Edition

This is a permanent edition. It carries the briefing exactly as published on this date and does not change.

US Bank Discloses Incident Involving Customer Data Shared with Unauthorized AI Application

A US bank self reported a security lapse after inadvertently transferring customer data to an unauthorized artificial intelligence application. This highlights the growing risks associated with the integration of AI tools within financial institutions, particularly when data governance and shadow IT policies are not robust. The incident underscores the critical need for strict data handling protocols and clear authorization processes for all third party services, especially those involving sensitive customer information.

Today's question

The right to object under Article 21 is absolute for:

  1. Processing by public authorities for governmental functions
  2. All processing activities conducted by the organization, following a documented assessment process
  3. Processing based on consent that was previously obtained, with corresponding accountability measures
  4. Processing for direct marketing purposes, in keeping with the principle of transparency

Answer this question on the site

Worth knowing

  1. UK Water Supplier Fined £1.3 Million for Exposing 664,000 Customer Records

    A UK water supplier received a significant fine for a data breach that exposed the personal information of hundreds of thousands of customers. This incident underscores the severe financial and reputational consequences of inadequate cybersecurity measures and highlights the regulatory scrutiny on critical infrastructure providers.

  2. Foxconn Confirms Cyberattack After Ransomware Group Claims Theft of Apple and Nvidia Files

    Foxconn, a major electronics manufacturer, confirmed a cyberattack after a ransomware group asserted it had stolen confidential data belonging to Apple and Nvidia. This incident reveals the extensive supply chain risks associated with critical component manufacturers and the potential for ransomware to impact multiple high profile companies.

  3. Vietnam to Develop Domestic Cloud Infrastructure to Secure Government Data

    Vietnam is moving to establish its own national cloud infrastructure to reduce reliance on foreign operators for government workloads, citing security concerns. This strategic shift reflects a growing global trend among nations to enhance data sovereignty and protect sensitive public sector information from potential external risks.

Compiled that morning from regulator, court and authority sources. Primary sources are linked on every story.