Ireland fines Instagram €405m over handling of children’s data
Ireland’s Data Protection Commission fined Instagram €405m for exposing teenagers’ contact details and making their accounts public by default.
Insights for the EU, the EEA, and the rest of Europe.
Ireland’s Data Protection Commission fined Instagram €405m for exposing teenagers’ contact details and making their accounts public by default.
Royal Decree 311/2022 updates Spain’s National Security Framework (ENS) for public sector systems and suppliers.
ANSSI publishes SecNumCloud 3.2, introducing requirements to protect trusted cloud services from non-EU extraterritorial laws.
An attack on Viasat’s KA-SAT network, launched as Russia invaded Ukraine, knocked tens of thousands of satellite modems offline across Europe.
Germany’s Telecommunications Telemedia Data Protection Act takes effect, tightening consent rules for cookies and similar technologies.
Amazon discloses a €746 million fine from Luxembourg’s data protection regulator over targeted advertising, a record GDPR penalty.
REvil exploits Kaseya’s VSA remote management software, hitting managed service providers and up to 1,500 downstream businesses.
The European Commission has recognised the UK as providing adequate data protection, allowing personal data to keep flowing from the EU.
Police reveal Operation Trojan Shield, in which criminals used the FBI-controlled Anom phone app, leading to over 800 arrests.
The European Commission has adopted modernised Standard Contractual Clauses for international transfers of personal data under the GDPR.
Ireland’s Health Service Executive shuts down its IT systems after a Conti ransomware attack, disrupting hospitals across the country.
Law enforcement from eight countries, coordinated by Europol and Eurojust, disrupts Emotet, one of the most widespread malware networks.