By
Paula ParisiSeptember 19, 2023
California lawmakers have put data brokers on notice. A bill known as the Delete Act would allow consumers to require all such information peddlers to delete their personal information with a single request. The bill defines “data brokers” as any number of businesses that collect and sell people’s personal information, including residential address, marital status and purchases. Both houses last week passed the proposed legislation — Senate Bill 362 — and it now heads to Governor Newsom’s desk. If he signs it, the new law will go into effect in January 2026. Continue reading California Plans to Protect Consumer Privacy with Delete Act
By
Rob ScottSeptember 15, 2023
Ireland’s Data Protection Commission (DPC) announced a TikTok fine of about $368 million today based on how the popular social platform processes data of younger users. DPC announced in 2021 that it was investigating TikTok’s compliance with the European Union’s General Data Protection Regulation (GDPR) privacy and security laws. The investigation identified specific problems with TikTok’s default account settings, the Family Pairing settings, and its age verification process (although the age verification model did not violate GDPR, the probe found that TikTok did not sufficiently protect the privacy of children under 13 who were able to create an account). Continue reading Ireland Fines TikTok $368 Million for Mishandling of User Data
By
Paula ParisiSeptember 12, 2023
U.S. consumers are consolidating their devices, eliminating outdated ones to make room for new ones that better serve their needs, according to the fourth annual Deloitte Connected Consumer survey. The study found that while 48 percent of consumers purchased a minimum of one new connected device this year, the average number of devices per household fell to 21 in 2023 from 25 in 2021, “when many loaded up on technology during the COVID-19 pandemic.” Although many consumers may be attempting to streamline their digital lives, they remain very interested in virtual experiences and tech innovation. Continue reading Deloitte: Consumer Views of Connected Devices Are Changing
By
Paula ParisiAugust 31, 2023
Google has unveiled a spate of security enhancements to products in its Google Workspace collection including Gmail and Drive. Artificial intelligence is helping to steer some of the changes, automating specific tasks. The upgrades take a new approach, combining the idea of zero trust with the concept of data loss prevention (DLP). Under zero trust, all users, devices and components are considered untrustworthy at all times — even those within an organization’s network. These Workspace tools are in development or at various stages of testing, but Google says they will begin going live in general release later this year and into Q1 2024. Continue reading Google Is Using AI to Bring Zero Trust Security to Workspace
By
Paula ParisiAugust 31, 2023
The Federal Communications Commission has issued a formal Notice of Proposed Rulemaking (NPRM) for the U.S. Cyber Trust Mark labeling program for smart devices announced in July with the Biden administration. The voluntary program to provide certification for baseline cybersecurity standards is designed to help consumers make informed purchase decisions regarding Internet of Things (IoT) products. The FCC, which proposes to own the new Cyber Trust trademark and administer it in conjunction with third parties, is now officially soliciting comments from industries and the public on the scope of the proposed program. Continue reading FCC Advances ‘U.S. Cyber Trust Mark’ to Foster IoT Security
By
Paula ParisiAugust 24, 2023
VMware and Nvidia have joined forces on “VMware Private AI Foundation with Nvidia,” a fully-integrated solution designed to bring generative AI training and deployment to enterprise clients running on VMware’s hybrid cloud infrastructure. The full-stack product will provide software, compute power and everything needed to fine-tune large language models using proprietary data. “Together with Nvidia, we’ll empower enterprises to run their generative AI workloads adjacent to their data with confidence while addressing their corporate data privacy, security and control concerns,” said VMware CEO Raghu Raghuram. Continue reading VMware and Nvidia Are Bringing Generative AI to Enterprises
By
Paula ParisiAugust 23, 2023
A draft agreement said to have been presented by the U.S. government to ByteDance that would let TikTok avoid a federal ban seeks “near unfettered access” to company data and “unprecedented control” over platform functions. The nearly 100-page document, reported on this week, seeks control federal officials don’t have over other media outlets — social or otherwise — raising domestic concerns about government overreach. The draft dates to summer 2022. It is not known whether it has been updated or if the secretive negotiations between ByteDance and the Committee on Foreign Investment in the United States (CFIUS) have since continued. Continue reading Plans for TikTok Containment Would Give Feds Broad Power
By
Paula ParisiAugust 15, 2023
