This is a permanent edition. It carries the briefing exactly as published on this date and does not change.
FTC Moves to Permanently Ban Data Broker Kochava from Selling Location Data
The Federal Trade Commission (FTC) is taking decisive action to ban data broker Kochava from selling sensitive location data of American consumers. This move follows ongoing concerns about the privacy implications of granular location tracking and its potential for misuse. The FTC's enforcement aims to protect individuals from unwanted surveillance and the weaponization of personal movement data. This case highlights a significant regulatory pushback against the largely unregulated data brokerage industry.
A data protection officer is reviewing their organization's AI development practices, specifically concerning the collection of public data for training models. Given recent regulatory discussions, which of the following best describes the primary challenge related to web scraping under GDPR?
Ensuring that all scraped data is immediately deleted after model training is complete.
Determining whether data obtained through web scraping constitutes 'identifiable data' and thus falls under GDPR's scope.
Obtaining explicit consent from all individuals whose data is scraped from public websites.
Implementing robust encryption for all scraped data, regardless of its sensitivity or identifiability.
The UK's National Health Service (NHS) is reportedly transitioning hundreds of its GitHub repositories from open source to close source. This decision is driven by growing concerns related to artificial intelligence model training data and overall security vulnerabilities. The move reflects a broader trend of organizations reassessing their open source strategies in light of evolving AI and cybersecurity risks, particularly when handling sensitive information.
Video hosting platform Vimeo has experienced a data breach, leading to the exposure of personal information for approximately 119,000 users. The incident was claimed by the hacker group ShinyHunters, who allegedly dumped email addresses and other user data. This event underscores the persistent threat of cyberattacks and the importance of robust data protection measures for online platforms handling user information.
Cybersecurity firm Kaspersky has identified a widespread supply chain attack, suspecting Chinese hackers, that injected a backdoor into the popular software Daemon Tools. This sophisticated attack compromises the software's integrity, potentially allowing attackers extensive access to affected systems. Supply chain attacks pose a significant risk, as they exploit trust in legitimate software channels to distribute malware globally.
Compiled that morning from regulator, court and authority sources. Primary sources are linked on every story.