IT Security & Privacy

EDPB 2024 Annual Report Highlights Efforts in Strengthening Data Protection Across Europe

The European Data Protection Board (EDPB) has released its 2024 Annual Report, showcasing the organization’s significant contributions to safeguarding personal data in an evolving digital landscape. The report highlights key milestones, including the adoption of a new strategy, an increase in consistency opinions under the General Data Protection Regulation (GDPR), and continued guidance on emerging issues like AI, facial recognition, and cross-border data transfers.

Revisiting the X Data Breach: A Conversation with ThinkingOne, the Whistleblower Behind the 200 Million User Leak

In the vast and sprawling digital landscape, where our lives are lived in bits and bytes, we often forget how much of our personal data is at risk, until something shatters that illusion of safety. In the early months of 2025, that illusion was pierced when a massive data breach at X (formerly Twitter) exposed over 200 million user records. Names, email addresses, screennames, user IDs, and profile images, fragments of millions of lives, were laid bare for anyone to see.

4chan Hacked & Sensitive Data Leaked in Major Breach

4chan, the notorious image board known for its controversial and often extreme content, was hacked, leading to significant disruptions across the platform. At the time of writing, users reported that the site was down intermittently, with the website failing to load for hours. Social media flooded with comments from users, many expressing their frustration as they struggled to access the site.

CISA Issues Guidance on Potential Risks from Legacy Oracle Cloud Compromise

The Cybersecurity and Infrastructure Security Agency (CISA) has recently issued a warning to organizations regarding a potential unauthorized access incident involving a legacy Oracle cloud environment. While the full scope of the breach remains somewhat unclear at this time, CISA has expressed concern about the exposure of sensitive credential materials, such as usernames, passwords, authentication tokens, and encryption keys. If these credentials are compromised, the risks to organizations could be significant, especially if they are reused across multiple systems or embedded in code and automation tools.

PIPC Takes Action Against CLASSU & KT alpha for Data Breaches, Urges Stronger Privacy Safeguards

The Personal Information Protection Commission (PIPC) has stepped up its enforcement efforts, issuing penalties to two companies, CLASSU Inc. and KT alpha—following serious data protection failures. This action demonstrates a significant move in South Korea's ongoing battle to enforce privacy laws and push companies toward better safeguarding their users' data.

Cybersecurity & the NIS2 Directive: The EU’s Evolving Cybersecurity Landscape

Picture this, it’s 2024, and the EU has just dropped a new bombshell in the world of cybersecurity. It’s called the NIS2 Directive, and while its name might not scream "party," it’s definitely something organizations need to pay attention to. For all the tech nerds and cybersecurity folks out there, this is more than just a new set of rules—it's a whole new way of doing business when it comes to securing networks, reporting incidents, and managing risk. But don’t worry, this article isn’t going to sound like it was written by a robot (unless, of course, that robot had an excellent sense of humor and personality). We’re diving into what NIS2 means, how it impacts AI, and what exactly you should be doing to stay ahead of the game. And spoilers, AI is going to be your best friend in this one.

EDPB Tackles Blockchain Privacy Challenges & Prepares to Weigh In on AI Act

The European Data Protection Board (EDPB) is stepping into the blockchain arena with new guidance aimed at helping organizations navigate the thorny intersection of distributed ledger technology and EU privacy law. In its April plenary, the Board officially adopted guidelines on the processing of personal data via blockchain, and signaled it’s ready to collaborate with the newly established EU AI Office on upcoming guidance around the AI Act.