Amazon plans to enable palm-scan payments at the company’s 500-plus U.S. Whole Foods stores by year’s end with enrollment in Amazon One. Amazon Fresh grocery stores, select Panera restaurants, some stadiums and concert venues, and even a few Starbucks locations are said to be participating in the rollout. Amazon introduced hand-scanning sensor technology in 2020 in a bid to rival Google and Apple in the digital wallet sector. The e-retail giant now has the scanners installed in about 400 locations, some 150 of which are third-party owned, like the Hudson Group airport stores and Coors Field in Denver. Continue reading Amazon Palm-Scan Payment Plan to Challenge Apple, Google
By
Paula ParisiAugust 11, 2023
Ransomware attacks have surged in the 12 months ending in June 2023, with the United States accounting for 43 percent of the 1,900 attacks reported — 7x greater than that of the second most popular target, the United Kingdom, at 196. The period marked a 75 percent increase in U.S. ransomware attacks, which were perpetrated by 48 different groups including CL0P, a gang believed to have ties to Russia. U.S. companies, governmental organizations and individual consumers were targeted during the period, with healthcare and educational institutions disproportionately impacted, according to a study by cybersecurity firm Malwarebytes. Continue reading U.S. Impacted by Significant Increase in Ransomware Attacks
By
Paula ParisiAugust 1, 2023
The cost of a data breach can run as high as $4.54 million today, up from $3.86 million in 2020, according to an IBM study that says the fastest-growing — and costliest — type of cyberattack is ransomware. That’s why more companies are turning to cyber insurance to hedge their bets. Last year, the global market for such policies was estimated to be in the $13.33 billion range, and projected to reach $84.62 billion by 2030. Because the increased frequency of attacks has resulted in increased payouts, insurance providers now often require proof of adequate security measures. Continue reading Companies Turn to Cyber Insurance as Global Threats Surge
By
Paula ParisiJuly 31, 2023
Hundreds of amendments are queued up for possible addition to the vast annual defense policy bill. Among those that senators are considering include regulations that address artificial intelligence, cybersecurity and proposals to test election systems for vulnerabilities. Adding cyber measures to the National Defense Authorization Act (NDAA) has become a tradition in recent years because it is “must-pass” legislation and renewed annually. Senate Majority Leader Chuck Schumer (D-New York) hopes to have the Senate’s version of the bill prior to the August recess that commences at the end of this week. Continue reading U.S. Senate Aims to Add Cyber Amendments to Defense Bill
By
Paula ParisiJuly 24, 2023
President Biden has secured voluntary commitments from seven leading AI companies who say they will support the executive branch goal of advancing safe, secure and transparent development of artificial intelligence. Executives from Amazon, Anthropic, Google, Inflection, Meta, Microsoft and OpenAI convened at the White House on Friday to support the accord, which some criticized as a half measure, claiming the companies have already embraced independent security testing and a commitment to collaborating with each other and the government. Biden stressed the need to deploy AI altruistically, “to help address society’s greatest challenges.” Continue reading Top Tech Firms Support Government’s Planned AI Safeguards
By
Paula ParisiJuly 21, 2023
Apple is reportedly developing tools it could use to enter the artificial intelligence space, joining rivals such as Microsoft and Google, which have already released popular products. In Cupertino, the company is said to have built a framework for large language models, which power AI-based chatbot offerings similar to Google’s Bard and OpenAI’s ChatGPT. Called Ajax, the platform is the basis for what is referred to inside the company as Apple GPT. Though Apple has built automation into its products for some time, it could now be preparing to make a direct play for the generative AI market. Continue reading Apple Chatbot ‘Ajax’ Could Be Next Major Player in AI Space
By
Paula ParisiJuly 19, 2023
There’s a new kind of cloud on the block, Wing Cloud, which features an open-source code called Winglang that drives cross-platform development across AWS, Azure, Google Cloud and Kubernetes, among others. Wing Cloud has emerged from stealth mode with $20 million in seed funding and offers “a new kind of abstract cloud” that “doesn’t involve data centers, machines or provisioning engines.” The software-based Wing Cloud visual layer is accessible through a general purpose computing model that operationally unifies infrastructure and application. Continue reading Wing Cloud Develops Unified Open-Source Coding Language
By
Paula ParisiJuly 18, 2023
The Biden administration has issued an implementation framework for its National Cybersecurity Strategy, detailing how the federal government plans to regulate digital security issues. The highly anticipated document lists more than 65 initiatives for executing the “five pillars” of the March 2023 U.S. National Cybersecurity Strategy, described as a “bold, affirmative vision for cyberspace.” The implementation takes a two-pronged approach: empowering capable actors who can bear more of the security responsibility, and the need for incentives that facilitate investment in long-term resilience. Continue reading White House Releases Plan for Cybersecurity Implementation