Yet more proof that a federal privacy law could be coming to the U.S. as early as next year with the introduction of the Online Privacy Act which may be more stringent than the California Consumer Privacy Act (CCPA).
Citizen Lab reports that the new Pegasus spyware zero-click zero-day impacts the most recent version of iOS (16.6) and likely prior versions dating back to the iPhone 8. As with the prior Pegasus attack vector, victims only need to receive a iMessage to be compromised; they do not need to open the message or interact with it.
privacy lawsuit claims to have tested what Apple apps "phone home" with and found that it seemingly makes no difference what the user chooses in terms of analytics data permissions.
Skeleton key attacks craft the right statement to convince AI models to shed their guardrails entirely. Once a functional statement has been developed, it is essentially a "plug and play" method to jailbreak a variety of models.
Civil actions brought by the SolarWinds Corp and its CISO Timothy Brown have been dismissed with prejudice by the Manhattan federal court handling the case, the end result of a settlement negotiation process that began in July of this year.
Apple has introduced significant changes to the security and privacy features in iOS 13 which could cause users to ignore important prompts and use unsafe workarounds to get rid of them.
Medical data leaks are among the fastest-growing segments of cyber crime, and for good reason. Health care systems tend to operate on outdated systems that have inadequate security elements.
A case of what TikTok says was the mistaken storage of EU data on a server in China appears to be concluding with a €530 million fine for the video giant, under charges of violating Article 46(1) of the GDPR and its requirement to "verify, guarantee and demonstrate" that its data transfers were kept adequately secure.
The coalition suggests that if privacy regulators sign off on Meta’s ad-free scheme, it will immediately be adopted by every other service that monetizes via personalized advertising. That could undo a great deal of the work GDPR decisions have done.
A suspected fraudster accessed credit data of 24 million South Africans and 800,000 businesses in a massive Experian data breach.









