IT Security & Privacy

State Regulators Hit Bayview Companies with $20 Million Fine for Cybersecurity Failures

In a sweeping enforcement action led by a group of state financial regulatory agencies, Bayview Asset Management LLC and three affiliates—Lakeview Loan Servicing, Community Loan Servicing, and Pingora Holdings—will pay a $20 million penalty for deficient cybersecurity practices and non-compliance with state supervisory demands.

Denmark’s DPA Outlines Privacy Priorities for 2025

In an age where your digital footprint stretches further than your shadow, Denmark’s Data Protection Authority (DPA) is stepping up with a bold plan for 2025. Think of it as a privacy playbook—not just for tech companies or lawmakers, but for everyone navigating the delicate balance between innovation and individual rights.

New Year, New Priorities: ICO Urges the UK to Tighten Up Data Privacy in 2025

Let’s face it—data privacy isn’t the most glamorous New Year’s resolution. It’s not going to help you fit into that old pair of jeans or finally get through “War and Peace.” But as the UK’s Information Commissioner’s Office (ICO) reminds us, tightening up your data security is the kind of life upgrade that could save you from stress, financial loss, and a few sleepless nights.

CISOs at a Crossroads: When Cybersecurity Leadership Means Balancing on a Knife’s Edge

For many Chief Information Security Officers (CISOs), the role was once about fortifying systems, dodging ransomware, and endlessly justifying cybersecurity budgets. But a new survey from BlackFog shows that the job now comes with a far weightier burden: the risk of personal liability.

Inside the Treasury Hack: Unpacking the Breach & What It Means for Risk & Cybersecurity Leaders

Imagine this: a critical government agency, armed with some of the most robust cyber defenses money can buy, finds itself outflanked—not through the front gates, but by a side door left ajar by a trusted partner. This isn’t the plot of a Hollywood thriller; it’s the reality facing the U.S. Treasury Department after Chinese state-sponsored hackers breached its defenses by exploiting a vulnerability in third-party software.

Volkswagen Data Breach Exposes Personal Details of 800,000 Drivers

a security oversight at Volkswagen’s subsidiary, Cariad, has exposed highly sensitive data on 800,000 Volkswagen owners across Europe. The breach isn’t just a numbers game; it’s a chilling look at how deeply our personal lives are intertwined with technology—and how vulnerable we’ve become to breaches of that intimacy.

FTC Issues Order Requiring Marriott & Starwood to Strengthen Data Security

The Federal Trade Commission (FTC) announced today that it has issued an order requiring Marriott International, Inc. and Starwood Hotels & Resorts Worldwide LLC, a subsidiary of Marriott, to implement more robust data security programs.