Cybersecurity, Privacy, & AI

Trending Now
Plankey Withdraws Nomination to Lead CISA • What Federal Leaders Need to Know About Iran’s Cyber Campaign • Navy Deploys SABER Cybersecurity System Fleetwide • The Supreme Court Is About to Decide How Far Geofence Warrants Can Go • FedRAMP Solicits Public Comment on Overhaul to Incident Communications Procedures

FTC Pursuing, and Getting More Specific, About Privacy Post-LabMD Finding

The Eleventh Circuit recently issued a long awaited ruling in the LabMD case. It narrowly ruled that FTC’s order to LabMD – to cease and desist its prior practices and revise and replace its data security program – was not specific enough. Because of this ruling, National Law Review anticipates more specific orders from the commission.

FTC had gone after a cancer detection facility that suffered a data breach, criticizing the company for lax data security and issuing a broad requiring changes to the company’s systems. LabMD took the unusual measure of challenging the order, on both substantive and procedural grounds.

The case was eventually appealed to the Eleventh Circuit, which chose not to address various key issues, such as what type of injury is cognizable when it comes to data breaches, and what type of notice the FTC must provide.

More at the National Law Review

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.