Cybersecurity & Privacy

  • September 09, 2026

    Feds NY RICO Case Against Huawei Packs A Punch, Jury Told

    The Brooklyn federal jury in the landmark corporate criminal trial of Huawei on Wednesday heard a prosecutor say they'll have an insider's view of the company's vast criminal operations that relied on stolen trade secrets to grow and kept banks in the dark about its sanctions compliance, while a top executive's deal with the government will seal the fate of the Chinese telecommunications giant.

  • September 09, 2026

    Fla. AG Sues Netflix Over 'Bait-and-Switch' Data Harvesting

    Florida has become the second state to sue Netflix over its purported harvesting of personal data from children and families, alleging that the streaming provider engaged in a "bait-and-switch" when it leveraged subscribers' personal information to fuel its advertising despite promising to be a "safe respite" from these practices. 

  • September 09, 2026

    NM Again Hauls Meta To Trial, This Time Over Privacy

    The state of New Mexico told a jury Wednesday that Facebook flagrantly misrepresented its privacy practices, including the one that let Cambridge Analytica harvest the data of 87 million mostly nonconsenting users, as the state goes to trial against the company for the third time in seven months.

  • September 09, 2026

    Ringleader Pleads Guilty In $245M Crypto RICO Enterprise

    The 22-year-old ringleader of an international conspiracy that used social engineering to steal more than $245 million in cryptocurrency has pled guilty in D.C. federal court for his role in building "a cybercrime empire," the U.S. Department of Justice said.

  • September 09, 2026

    States Say DOT's Driver Data Demand Is Immigration Pretext

    The Democratic-led states asking a Virginia federal judge to stop the Trump administration from accessing the Social Security numbers of commercial drivers nationwide for immigration enforcement backed up their request for an injunction Wednesday, saying the federal government is using post hoc rationalizations to defend its data demands.

  • September 09, 2026

    NC Justices Probe TikTok's State Contacts In Addiction Case

    The North Carolina Supreme Court grappled Wednesday with whether TikTok and its parent company should have to face the attorney general's suit alleging the app is addictive to young users, with TikTok arguing its general national business practices do not create ties to the Tar Heel State sufficient to be dragged into court there.

  • September 09, 2026

    Agencies Warn Of Chinese AI Cos. Targeting US Models

    The Cybersecurity & Infrastructure Security Agency, National Security Administration and FBI have released a report claiming Chinese artificial intelligence companies were extracting proprietary capabilities from U.S. AI models through a process known as "distillation."

  • September 09, 2026

    Software Group Says FCC Should Narrow Covered List Focus

    The software industry thinks the Federal Communications Commission might want to take a more "narrow" view when it comes to its continued expansion of the covered list of telecommunications equipment that the agency deems to be a national security risk.

  • September 09, 2026

    NJ Tech Chief Seeks To Avoid TikTok Depo In AG's Fraud Suit

    New Jersey Chief Technology Officer Kevin Dehmer has asked a state court judge to block TikTok from deposing him in the attorney general's consumer fraud lawsuit, arguing that he has no firsthand knowledge of the allegations and that forcing a high-ranking state official to testify is unwarranted.

  • September 09, 2026

    ​​​​​​​Cannabis Co. Failed To Prevent Patient Data Breach, Suit Says

    A Miami-based telehealth company that helps people secure medical marijuana cards failed to protect users' personal data from a cyberbreach, according to a proposed class action lodged in Florida federal court.

  • September 09, 2026

    FTC Chucks Biden-Era Health App Breach Notification Rule

    The Federal Trade Commission, as part of its regulatory streamlining, has rescinded a Biden-era policy requiring health applications and smart devices that collect information to warn users when their medical data has been breached.

  • September 09, 2026

    Ex-Judge, Law Profs Urge 4th Circ. To Limit Digital Warrants

    A former federal magistrate judge and a group of law school professors from around the country have urged the Fourth Circuit to find that a geofence warrant at the heart of a major U.S. Supreme Court decision is too broad in light of the high court's ruling.

  • September 09, 2026

    Calif. Judge Seeks Clearer Limits On ICE Use Of Medicaid Data

    A California federal judge ordered 22 states and the Trump administration to reach an agreement on the proper scope of his injunction limiting Medicaid data use for immigration enforcement, saying he's unsure how it should apply to people with Deferred Action for Childhood Arrivals status.

  • September 09, 2026

    Katten Adds Kasowitz Data Strategy Team Leader In LA

    Katten Muchin Rosenman LLP has bolstered its offerings in Los Angeles with the addition of the chair of Kasowitz LLP's data strategy, privacy and security team and co-chair of its artificial intelligence industry group.

