Data Privacy + Cybersecurity Insider
CYBERSECURITY
CISA, FBI + DC3 Alert Warns of Iran-Based Ransomware Attacks
The Cybersecurity & Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), and the Department of Defense Cyber Crime Center (DC3) issued a joint alert on August 28, 2024, warning U.S.-based organizations that cyber actors, “known in the private sector as Pioneer Kitten, UNC757, Parisite, Rubidium, and Lemon Sandstorm,” are targeting and exploiting U.S. organizations “across multiple sectors.” Those sectors include “education, finance, healthcare, and defense sectors as well as local government entities.” Read More
ENFORCEMENT + LITIGATION
Labor Union Faces Class Action for Data Breach
A class action complaint was filed against the International Brotherhood of Electrical Workers (IBEW) labor union for a data breach that occurred between March 31 and April 5, 2024. IBEW represents individuals who work in a wide variety of fields, including utilities, construction, telecommunications, broadcasting, manufacturing, railroads, and government. The security incident resulted in unauthorized access to the names and social security numbers of current and former members of IBEW. Read More
HIPAA
HHS Drops Appeal of Tracking Technology Case
Last year, the American Hospital Association (AHA) sued the U.S. Department of Health and Human Services (HHS) in the U.S. District Court of the Northern District of Texas, requesting that HHS be barred from enforcing a new rule adopted by the Office for Civil Rights entitled “Use of Online Tracking Technologies by HIPAA Covered Entities and Business Associates.” The guidance prevented health care entities from deploying third-party web technologies that capture IP addresses. Read More
ARTIFICIAL INTELLIGENCE
NIST Proposes New Cybersecurity and AI Guidelines for Federal Government Contractors
Recently, the National Institute of Standards and Technology (NIST) released its second public draft of Digital Identity Guidelines (“Draft Guidelines”). The Draft Guidelines focus on online identity verification, but several provisions have implications for government contractors’ cybersecurity programs, as well as contractors’ use of artificial intelligence (AI) and machine learning (ML). Read More
PRIVACY TIP
Privacy Tip #412 - Beware of Spamouflage
As we approach "election season" in the United States, it can sometimes be difficult to identify false news from authentic fact reporting. A new report by Graphika, as reported by Cyberscoop, has identified a Chinese-linked group that is “creating American personas online and spreading content designed to denigrate both parties and candidates.” Find out more in this week's Privacy Tip. Read more
RECENT EVENTS AND NEWS
Data Privacy + Cybersecurity Team member chair Linn Freedman will present two advanced sessions of the seminar “Cybersecurity for Tax Professionals” as part of the Internal Revenue Service’s “2024 IRS Nationwide Tax Forum” in San Diego, CA, next Tuesday, September 10. The sessions will focus on recent cyber threats and cyber hygiene tips to prevent, protect, mitigate, respond to, and remediate cyber incidents and intrusions. In addition, the sessions will also include a discussion about the opportunities and threats of increased connectivity and provide effective solutions to manage cybersecurity risk, protect personal information, respond to an attack and/or breach, and comply with IRS requirements and other laws and regulations governing data security.
For more information, click here.
Health Law Group partner Kathleen Healy and Artificial Intelligence Team chair Linn Freedman will serve as panelists for a presentation entitled “AI Governance in Healthcare” at the Massachusetts Bar Association’s 2024 Health Law Conference on September 26. This year’s conference is a full-day virtual event focusing on public health law, cybersecurity, artificial intelligence governance, and how the Healey-Driscoll Administration plans on advancing health equity in Massachusetts. Kate will also serve as the conference’s co-chair.
For more information, click here



