The Federal Trade Commission (FTC) “is seeking to compile data concerning policies, procedures, and practices for providing security updates to mobile devices offered by unnamed persons, partnerships, corporations, or others in the United States.”  The May 6, 2016 FTC Order requested that “Apple, Inc.; Blackberry Corp.; Google, Inc.; HTC America

Continue Reading Apple & Google are among 8 mobile device companies the FTC ordered to disclose security update practices

Is there any doubt that training employees about phishing would help reduce the malware damage? Of course there’s also no surprise in a recent Verizon report which indicated that 89% of phishing attacks were send by organized crime and only 9% state-affiliated actors. Verizon ‘s  2016 Data Breach Investigations Report

Continue Reading Employee Training about phishing is critical since only 3% of phishing targets alert management!


The Electronic Communications Privacy Act (ECPA) of 1986 was created to deal with telephone records not email, so the new proposed Email Privacy Act clarifies what email is, but did not change the ECPA much since it “does not require authorities to notify users that a warrant has been obtained

Continue Reading Email Privacy Act passes the House, but the proposed Act does not require notice of warrants


20+ years ago, before the Internet and Social Media, the conventional wisdom was that only 10% of businesses would report computer crime crimes. However since cyberintrusions against Sony, Target, and other high visibility companies are daily headline news, one would think the increase was much more than only 20%. But

Continue Reading FBI says only 20% of private sector reports cyberintrusions!


In March 2015 I blogged about a Yelp lawsuit against alleged astroturfers, and in March 2016 the parties settled the case, but since the defendants continue to operate Revleap  it would seem that Yelp lost its case.  My blog “Do You Still Rely on Yelp Reviews After Hearing that

Continue Reading Apparently Yelp lost in its attempt to stop astroturfers!


My Guest Blogger John Ansbach is General Counsel of General Datatech, L.P. (“GDT”), and John is a seasoned attorney with a broad range of experience developed over more than 18 years of practicing law including as a corporate generalist, his background includes experience in contracts; cyberlaw; intellectual property; real estate

Continue Reading GUEST BLOG: Small Texas Law Firm Used in International Cyberattack


My Guest Blogger Nick Akerman learned about Cybercrime as a federal prosecutor where he prosecuted a wide array of white collar criminal matters, including bank frauds, bankruptcy frauds, stock frauds, complex financial frauds, environmental crimes and tax crimes. Nick was also an Assistant Special Watergate Prosecutor with the Watergate Special

Continue Reading GUEST BLOG: Cybersecurity Compliance Just Got Tougher


A FBI Privacy Industry Notification identified in “a recent cyber criminal forum post an advertisement to hire a technically proficient hacker for the purposes of gaining sustained access to the networks of multiple international law firms.” Bloomberg BNA reported about the March 4, 2016 FBI Notification entitled “FBI Alert Warns

Continue Reading No surprise that the FBI is warning law firms that they are cybertargets for insider trading


The Electronic Communications Privacy Act (ECPA) 18 U.S.C. § 2705(b) violates the First and Fourth Amendments since the Constitution should “afford people and businesses the right to know if the government searches or seizes their property.” The April 14, 2016 Complaint for Declaratory Judgment filed in Seattle federal court against

Continue Reading Are US Privacy Laws Unconstitutional? We’ll find out in Microsoft’s new suit against the US Government!


The White House and its top security advisors are regularly advised about cyberintrusions and as a result the “time has come for CEOs and Boards to take personal responsibility for improving their companies’ cyber security” according to Former White House Senior Director for Cybersecurity Sameer Bhalotra.  In the recent report

Continue Reading Cybersecurity Advice to CEOs and Boards “Take more responsibility”!