Category / Privacy

Privacy briefings

Privacy briefings on data misuse, tracking changes, surveillance harms, regulator action, and data rights enforcement.

All briefings →

French hospital fined €500,000 after breach exposes data of 727,000

France's data protection authority (CNIL) has fined Hôpital privé de la Loire €500,000 ($580,000) for failing to adequately protect patients' and their relatives' data. France’s data protection authority (CNIL) has fined Hôpital privé de…

Wireless Routers as Motion Detectors

Comcast has added motion detection as a feature to its wireless routers: The feature sends push notifications to users when motion is detected near a connected device, such as a TV or printer. It has different settings for when people ar…

  • privacy
  • network-edge
  • regulation
  • enforcement

French tax authority data breach affects 678,000 individuals

The French Ministry of the Economy and Finance has disclosed a data breach after an attacker accessed the General Directorate of Public Finances (DGFiP) systems and stole data belonging to 678,000 individuals.

  • privacy
  • data-security
  • public-sector
  • threat-intelligence

Facial Recognition at Madison Square Garden

Last month, the story broke (alternate link) that Madison Square Garden uses facial recognition software on everyone entering the facility, and—among other groups—flags activists that oppose using facial recognition. Turns out that the s…

  • privacy
  • espionage

Axon Is Another License Plate Surveillance Company

Governments are switching, but I’m not sure it makes a difference: …some municipalities, including Denver, Colorado, are ditching their Flock arrays. But keep in mind that if they’re only switching from Flock to another brand of license-…

  • privacy
  • public-sector
  • espionage

CISA Urges Hardening Fortinet Devices After Reports of Credential Exposure

New security development detected from CISA Cybersecurity Advisories. CISA is aware of global reports that malicious cyber actors have targeted internet-accessible Fortinet devices across government and private sector organizations using…

  • privacy
  • network-edge
  • regulation
  • public-sector

The FCC Wants to Eliminate Burner Phones

A proposed FCC rule would kill burner phones: phones whose accounts are not attached to a particular person. The FCC plans to do this by legally forcing the country’s telecoms to store a wealth of personal information about essentially a…

  • privacy
  • public-sector

Coordinated Supervision Committee extends scope to include Eurodac

New governance development detected from EDPB News. Brussels, 12 June – As of today, coordinated supervision of the European Union’s asylum and migration database (Eurodac) will be carried out by the Coordinated Supervision Committee (CSC).

  • privacy
  • data-security
  • compliance
  • regulation

Coupang hit with record $409 million data breach fine in Korea

​​The Personal Information Protection Commission (PIPC), South Korea's data protection regulator, has fined e-commerce giant Coupang a record 624.6 billion won (roughly $409 million) following a massive data breach affecting more than 37…

  • privacy
  • data-security
  • compliance
  • regulation

Critical Zcash Vulnerability Found and Fixed

If you’re a user—owner?—of this cryptocurrency, this is important: On May 29, the security researcher Taylor Hornby found a critical vulnerability in Zcash Orchard privacy pool using Claude Opus 4.8. The Zcash team hired Hornby specifica…

  • privacy
  • vulnerabilities
  • crypto
  • network-edge

CISA Adds Three Known Exploited Vulnerabilities to Catalog

New security development detected from CISA Cybersecurity Advisories. CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

  • privacy
  • vulnerabilities
  • kev
  • regulation

Europe Day 2026: let’s celebrate together

New governance development detected from EDPB News. Brussels, 5 May – On 9 May each year, Europeans celebrate the anniversary of the Schuman Declaration, the key moment which led to the creation of the EU as we know it today.

  • privacy
  • network-edge

Stakeholder event on competition and data protection

New governance development detected from EDPB News. Brussels, 23 April – The EDPB is organising a remote stakeholder event in the context of its joint work with the European Commission on upcoming guidelines on the interplay between comp…

  • privacy
  • regulation
  • public-sector

CISA Adds Four Known Exploited Vulnerabilities to Catalog

New security development detected from CISA Cybersecurity Advisories. CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

  • privacy
  • vulnerabilities
  • kev
  • regulation

Stakeholder event on competition and data protection: save the date

New governance development detected from EDPB News. Brussels, 23 April – The EDPB is organising a remote stakeholder event in the context of its joint work with the European Commission on upcoming guidelines on the interplay between comp…

  • privacy
  • regulation
  • public-sector

CISA Adds Eight Known Exploited Vulnerabilities to Catalog

New security development detected from CISA Cybersecurity Advisories. CISA has added eight new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

  • privacy
  • vulnerabilities
  • kev
  • regulation

CISA Adds Two Known Exploited Vulnerabilities to Catalog

New security development detected from CISA Cybersecurity Advisories. CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

  • privacy
  • vulnerabilities
  • kev
  • regulation

CISA Adds Seven Known Exploited Vulnerabilities to Catalog

New security development detected from CISA Cybersecurity Advisories. CISA has added seven new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

  • privacy
  • vulnerabilities
  • kev
  • regulation

Enhancing compliance and consistency: EDPB adopts DPIA template

New governance development detected from EDPB News. Brussels, 14 April - In line with the EDPB’s Helsinki Statement to make GDPR compliance easier and strengthen consistency across Europe, the EDPB has adopted a template for Data Protect…

  • privacy
  • network-edge
  • compliance
  • enforcement

Healthcare cybersecurity: Diagnosing risks, prescribing solutions

Cyber-attacks can severely impact personal lives and put patients at risk of harm. That’s why cybersecurity is vital for healthcare organizations to protect patient wellbeing and privacy at all times. Cybersecurity has become increasingl…

  • privacy
  • data-security
  • vulnerabilities
  • compliance

Sen. Wyden Warns of Another Section 702 Abuse

Sen. Ron Wyden is warning us of an abuse of Section 702: Wyden took to the Senate floor to deliver a lengthy speech, ostensibly about the since approved (with support of many Democrats) nomination of Joshua Rudd to lead the NSA. Wyden wa…

  • privacy
  • regulation
  • public-sector
  • espionage