Cybersecurity, Privacy, & AI

Trending Now
Weaponized Email AI Assistants Could Help Attackers Hijack Accounts • CISA Guidance Targets Water Sector Security, Open Source AI and More • Salesforce Previews Plans to Deliver Newly Authorized ‘AI Agents’ Across DOD • CMS Pivots to Risk-Based Cybersecurity Model, CISO Says • Senate Set to Debate Package of Bills on Privacy, AI and Kids Safety

California Bill Seeks to Expand State Data Breach Notification Law

A bill introduced by California Assembly member Marc Levine (D-San Rafael) seeks to close a loophole in the state’s current tough data breach notification law which could see breaches of highly sensitive information go unreported.

It would add passport numbers and biometric data to the list of information whose breach triggers a requirement for the individuals to be notified. That list currently covers information such as bank account details, Social Security and driver license numbers, health and insurance information, and passwords.

The bill was prompted by the massive data breach of Marriott’s systems last year, which included the passport numbers of more than 25 million customers. While the other information stolen required notification, the hotel chain could have refrained from notifying the passport holders under current California law.

More at HIPAA Journal

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–Saturday — Subscribe here.