Edition

This is a permanent edition. It carries the briefing exactly as published on this date and does not change.

US Healthcare Marketplaces Exposed Sensitive Citizenship and Race Data to Ad Tech Giants

Major US healthcare marketplaces have been found to be sharing highly sensitive personal data, including citizenship status and race, with advertising technology companies. This practice raises significant concerns about patient privacy and the potential for discriminatory targeting. The revelations highlight a systemic issue within the digital health sector regarding data handling practices and transparency with users about data sharing. This unauthorized disclosure occurred despite the sensitive nature of the information involved, which is typically protected under various privacy frameworks.

Today's question

Which GDPR principle is most directly violated by the online sale of sensitive medical data without explicit consent?

  1. Data Minimization
  2. Storage Limitation
  3. Integrity and Confidentiality
  4. Accountability

Answer this question on the site

Worth knowing

  1. Voter Records Weaponized for Privacy Violations Underscoring Public Data Risks

    Publicly accessible voter registration information is being exploited to facilitate privacy violations and harassment. The ability to easily access and aggregate personal details from voter rolls presents a significant risk for individuals' security and wellbeing. This weaponization of public data highlights gaps in data protection policies concerning readily available government records.

  2. Children Circumvent Online Age Verification with Simple Tricks

    A study reveals that children can easily bypass online age verification systems, including those mandated by new regulations like the UK Online Safety Act, using rudimentary methods such as drawing on a fake mustache. This exposes the limitations of current age verification technologies and raises serious questions about the effectiveness of measures designed to protect minors online. The ease of circumvention undermines the intent of child protection laws.

  3. Shadow AI Emerges as New Corporate Risk Requiring AI Bill of Materials

    The rise of "shadow AI" reflects unmanaged and unsanctioned AI tools being used within organizations, mirroring the past issue of shadow IT. This unmonitored deployment poses significant data privacy and security risks, necessitating the adoption of AI Bills of Materials (AI BOMs). AI BOMs are crucial for understanding and managing the components and data flows of AI systems to mitigate these emerging threats.

Compiled that morning from regulator, court and authority sources. Primary sources are linked on every story.