PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

6434 results · page 172 of 269

Breach
WIRED — AI · · International

Private Claude Chats Exposed in Google and Bing Search Results

Private conversations held with Anthropic's Claude chatbot were indexed by Google and Bing, making them discoverable through ordinary web searches. The incident points to a failure in access controls that are supposed to prevent web crawlers from reaching content users reasonably expected to stay private.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
News
D Diario AS · · International

The Pokémon Company will use facial recognition to combat Pokémon TCG scalpers in Japan

The Pokémon Company plans to deploy facial recognition technology at trading card events or purchase points in Japan to identify and deter scalpers who buy up limited inventory to resell at inflated prices. The move marks a notable use of biometric surveillance to police consumer behavior in a retail context.

Who should care: Privacy officers · Cybersecurity · General readers · Policy

#surveillance#privacy Read original →
Enforcement
C Compliance Week · · International

India's data privacy rules entering enforcement phases, raising compliance stakes for U.S. financial firms

India's data protection framework is moving from legislation into active enforcement, creating new compliance obligations for U.S. financial firms that handle Indian customer data. Companies operating across both markets now face real regulatory exposure, not just a future deadline to prepare for.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#enforcement#regulation#privacy Read original →
Breach
DataBreaches.net · · International

Hackers Breached an Airline as Known Vulnerabilities Went Unpatched. Now Another Gang Claims It Hacked Them, Too. (Corrected)

Three times may be a charm for some things, but not for data security incidents. Frontier Airlines allegedly has had a third data security incident this year. First, it was BobDaHacker publishing a blog post on June 16 titled “Your Boarding Pass Is a Skeleton Key.” Frontier Airlines Doesn’t Care. According to the post, Frontier... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Hackers Breached an Airline as Known Vulnerabilities Went Unpatched. Now Another Gang Claims It Hacked Them, Too.

Three times may be a charm for some things, but not for data security incidents. Frontier Airlines allegedly has had a third data security incident this year. First, it was BobDaHacker publishing a blog post on June 16 titled “Your Boarding Pass Is a Skeleton Key.” Frontier Airlines Doesn’t Care. According to the post, Frontier... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
News
T The Week · · International

ICE is using a major data broker to mine for ‘fraud’

U.S. Immigration and Customs Enforcement has contracted with a major data broker to mine personal data in search of fraud. The arrangement gives a federal enforcement agency access to large-scale commercial data collection to support its investigative work.

Who should care: General readers · Privacy officers · Policy

AI Governance
Nextgov/FCW · · US Federal

Over 30 companies form open-source AI alliance

More than 30 companies, led by NVIDIA, have formed the Open Secure AI Alliance to advocate for continued access to open-source AI models and coordinate industry support around them.

Who should care: AI governance · Lawyers · Administrators · General readers · Policy

#ai-governance#ai Read original →
News
The Record · · International

UK court rejects Bahrain immunity claim in spyware case

A UK court has rejected a claim of state immunity filed by Bahrain in a civil spyware case, allowing the lawsuit to proceed. The case centers on allegations that Bahraini officials used spyware to access private computers, intercept communications, and activate microphones and cameras to surveil the plaintiffs.

Who should care: Privacy officers · Cybersecurity

#surveillance Read original →
News
T The Columbus Dispatch · · International

Can I opt out of TSA's new facial recognition software? What TSA says

The TSA is expanding its use of facial recognition technology at U.S. airports, prompting questions about whether travelers can refuse to participate. The agency has addressed the opt-out question directly, though the program's growing rollout has drawn scrutiny from travelers and privacy advocates.

Who should care: Privacy officers · Cybersecurity · General readers · Policy

#surveillance#privacy Read original →
News
The Guardian — Tech · · International

New York school district halts plan to use humanoid robot amid backlash

Salamanca City Central School District in New York has paused a pilot program that would have placed a humanoid robot from Toronto-based Realbotix in its high school. The decision followed pushback from educators and community members, with the district citing the need to finalize student data privacy agreements with the New York State Education Department.

Who should care: General readers · AI governance · Policy · Privacy officers

#ai#privacy Read original →
News
G GamesHub · · International

The Pokémon Company announces it will reopen mega store, adds facial recognition to all national stores

The Pokémon Company has announced plans to reopen its mega store and will deploy facial recognition technology across all of its national retail locations. The move marks a significant expansion of biometric surveillance into what is primarily a consumer entertainment and merchandise environment.

