On January 7, online retailer Zappos.com Inc. reached a long-awaited settlement with nine states over a 2012 data breach that compromised personal and financial information of nearly 24 million of the company’s customers. Pennsylvania Attorney General Kathleen Kane said in a published statement that a hacker was able to access sensitive data pertaining to millions
Privacy + Cyber
Troutman Partner to Co-Chair ACI Cyber Security & Data Privacy Conference
On January 15-16, 2015, the American Conference Institute (ACI) will host the 15th installment of the acclaimed Global Legal & Compliance Forum on Cyber Security & Data Privacy and Protection at the Washington Plaza Hotel in Washington, D.C. This is a premier event for privacy officers, in-house counsel, senior executives, and outside attorneys specializing…
Illinois Federal Court Dismisses Data Breach Lawsuit against P.F. Chang’s For Lack of Damages
On December 11, 2014, the U.S. District Court for the Northern District of Illinois dismissed a proposed class action over a June 2014 data breach at P.F. Chang’s China Bistro, finding that no actual harm had been alleged. The court tossed a pair of consolidated complaints claiming that the restaurant chain failed to properly safeguard…
Massachusetts Enters Consent Judgment with Hospital Over Data Breach
Massachusetts Attorney General Martha Coakley recently entered into a Consent Judgment with Beth Israel Deaconess Medical Center, Inc., related to a data breach that affected nearly 4,000 patients and employees.
“The healthcare industry’s increased reliance on technology makes it more important than ever that providers ensure patients’ personal information and protected health information is secure,”…
Law Firm Files Class Action Lawsuit Against Jimmy John’s for Credit Card Data Breach
On November 7, the Rosen Law Firm, P.A. announced that it had filed a class action lawsuit against national chain Jimmy John’s Gourmet Sandwiches relating to a security breach involving customers’ credit and debit cards earlier this year. The lawsuit alleges that the company’s grossly inadequate information systems and network security oversight led to an…
IAPP’s Practical Privacy Series 2014 – NYC Edition
On November 5-6, the International Association of Privacy Professionals (IAPP) will host a Practical Privacy Series in New York. According to IAPP, the Series will offer laser-focused education in the hot areas of data privacy that gets straight to the point, giving attendees the knowledge they need right now.
Topics to be covered are:
–…
U.S. Inspector General Warns of CFPB Data Security Weaknesses
For the second time in recent weeks, a federal official has issued a warning regarding potential security weaknesses with the Consumer Financial Protection Bureau’s consumer data-mining program. In an October 30 report, United States Inspector General Mark Bialek warned CFPB Director Richard Cordray that the IG office had “identified information security as a major management…
California Attorney General Releases Data Breach Report
California Attorney General Kamala Harris released a report on October 28 on the growing threat of data breaches on California residents. According to the report, data breaches in California jumped 28 percent last year, from 131 reported incidents in 2012 to 167 in 2013. The breaches affected 18.5 million Californians by putting their personal information…
FCC Steps into Data Privacy Fray with Action Against Telecommunications Company
The Federal Communications Commission took its first step into the field of data security regulation on October 24 when it hit two telecommunications companies with a $10 million fine for allegedly failing to adequately safeguard customers’ sensitive information.
The two companies – TerraCom, Inc. and YourTel America, Inc. – were fined for allegedly placing the…
CFPB Finalizes Privacy Policy Disclosure Rule
On October 17, the Consumer Financial Protection Bureau finalized an administrative rule, first proposed in May, that allows qualifying financial institutions to post their privacy policies online in lieu of sending the policies to customers personally. The rule, an amendment to a regulation known as “Regulation P,” 12 C.F.R. Part 1016, applies both to…