-

Florida Passes New Privacy Law: What It Means for Businesses
On June 6, 2023, Gov. Ron DeSantis signed S.B. 262 into law, adding Florida to the list of states passing new privacy laws this year. While much of S.B. 262 will only impact companies with annual revenues of more than $1 billion, the law also contains provisions of broader applicability. This article summarizes S.B. 262’s…
-

EU AI Act Clears Another Hurdle
The European Parliament has approved a revised version of the EU Artificial Intelligence Act (AIA), which appears to be on a path to adoption by the EU later this year. The AIA is the most comprehensive legislation in the world to address the risks associated with the use of artificial intelligence. A final version of…
-

Diving into the Washington My Health My Data Act – Part Three: Broad Scope of Consumer Health Data
This is Part Three in a series of legal updates on the Washington My Health My Data Act (“WMHMDA”) where Quarles continues its deep dive into the various factors and intricacies of WMHMDA that are creating tidal waves in the privacy space – and not just for the health and life sciences industry….By: Quarles &…
-

SEC Stirs Its Pot of Cybersecurity Preparedness and Response Proposals
The SEC remains laser-focused on cybersecurity, with the agency recently reopening the comment period on a sweeping rule for investment advisers and investment companies. In addition, the SEC issued proposed enhancements to Regulation S-P, the agency’s existing regulation designed to protect the privacy of consumer financial information….By: Carlton Fields
-

The SEC Targets Cryptocurrency Exchange Coinbase With Suit in Southern District of New York
On June 6, 2023, the U.S. Securities and Exchange Commission (“SEC”) officially filed suit against Coinbase, Inc. (“Coinbase”) alleging the company operated as an unregistered securities exchange, broker, and clearing agency. The SEC is also suing Coinbase for failing to register its staking-as-a-service program. This suit follows a similar one filed against Binance only a…
-

Essen Medical Associates, P.C. Files Notice of Data Breach Affecting Patient Data
On May 16, 2023, Essen Medical Associates, P.C. filed a notice of data breach with the U.S. Department of Health and Human Services Office for Civil Rights (“HHS-OCR”) after learning that an unauthorized party was able to access confidential patient information stored on the company’s computer network. Based on the company’s official filing, the incident…
-

Maimonides Medical Center Posts Notice of Data Breach Following Recent Cyberattack
On June 13, 2023, Maimonides Medical Center (“MMC”) posted a notice on its website informing patients of a recent data breach after learning that hackers were able to illegally obtain access to confidential patient information. Based on the company’s official filing, the incident resulted in an unauthorized party gaining access to consumers’ names, addresses, Social…
-

Henry Ford Health System Patient Data Exposed in mscripts, LLC Data Breach
On June 6, 2023, a notice of data breach involving Henry Ford Health System (“HFHS”) patients was filed with the U.S. Department of Health and Human Services Office for Civil Rights (“HHS-OCR”). The incident involved unauthorized access to cloud storage hosted by mscripts, a provider of mobile pharmacy solutions, which is a vendor used by…
-

Leidos Experiences Data Breach Resulting from Vulnerability in Software Provided By Diligent Corporation
On June 9, 2023, Leidos filed a notice of data breach with the Attorney General of Montana after learning that confidential consumer data in the company’s possession was subject to unauthorized access. Evidently, the breach involved a vulnerability in software created by Diligent Corporation. Based on the company’s official filing, the incident resulted in an…
-

Great Valley Cardiology Files Notice of Fortra Data Breach Affecting Confidential Information Belonging to Over 181k Patients
On June 12, 2023, Commonwealth Health Physician Network – Cardiology (“Great Valley Cardiology”) filed a notice of data breach with the U.S. Department of Health and Human Services Office for Civil Rights (“HHS-OCR”) after learning that an unauthorized party was able to access confidential patient information in its possession. Based on the company’s official filing,…