Since the GDPR went into effect in 2018, Meta has done nearly everything possible to claim legitimate interest to avoid user consent for collecting personal information for targeted ads. The company appears to have finally reached the end of its rope in this area, though a recently announced changeover to a consent basis.
Zoom's plan for AI data collection is apparently to scrape it from internal customer activity. The March TOS update changed the platform terms to announce that Zoom reserved the right to use platform video, audio and chat content to train AI models.
Reasonable anonymous transactions have been proposed for the digital yuan, which is currently in testing in multiple regions of the country. PBOC officials have also promised to deliver the best privacy protection, though questions remain.
U.S. protests of police brutality have caused Amazon, Microsoft and IBM to temporarily cease selling facial recognition technology to law enforcement agencies.
A system outage stemming from an apparent ransomware attack disrupted clinical operations at Kettering Health, forcing the healthcare network to cancel and reschedule elective operations.
Flagstar Bank suffered a MOVEit data breach via a third-party payment processor and mobile banking services provider, impacting over 800,000 customers in the US.
Password manager LastPass notified its customers of a second security breach in 2022, with the threat actor accessing customer data stored on a shared cloud service.
The LockBit ransomware group claims that it was able to penetrate SpaceX via a third party vendor, and is holding some 3,000 engineering design documents that it is threatening to sell.
The Delete Act (SB 362) expands an existing right under California state law to have personal data deleted, but streamlines the process so that one request will be sent to all data brokers.
Phishing scams by a Chinese threat actor ‘Fangxiao’ employs over 42,000 brand impersonation domains to earn advertising revenue and spread malware via WhatsApp messages.