  • September 08, 2026

    Parler Legal Dustup Revealed Rifts, Jury Hears From Ex-CEO

    Parler's ousted CEO testified Tuesday in his trial against former partner Rebekah Mercer that in 2020, her lawyers' pushback on restructuring provisions recommended by Parler's lawyers was an early clue that "something didn't seem right."

  • September 08, 2026

    FCC Data Breach Reg Can't End-Run Congress, 6th Circ. Told

    Now that the Sixth Circuit has decided hold a full panel rehearing of its decision upholding the FCC's expanded data breach notification rules for telecommunications carriers, conservative legal groups are coming together to urge the appellate court to reject the Biden-era rule.

  • September 08, 2026

    Ostium Faces $15M Asset Freeze After $23M Hack

    The assignee of a lender owed some $15 million by crypto trading platform Ostium Labs has obtained a temporary restraining order from a New York federal court as it pursues arbitration over an alleged default that followed a July hacking incident, court records showed Tuesday.

  • September 08, 2026

    Meta Accused Of Using Photos To Train AI Without Consent

    Facebook and Instagram users hit Meta with a proposed class action accusing the company of harvesting biometric data from photos posted to its platforms without consent to develop its artificial intelligence and facial recognition technology.

  • September 08, 2026

    XAI Hit With Ill. Biometric Privacy Suit Over Grok Photos

    Elon Musk's xAI collects users' facial geometry when they upload photos to Grok for AI-powered image editing without obtaining the informed consent required under Illinois' biometric privacy law, according to a proposed class action filed in Cook County court Friday.

  • September 08, 2026

    Motorola Tells DC Circ. That Google Search Payments 'Vital'

    Motorola on Friday backed Google with a D.C. Circuit amicus brief arguing the U.S. Department of Justice is wrong to call for a complete ban on Google paying cellphone-makers like Motorola to incorporate Google search into their devices.

  • September 08, 2026

    Kik App Is 'A Parent's Worst Nightmare,' Conn. AG Says

    The mobile messaging app Kik is "a cesspool of sexual abuse, exploitation and bullying" and "a parent's worst nightmare," Connecticut Attorney General William Tong said Tuesday in announcing his office would investigate allegations that inadequate privacy and content moderation measures endanger children.

  • September 08, 2026

    Ex-Facebook Exec Must Arbitrate Memoir Publicity Fight

    A California federal judge ruled Friday that a former Facebook executive waited too long to challenge in court an interim arbitral award that bars her from promoting her "Careless People" whistleblower memoir, finding that she waived her court challenge by "thoroughly" participating in arbitration for over a year before suing.

  • September 08, 2026

    DC Circ. Seems To Back SEC FOIA Withholding In Data Breach

    A D.C. Circuit panel appeared skeptical Tuesday that a civil liberties group should get access to the identities and internal documents of U.S. Securities and Exchange Commission officials involved in a 2022 "control deficiency" that resulted in the dismissals of over 40 administrative cases.

  • September 08, 2026

    Medical Cannabis Co. Can't Shake Data Breach Claims

    An Ohio federal judge Tuesday rejected a bid to dismiss a consolidated class action claiming a company that helps people secure medical marijuana cards failed to protect users' personal data from a cyberbreach.

  • September 08, 2026

    Mich. Lawyer Can't Shake Cybersecurity Firm's $550K Claim

    A Detroit attorney who promoted voter fraud claims after the 2020 election must face a cybersecurity company's breach of contract and defamation suit after a Michigan federal judge found the company plausibly alleged the attorney and her law firm retaliated against its investigators after they found no evidence of election fraud and allegedly declined a request to report otherwise.

Expert Analysis

  • How Quantum Risk Could Reshape Legal Obligations

    Author Photo

    As federal policy, National Institute of Standards and Technology standards, and major market practice converge around postquantum cryptography, companies may need to safeguard their data now to prove they took reasonable measures to protect trade secrets from quantum computers that do not exist yet, say attorneys at MoFo.

  • AI Note-Taking Suits May Fill Gap In Privacy Law Structure

    Author Photo

    A recent class action against Granola joins other pending lawsuits against AI note-taking providers, highlighting the legal uncertainty surrounding these tools, but there are practical steps companies using "invisible" AI services can take to mitigate risk, including conducting inventories and reviewing access permissions, say attorneys at Barnes & Thornburg.

  • Planning For The Impact Of FinCEN's CTA Rollback

    Author Photo

    The Financial Crimes Enforcement Network's recent rollback of Corporate Transparency Act reporting obligations should reduce compliance costs, but its plans to revisit customer due diligence rules should prompt companies and financial institutions to reassess state beneficial ownership programs, say attorneys at Sidley.