Who should care: Privacy officers · Cybersecurity · General readers · Policy

#surveillance#privacy Read original →
News
Microsoft Threat Intelligence · · International

Rethinking security for the age of AI

The physics of cybersecurity are changing. Introducing security's new cyber stack: Project Perception. The post Rethinking security for the age of AI appeared first on Microsoft Security Blog.

Who should care: General readers · AI governance · Policy

News
Microsoft Threat Intelligence · · International

Enhancing AI security through global AI red teaming

Microsoft's External Red Team Alliance (EXTRA) is a global AI security initiative designed to advance AI safety research and red teaming. By partnering with universities, researchers, and regional experts, EXTRA helps identify emerging AI risks, improve security testing, and strengthen the resilience of frontier AI systems. The post Enhancing AI security through global AI red teaming appeared first on Microsoft Security Blog.

Who should care: General readers · AI governance · Policy

News
P Polygon.com · · International

The Pokémon Company is bringing facial recognition to stores to fight scalpers

The Pokémon Company is deploying facial recognition technology in retail stores, framing the move as a measure against scalpers who buy up limited-edition products in bulk. The system would scan shoppers' faces to identify and restrict repeat buyers.

Who should care: Privacy officers · Cybersecurity · General readers · Policy

#surveillance#privacy Read original →
News
P PC Gamer · · International

The Pokémon Company is turning to facial recognition scans to help combat scalpers

The Pokémon Company is implementing facial recognition scanning as a measure to address scalping, likely at events or purchase points where high-demand products are sold. The move signals a willingness to deploy biometric identification to enforce purchasing limits.

Who should care: Privacy officers · Cybersecurity · General readers · Policy

#surveillance#privacy Read original →
Breach
BleepingComputer · · International

Ernst & Young data breach claimed by ShinyHunters extortion gang

The ShinyHunters extortion group has claimed responsibility for a data breach at Ernst & Young, saying it gained access to company systems through a supply-chain attack that yielded valid credentials. EY has disclosed the breach, though the full scope of compromised data has not been confirmed.

Who should care: Cybersecurity · Privacy officers · Administrators

AI Governance
H healthcareittoday.com · · International

The Hidden Risk of Rushed Technology: Patrick Lo on Establishing AI Governance

Patrick Lo is calling attention to the risks that come when AI is deployed in healthcare before governance structures are in place to manage it. His argument centers on the idea that speed of adoption and accountability frameworks are not keeping pace with each other.

Who should care: AI governance · Lawyers · Administrators · General readers · Policy

#ai-governance#ai Read original →
News
H Hinshaw & Culbertson LLP · · International

Business Compliance Guidance for the New Vermont Data Privacy and Online Surveillance Act (VDPOSA)

Vermont has enacted the Data Privacy and Online Surveillance Act (VDPOSA), and law firm Hinshaw & Culbertson has published compliance guidance aimed at helping businesses understand their obligations under the new law. The act extends privacy protections to Vermont residents and places new requirements on companies that collect or process their data.

Who should care: Lawyers · Compliance · Privacy officers · Cybersecurity · General readers · Policy

#regulation#surveillance#privacy Read original →
News
R Reuters · · International

Modi faces challenge from activists over surveillance at India youth protest

Activists are challenging the Indian government over surveillance reportedly used against participants in a youth protest, pushing back against what they describe as state monitoring of demonstrators. The dispute puts the Modi administration under pressure to account for how it tracks political activity.

Who should care: Privacy officers · Cybersecurity · General readers · Policy

#surveillance#privacy Read original →
Healthcare
HIPAA Journal · · US Federal

GAO Report Identifies Potentially Duplicative Cyber Reporting Requirements for Critical Infrastructure

A Government Accountability Office report found that federal cyber incident reporting requirements for critical infrastructure operators may overlap across agencies, creating redundant obligations. The findings come as CISA prepares to finalize its rule implementing mandatory cyber incident reporting under the CIRCIA legislation.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers

#healthcare#regulation Read original →
News
BleepingComputer · · International

Shadow AI agents are multiplying. Here's how to find and secure them.

Shadow AI agents are rapidly spreading across enterprise platforms, often without IT or security visibility. Nudge Security explains how organizations can discover, assess, and govern AI agents before unmanaged permissions and autonomous actions create security risks. [...]

Who should care: General readers · AI governance · Policy

← Prev Page 172 of 269 Next →