General James Reaches Agreement with Refuah Health Center to Invest $1.2 Million to Protect Patient Data and Pay $450,000 in Penalties to State

January 5, 2024 NEW YORK – New York Attorney General Letitia James today announced an agreement with a Hudson Valley-area health care provider, Refuah Health Center, Inc. (Refuah), for failing to safeguard the personal and private health information of… Continue reading Attorney General James Reaches Agreement with Refuah Health Center to Invest $1.2 Million to Protect Patient Data and Pay $450,000 in Penalties to State

Court of Justice of the European Union Rules That Fear May Constitute Damage Under the GDPR

Hunton Andrews Kurth writes: On December 14, 2023, the Court of Justice of the European Union (“CJEU”) issued its judgment in the case of VB v. Natsionalna agentsia za prihodite (C‑340/21), in which it clarified, among other things, the concept of non-… Continue reading Court of Justice of the European Union Rules That Fear May Constitute Damage Under the GDPR

Ted Cruz wants to stop the FCC from updating data-breach notification rules

Jon Brodkin reports: Sen. Ted Cruz (R-Texas) and other Republican senators are fighting a Federal Communications Commission plan to impose new data-breach notification requirements on telecom providers. In a letter sent to FCC Chairwoman Jessica Rosenw… Continue reading Ted Cruz wants to stop the FCC from updating data-breach notification rules