IT Security & Privacy

GoDaddy Reaches Settlement with FTC Over Data Security Failures

GoDaddy has finalized a settlement with the Federal Trade Commission (FTC) after the company faced allegations of failing to properly secure its customers’ websites and sensitive data. The FTC's investigation, which began in January 2025, highlighted that despite GoDaddy's claims of offering “award-winning security,” the company neglected basic data protection practices that left its users vulnerable to cyber threats.

South Korea's PIPC Cracks Down on Temu for Unlawful Cross-Border Data Transfer & Other Violations

The Personal Information Protection Commission (PIPC) has delivered a blow to Temu, the popular online marketplace platform, by sanctioning the company for serious violations related to cross-border data transfers and other mishandling of personal data. This action, taken after a thorough investigation, comes with financial penalties and several corrective orders aimed at restoring compliance with South Korea’s Personal Information Protection Act (PIPA).

Coinbase Hit with Cyber Extortion, Lawsuits, & Mounting Costs After Insider-Aided Data Breach

Coinbase is facing a wave of lawsuits and potential losses approaching half a billion dollars after disclosing a significant cybersecurity incident tied to insider misconduct. According to a Form 8-K filed with the U.S. Securities and Exchange Commission (SEC), the crypto exchange revealed that several outsourced customer support agents, based outside the U.S., had been bribed by an unknown threat actor to leak internal customer information.

Enhancing Cybersecurity with the European Vulnerability Database

The European Union Agency for Cybersecurity (ENISA) has launched the European Vulnerability Database (EUVD), a new initiative aimed at enhancing cybersecurity resilience across the EU. This database, operational as of now, provides consolidated, reliable information about vulnerabilities in Information and Communication Technology (ICT) products and services, as mandated by the NIS2 Directive. The goal is to improve transparency and allow organizations to better address and manage cybersecurity risks.

Record Year for Data Breaches in Australia as 2024 Sees Significant Surge

The year 2024 will go down in history as a record-breaking one for data breaches in Australia, with over 1,100 incidents reported to the Office of the Australian Information Commissioner (OAIC), the highest number since the country introduced mandatory data breach notifications back in 2018. This surge signals a growing concern for Australians' privacy, with a 25% increase from the previous year’s numbers.

CNIL's New Recommendations Aim to Protect Your Privacy in Mobile Apps

Our smartphones are more than just devices, they’re an extension of ourselves. We rely on them to navigate daily life, from communication and entertainment to shopping and tracking our health. In 2023, the average French citizen downloaded 30 mobile apps and spent over 3 hours a day using their phones. But while we’re all living more digitally connected lives, there’s a downside i.e., privacy risks. With apps constantly collecting our data, how can we make sure our personal information stays safe?

ENISA's NIS360 2024 Report Offers Insights into Cybersecurity Maturity Across Critical Sectors

Cybersecurity is a constant challenge, and as digital infrastructures evolve, so do the risks. The release of ENISA’s NIS360 2024 report provides a timely and important snapshot of how well Europe’s critical sectors are handling their cybersecurity responsibilities under the NIS2 Directive. This report doesn’t just throw out data, it digs deep into where sectors stand, where they’re excelling, and, more importantly, where they need to improve.