What can we learn from the Dixons data breach that blew up after disclosure

European consumer electronics retailer Dixons Carphone’s apologetic admission yesterday that a 2017 data breach was in fact considerably worse than it first reported suggests disclosures of major breaches could get a bit more messy — at least under the early reign of the region’s tough new data protection framework, GDPR — as organizations scramble to comply with […]

View More What can we learn from the Dixons data breach that blew up after disclosure

AI spots legal problems with tech T&Cs in GDPR research project

Technology is the proverbial double-edged sword. And an experimental European research project is ensuring this axiom cuts very close to the industry’s bone indeed by applying machine learning technology to critically sift big tech’s privacy policies — to see whether AI can automatically identify violations of data protection law. The still-in-training privacy policy and contract […]

View More AI spots legal problems with tech T&Cs in GDPR research project

BigID scores $30 million Series B months after closing A round

BigID announced a big $30 million Series B round today, which comes on the heels of closing their $14M A investment in January. It’s been a whirlwind year for the NYC data security startup as GDPR kicked in and companies came calling for their products. The round was led by Scale Venture Partners with participation […]

View More BigID scores $30 million Series B months after closing A round

UK watchdog issues $330k fine for Yahoo’s 2014 data breach

Another fallout from the massive Yahoo data breach that dates back to 2014: The UK’s data watchdog has just issued a £250,000 (~$334k) penalty for violations of the Data Protection Act 1998. Yahoo, which has since been acquired by Verizon and merged with AOL to form a joint entity called Oath (which is also the parent […]

View More UK watchdog issues $330k fine for Yahoo’s 2014 data breach

Instapaper on pause in Europe to fix GDPR compliance “issue”

Remember Instapaper? The Pinterest-owned, read-it-later bookmarking service is taking a break in Europe — apparently while it works on achieving compliance with the region’s updated privacy framework, GDPR, which will start being applied from tomorrow. Instapaper’s notification does not say how long the self-imposed outage will last. WTF is instapaper doing with data? pic.twitter.com/eG2dhtkvnd — […]

View More Instapaper on pause in Europe to fix GDPR compliance “issue”

Facebook faces fresh criticism over ad targeting of sensitive interests

Is Facebook trampling over laws that regulate the processing of sensitive categories of personal data by failing to ask people for their explicit consent before it makes sensitive inferences about their sex life, religion or political beliefs? Or is the company merely treading uncomfortably and unethically close to the line of the law? An investigation […]

View More Facebook faces fresh criticism over ad targeting of sensitive interests

Unroll.me to close to EU users saying it can’t comply with GDPR

Put on your best unsurprised face: Unroll.me, a company that has, for years, used the premise of ‘free’ but not very useful ’email management’ services to gain access to people’s email inboxes in order to data-mine the contents for competitive intelligence — and controversially flog the gleaned commercial insights to the likes of Uber — […]

View More Unroll.me to close to EU users saying it can’t comply with GDPR

Google accused of using GDPR to impose unfair terms on publishers

A group of European and international publishers have accused Google of using an incoming update to the European Union’s data protection framework to try to push “draconian” new terms on them in exchange for continued access to its ad network — which many publishers rely on to monetize their content online. Google trailed the terms […]

View More Google accused of using GDPR to impose unfair terms on publishers

LinkedIn’s AutoFill plugin could leak user data, secret fix failed

Facebook isn’t the only one in the hot seat over data privacy. A flaw in LinkedIn’s AutoFill plugin that websites use to let you quickly complete forms could have allowed hackers to steal your full name, phone number, email address, location (ZIP code), company, and job title. Malicious sites have been able to invisibly render […]

View More LinkedIn’s AutoFill plugin could leak user data, secret fix failed

Data experts on Facebook’s GDPR changes: Expect lawsuits

Make no mistake: Fresh battle lines are being drawn in the clash between data-mining tech giants and Internet users over people’s right to control their personal information and protect their privacy. An update to European Union data protection rules next month — called the General Data Protection Regulation — is the catalyst for this next chapter […]

View More Data experts on Facebook’s GDPR changes: Expect lawsuits

Diversity and inclusion, data privacy and security ops will be on everyone’s mind at RSA

Monzy Merza Contributor Monzy Merza is the chief security evangelist at Splunk. More posts by this contributor The four cybersecurity terms everyone is talking about at Black Hat How The Rules Of Cyber Engagement Have Changed This week, 50,000 security professionals will descend upon San Francisco for the 27th Annual RSA Security Conference, arguably the largest […]

View More Diversity and inclusion, data privacy and security ops will be on everyone’s mind at RSA

UK report urges action to combat AI bias

The need for diverse development teams and truly representational data-sets to avoid biases being baked into AI algorithms is one of the core recommendations in a lengthy Lords committee report looking into the economic, ethical and social implications of artificial intelligence, and published today by the upper House of the UK parliament. “The main ways […]

View More UK report urges action to combat AI bias