As cited
Copy frozen at (site build).
regulatory
23andMe reaches $18 million settlement with states for massive breach
Forty-two state attorneys general negotiated an $18 million settlement with 23andMe following a data breach caused by inadequate cybersecurity measures. The settlement addresses regulatory enforcement action against the genetic testing company for its security practices.
Why it matters: Companies handling sensitive personal data face significant financial and legal exposure for security failures; practitioners should review their access controls and credential management in light of regulatory expectations now codified through this settlement.
- Source published
- First seen by Cybersecurity Tracker