Tag: data protection
492 articles

OpenAI Bolsters ChatGPT with Lockdown Mode to Curb Data Exfiltration Risks
OpenAI is stepping up ChatGPT's security game with Lockdown Mode, a powerful setting that limits connections to the web and external services to prevent data exfiltration - a game-changer for those handling sensitive information. This advanced feature is now rolling out to eligible accounts, offering stricter protection guarantees.

UK Duo Ordered to Repay £118k for Selling Car Crash Victims' Data
Two former RAC employees have been ordered to repay £118k for selling personal data of car crash victims, a stark reminder that justice can extend far beyond prison sentences. This significant repayment demonstrates the Information Commissioner's Office's commitment to upholding data protection laws.

Bolstering AI Resilience Across Cloud and Data Environments
As AI agents and copilots increasingly access, share, and store enterprise data, organisations in Australia and New Zealand face a pressing question: can they keep their data secure and recoverable in this new landscape? The integration of agentic AI and copilots is expanding data pathways, creating new operational risks that demand attention to visibility, protection, and recovery readiness.

HIPAA Security Rule Overhaul Nears, But Will Regulators Meet May Deadline?
As the HHS Office for Civil Rights prepares to unveil a major overhaul of the 23-year-old HIPAA Security Rule, concerns are mounting about meeting the May deadline. Director Paula Stannard urges healthcare organizations to consider the steep cost of inaction, emphasizing that the benefits of proposed modifications far outweigh the burdens.

UK's ICO Unveils Five-Step Plan to Counter AI-Powered Cyber Threats
Boost your organization's defenses against AI-powered cyber threats with the UK's ICO five-step plan, and build public trust by putting robust security measures in place to protect personal data. By investing in cyber resilience, you can safeguard the data you hold and foster confidence in your organization's ability to keep it secure.

Meta Reverses Instagram Encryption Stance
Meta has backtracked on its plan to introduce end-to-end encryption for Instagram messages, leaving direct messages stored and transmitted in plaintext, giving the company access to user conversations. This move reverses years of promotion for enhanced messaging security.

Legacy Security Tools Hinder Data Protection Efforts
With data constantly moving across cloud and AI environments, traditional security tools are holding you back from truly protecting your data - it's time for a modern approach. A staggering 72% of security professionals agree that data security is more critical than ever, making an evolution in strategy urgent.

Ransomware Attacks Expose Backup Vulnerabilities
Ransomware attackers often destroy backup systems before encrypting data, rendering your recovery plan useless. This deliberate tactic follows a predictable sequence, allowing attackers to systematically dismantle your defenses and leave you with limited options.

UK Workers Sell Corporate Logins, Exposing Firms to Cybercrime
One in eight UK employees at large firms have sold or know someone who has sold corporate logins in the past year, a shocking trend that puts companies at risk of cybercrime. Alarming still, many justify this risky behaviour, with senior executives being more likely to think selling credentials is acceptable.

FTC Settlement Forces Kochava to Curb Location Data Sales
Big changes are coming for Kochava, a data broker that allegedly sold precise location data from hundreds of millions of smartphones without consent - under a proposed FTC settlement, they'll need to get explicit permission from consumers before sharing their sensitive info. This move could mark a major shift in how companies handle location data sales.

EU Advances Mandatory Online Age Verification Despite Security Risks
The European Commission's recent findings have revealed that Meta failed to protect minors, with a staggering 12% of European children under 13 reportedly accessing Facebook or Instagram, sparking concerns over online safety. This has led to a push for mandatory online age verification, despite security risks.

US Companies Face Record $3.45 Billion in Privacy Fines
US companies are facing a record-breaking $3.45 billion in privacy fines, a staggering amount that surpasses the total fines issued over the past five years combined, as regulators shift from education to full-scale enforcement. This surge in fines is driven by stronger state laws, coordinated interstate efforts, and increased scrutiny of AI and automation practices.

UK Data Watchdog Chief Steps Back Amid Workplace Probe
UK's top data watchdog, John Edwards, has temporarily stepped down from his role amid an independent workplace investigation, cooperating fully with the probe. He made the announcement via LinkedIn, confirming his voluntary leave of duties as head of the Information Commissioner's Office.

House Republicans Unveil National Data Privacy Bill
House Republicans have introduced the Secure Data Act, a groundbreaking national data privacy bill that puts Americans in control of their personal data and holds companies accountable for keeping it safe. The proposed law would give consumers the power to opt out of data collection for targeted ads, third-party sales, and automated decision-making.

Microsoft Disrupts ASP.NET Flaw Allowing SYSTEM Privilege Escalation
Microsoft has patched a critical ASP.NET Core vulnerability, CVE-2026-40372, that allowed unauthenticated attackers to forge authentication cookies and gain SYSTEM privileges on affected devices. This fix addresses a flaw in the ASP.NET Core Data Protection cryptographic APIs that could be exploited for privilege escalation.

Ransomware Attacks Expose Flaws in Business Backup Strategies
Having up-to-date backups is only half the battle - if your systems are down and doors are closed, are you truly protected? Backups safeguard your data, but it's Business Continuity and Disaster Recovery (BCDR) that keeps your business running smoothly during downtime.

NAKIVO Bolsters Backup Software with Enhanced Ransomware Defense
Say goodbye to data worries with NAKIVO Backup & Replication v11.2, the latest release that supercharges your backup software with lightning-fast operations, rock-solid reliability, and proactive ransomware defense. This game-changing update gives you an unbeatable shield against cyber threats and data loss.

Google Fortifies Ad Ecosystem, Cracks Down on 8.3B Policy-Violating Ads
Google is taking a giant leap in protecting user privacy and cracking down on fraud, having blocked over 8.3 billion ads and suspended 24.9 million accounts in a single year. This bold move is part of a broader effort to reshape how apps handle sensitive data, with a focus on transparency and security.

Google Chrome Fails to Thwart Browser Fingerprinting
If a browser claims to be safe but fails to block one of the easiest ways for advertisers to track you online, can it really be considered safe? Google Chrome, despite its reputation for security, surprisingly leaves users vulnerable to browser fingerprinting, a pervasive tracking method that can uniquely identify and follow you around the web.

Quantum Security Faces Three Looming Realities
As World Quantum Day dawns, security leaders are facing a pressing question: what three looming realities will redefine how organizations safeguard their data, assets, and missions? The answer will be crucial in determining where they focus their attention, budget, and talent in the years to come.

Sanders Probes AI Impact on Privacy
Senator Sanders just had a striking conversation with an AI named Claude about the impact of artificial intelligence on privacy - and his one-line verdict says it all: Claude is actually pretty good on the issues. This brief endorsement carries significant weight, sparking important discussions about the role of AI in shaping our future.
Shadow AI Emerges as Unseen Threat in Enterprise Security
As AI assistants and automation services increasingly seep into everyday use, employers are faced with a daunting question: are productivity gains worth the risk of losing control? Employees are quietly adopting unsanctioned AI tools, often blurring the lines between efficiency and security.

HHS Weighs HIPAA Security Rule Update Amid Compliance Cost Concerns
As the HHS Office for Civil Rights considers updating the HIPAA Security Rule, a pressing question remains: will the cost of compliance outweigh the risk of leaving protected health information vulnerable? The director bluntly puts it, the cost of inaction may outweigh compliance burdens.

Proton Unveils Meet, a Secure Video Conferencing Alternative
Say goodbye to compromising your privacy for seamless online meetings! Proton's new Meet platform is here to revolutionize video conferencing with end-to-end encryption, giving you the freedom to be yourself without worrying about surveillance or data exploitation.