GRC Report Staff

New York's Financial Regulatory Landscape Evolves Amid Industry Challenges

As the financial services sector grapples with rapid technological change and emerging risks, New York's top financial regulator is stepping up its efforts to protect consumers and maintain market stability.

EU Commission Alleges X in Breach of Digital Services Act

The European Commission has recently issued preliminary findings accusing X, formerly known as Twitter, of violating the Digital Services Act (DSA) in three key areas. The allegations, announced on Friday, focus on issues related to user interface design, advertising transparency, and data access for researchers.

OpenAI Whistleblowers Ask SEC to Investigate Company's Non-Disclosure Agreements

A group of OpenAI whistleblowers have filed a complaint with the Securities and Exchange Commission (SEC), requesting an investigation into whether the ChatGPT maker's confidentiality agreements unlawfully prevent employees from speaking out about potential risks associated with its AI technologies.

Rite Aid Reports Data Breach Affecting Customers from 2017-2018

Rite Aid Corporation announced today that it has fallen victim to a cybersecurity incident, potentially exposing personal information of customers who made purchases between June 6, 2017, and July 30, 2018. The pharmacy chain, currently trading over-the-counter following its Chapter 11 bankruptcy filing last year, is in the process of notifying affected individuals.

AT&T Reports Illegal Download of Customer Data in Major Security Breach

In a significant cybersecurity incident, AT&T has recently disclosed that customer data was illegally downloaded from a third-party cloud platform workspace in April. The telecommunications giant is now working closely with law enforcement to apprehend those responsible for the breach, with at least one person already in custody.

Department of Labor & Dollar General Reach Safety Agreement to Enhance Workplace Conditions Nationwide

The U.S. Department of Labor has announced a comprehensive corporate-wide settlement with Dollar General and its retail subsidiaries. This agreement mandates significant safety improvements across all Dollar General stores, aiming to create safer environments for thousands of workers nationwide.

Lithuanian Data Protection Authority Fines Vinted €2.4 Million for GDPR Violations

On July 2, 2024, the State Data Protection Inspectorate (SDPI) of Lithuania imposed a substantial fine of €2,385,276 on Vinted, UAB, the company behind the popular online second-hand clothing trading platform "Vinted". The penalty comes after an investigation into complaints forwarded by French and Polish supervisory authorities in 2021 and 2022.