  • How Rogue AI May Shape Corporate Liability, Responsibility

    Author Photo

    Recent artificial intelligence cyber incidents offer a window into how companies deploying autonomous systems should document risk controls even when systems exceed their intended boundaries, as jurors may treat unexpected AI conduct as foreseeable evidence of inadequate safeguards, says Jorge Monroy at Verdict Insight Partners.

  • CISA Town Halls Signal Key Cyber Rule Changes Ahead

    Author Photo

    The Cybersecurity and Infrastructure Security Agency recently held a series of town halls to gather additional stakeholder input on the Cyber Incident Reporting for Critical Infrastructure Act, offering potential insights into how the agency may address key issues in a forthcoming final rule, say attorneys at Covington.

  • Series

    Ballet Makes Me A Better Lawyer

    Author Photo

    A lifetime of learning and performing ballet taught me that success — whether in dance or practicing law — comes only through hours of thorough preparation, boundless energy and relentless effort, says Sharon Katz-Pearlman at Greenberg Traurig.

  • AI Prompt-Injection Hacking Creates Emerging Legal Risks

    Author Photo

    Last month, the first decision sanctioning a prompt-injection attack aimed at a U.S. court highlights the risks that this tactic — attempting to manipulate artificial intelligence systems by hiding invisible instructions in a document — poses for trade secrets, patent prosecution and other areas, say attorneys at Kilpatrick.

  • Scope Issues For Cos. To Consider Ahead Of Cyber Rules

    Author Photo

    As the Cybersecurity and Infrastructure Security Agency finalizes its proposed Cyber Incident Reporting for Critical Infrastructure Act rules, organizations can take steps to navigate the uncertainty that stems from inconsistent critical infrastructure sector definitions and overlapping sector boundaries, say attorneys at Wiley.

  • What Nonbank Lenders Should Watch In 'Open Banking' Redo

    Author Photo

    Nonbank mortgage lenders should prepare for several key changes in the Consumer Financial Protection Bureau's anticipated open banking rule rewrite that could reshape verification costs, vendor relationships and loan workflows, says Kara Ward at Baker Donelson.

  • 10 Ways To Avoid Privacy Risks Revealed In AI Notetaker Suits

    Author Photo

    Litigation claiming Otter.ai trained its AI-powered transcription tool on user conversations and a recent complaint alleging Granola’s notetaking bot joined video calls unbeknownst to participants show companies should assess these technologies as communications-capture tools with privacy and wiretap risks, says Jennifer Ruehr at Hintze Law.

  • Series

    Taekwondo Makes Me A Better Lawyer

    Author Photo

    Taekwondo has taught me to recognize when to fight for a position and when to focus on finding a solution, and that the best outcomes are often achieved by solving problems — all of which has improved my work as a bankruptcy lawyer, mediator and Subchapter V trustee, says Amy Denton Mayer at Berger Singerman.

  • What To Know As Legal Duty To Consider AI Takes Shape

    Author Photo

    While the U.K. Jurisdiction Taskforce’s recent statement on liability for artificial intelligence harms is nonbinding for both U.K. and U.S. lawyers, it highlights the importance of being able to distinguish between the availability of a tool and a professional obligation to use it, say Jonny Frank and Michael Costa at StoneTurn.

  • How FCC Covered List Blitz Is Sidelining Commerce Dept.

    Author Photo

    The swath of recent Federal Communications Commission rulemakings raises serious questions about the purpose and future of Commerce's Office of Information and Communications Technology and Services, and how the U.S. government will go forward in imposing national security regulation on domestic applications of adversary-linked technologies, says Peter Jeydel at Troutman.

  • Amazon v. Perplexity Ruling Limits CFAA Reach Over AI Tools

    Author Photo

    The Ninth Circuit's recent decision in Amazon v. Perplexity provides important early guidance on how the Computer Fraud and Abuse Act applies to agentic artificial intelligence, and is the latest in a line of rulings in which courts have declined to stretch existing statutes to broadly regulate AI, say attorneys at Ropes & Gray.

  • CFPB Complaint Portal Overhaul Signals Changing Priorities

    Author Photo

    The Consumer Financial Protection Bureau's updates to its consumer complaint portal and decision to cease publishing consumer complaint narratives should be viewed by companies as one component of a larger recalibration of how the CFPB collects information and allocates its supervisory and enforcement resources, say attorneys at Cooley.

Want to publish in Law360?


Submit an idea

Have a news tip?


Contact us here