IT Security & Privacy

New Developments in the EU’s National Cybersecurity Strategies

Cybersecurity has never been more crucial than it is today. To keep pace with the increasing number of threats, the European Union is taking a bold step forward with the unveiling of the updated National Cybersecurity Strategies (NCSS) Interactive Map, a game-changing platform from the European Union Agency for Cybersecurity (ENISA). Think of it as your go-to hub for all things EU cybersecurity, offering not only valuable insights but a fresh perspective on how nations are building their digital defenses.

South Korea is Set to Launch Global Cross-Border Privacy Rules

The Personal Information Protection Commission (PIPC), in collaboration with the Korea Internet & Security Agency (KISA), has announced the official launch of the Global Cross-Border Privacy Rules (Global CBPR) Certification System. Starting June 2, 2025, this new system will help businesses easily navigate the complex world of international data flows, allowing them to expand into global markets while prioritizing privacy.

Vodafone Fined €45 Million for Data Protection Failures Due to Security Lapses & Fraud Cases

‍Vodafone is facing a €45 million penalty after the Federal Commissioner for Data Protection and Freedom of Information (BfDI), led by Prof. Dr. Louisa Specht-Riemenschneider, uncovered several significant data protection shortcomings. These issues, ranging from security flaws in its online systems to fraud committed by partner agencies, have put the telecom giant under scrutiny. Here's a deeper dive into the details, the actions taken, and what this means for the company going forward.

Cartier Discloses Data Breach Amid Ongoing Fashion Brand Cyberattacks

Luxury fashion brand Cartier has confirmed a data breach after hackers gained unauthorized access to its systems, exposing a limited amount of customer information. The company issued a notification to affected customers, revealing that personal data, including names, email addresses, and countries of residence, had been compromised. However, Cartier assured that no more sensitive information, such as passwords or payment details, was exposed in the attack.

North Face Warns Customers About Data Breach Linked to Credential Stuffing Attack

North Face has recently informed its customers of a breach that exposed personal information after a credential stuffing attack targeted their website, thenorthface.com. This marks the fourth time the company has faced such an attack, and while no payment card details were affected, this incident serves as another reminder of the risks we face in today’s interconnected world.

Danish Data Protection Agency Strengthens IT Security Measures to Combat Hacking Threats

The Danish Data Protection Agency (DPA) has introduced two new IT security measures to its catalogue, aiming to prevent security breaches linked to hacking. The changes are in response to the growing number of incidents caused by malicious activities, particularly involving IoT (Internet of Things) devices. Walther Starup-Jensen, an IT security consultant at the DPA, emphasized that while these measures may not be revolutionary, they are crucial in addressing the vulnerabilities that lead to many avoidable breaches.

Solocal Marketing Services Hit with Fine for Data Consent Failures

Recently, the French Data Protection Authority (CNIL) handed down a €900,000 fine to Solocal Marketing Services, accusing the company of mishandling personal data for commercial prospecting campaigns. The fine stems from Solocal's failure to secure proper consent from individuals and its unauthorized sharing of this data with third parties.