Cybersecurity, Privacy, & AI

Trending Now
Plankey Withdraws Nomination to Lead CISA • What Federal Leaders Need to Know About Iran’s Cyber Campaign • Navy Deploys SABER Cybersecurity System Fleetwide • The Supreme Court Is About to Decide How Far Geofence Warrants Can Go • FedRAMP Solicits Public Comment on Overhaul to Incident Communications Procedures

Lessons on Cybersecurity from the Yahoo Data Breach

Yahoo (now Altaba), recently became the first public company to be fined ($35 million) by the SEC for filing statements that failed to disclose known data breaches. This is on top of the $80 million federal securities class action settlement that Yahoo reached in March, the first of its kind based on a cyberattack. Meanwhile, shareholder and consumer actions are pending in the courts.

Edward J. McAndrew of Ballard Spahr LLP recaps the hacking incidents and Yahoo’s responses to them, including its delayed disclosures while negotiating for the company to be purchased by Verizon.

He summarizes the legal actions taken to date, by US federal regulators, law enforcement agencies, and class action litigation against the company.

He follows up with sixteen lessons to be learned from the criminal conduct, the incident responses, and the various litigation in this saga.

Read the full post from Ballard Spahr via the National Law Review

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–Saturday — Subscribe here.