• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Alston & Bird Privacy, Cyber & Data Strategy Blog

  • Home
  • Services
  • Events
  • Contacts

Regulatory Enforcement

FTC Proposes Enforcement Policy Statement on Personalized Pricing

August 27, 2026 By Alex Brown, Kathleen Benway, Graham Gardner and Roby Jernigan

On August 19, 2026, the Federal Trade Commission (FTC) announced that it is seeking public comment on a proposed enforcement policy statement regarding personalized pricing. The proposed statement makes clear that the FTC intends to scrutinize personalized pricing practices under Section 5 of the FTC Act and marks the latest development in the FTC’s ongoing […]

Filed Under: Consumer Protection/FTC Tagged With: Federal Trade Commission (FTC), Regulatory Enforcement

FTC Targets EdTech Data Practices in Final Order Following Major Student Data Breach

June 18, 2026 By Maki DePalo, Jennifer Everett and Yin Tydir

On June 5, 2026, the Federal Trade Commission (“FTC”) gave final approval to a modified consent order against Illuminate Education, Inc. (“EdTech Provider”), a K-12 software vendor, settling allegations that the EdTech Provider did not adequately protect the personal data of more than 10 million students. The action — which follows a public comment period […]

Filed Under: Consumer Protection/FTC, Privacy & Cybersecurity Litigation Tagged With: Children's Online Privacy Protection Act (COPPA), Data Breach Notification, Data Protection, Federal Trade Commission (FTC), Regulatory Enforcement

NYDFS Issues Frontier AI Advisory and Guidance for Heightened Cyber Threat Environment

May 26, 2026 By Kim Peretti, Ashley Miller, Lance Taubin and Taylor Veracka

On May 21, 2026, the New York Department of Financial Services (“NYDFS”) issued two Industry Letters to the organizations it regulates (“Regulated Entities”): “Heightened Cybersecurity Risks Associated with Frontier AI Models” (the “Advisory”) and “Guidance on Measures Regulated Entities Should Consider in a Heightened Cybersecurity Threat Environment” (the “Guidance”) (collectively, the “Letters”). The Letters discuss […]

Filed Under: AI Cybersecurity & Privacy, Artificial Intelligence (AI), Privacy & Cyber Regulatory Enforcement Tagged With: Artificial Intelligence, Cybersecurity, Data Protection, Privacy, Regulatory Enforcement

Key AI, Cybersecurity, and Privacy Takeaways from the NAIC 2026 Spring Meeting

April 1, 2026 By Dorian Simmons

From March 22–25, the National Association of Insurance Commissioners (“NAIC”) held its 2026 Spring National Meeting in San Diego, California. During the meeting, the Innovation, Cybersecurity, and Technology Committee, along with its working groups on Third-Party Data and Models, Big Data and Artificial Intelligence, and Cybersecurity, addressed key developments regarding oversight of third-party data and […]

Filed Under: AI Cybersecurity & Privacy, Artificial Intelligence (AI), Privacy & Cyber Regulatory Enforcement Tagged With: Artificial Intelligence, Cybersecurity, Data Breach Notification, Insurance, NAIC, National Association of Insurance Commissioners, Regulatory Enforcement

CalPrivacy Goes to the Board with Digital Advertising-Focused Enforcement

March 9, 2026 By Cynthia Cole, Dorian Simmons and Anna von Spakovsky

On February 27, 2026, the California Privacy Protection Agency (“CalPrivacy”) issued an order (the “Order”) requiring a sports-focused media and technology company (the “Company”) to pay a $1.10 million administrative fine for violations of the California Consumer Privacy Act (“CCPA”). The action continues California regulators’ scrutiny of how companies deploy cookies, software development kits and […]

Filed Under: Adtech & Digital Tracking, Board Governance & Cyber Risk Management, California Privacy & the CCPA, Privacy & Cyber Regulatory Enforcement, Privacy & Cybersecurity Litigation Tagged With: Behavioral Tracking, California Consumer Privacy Act (CCPA), California Privacy Protection Agency (CPPA), California Privacy Rights Act (CPRA), Privacy, Regulatory Enforcement, US State Law

  • Page 1
  • Page 2
  • Page 3
  • Interim pages omitted …
  • Page 18
  • Go to Next Page »

Primary Sidebar

This blog is a service of Alston & Bird’s Privacy, Cyber & Data Strategy team and focuses on key data privacy and data security issues.


Receive email notifications when new posts are added.

Receive email notifications when new posts are added.


RANSOMWARE FUSION CENTER
Click here to request access

THE DIGITAL DOWNLOAD
Click here to see the editions

PRIVACY & CYBER EVENTS
Click here to see upcoming and past events

PRIVACY & CYBER MAILINGS
Click here to sign up


Secondary Sidebar

Categories

Recent Posts

  • FTC Proposes Enforcement Policy Statement on Personalized Pricing
  • Trump Administration Unveils New Program for Targeting Cyber Criminals
  • Connecticut Court Issues First Prompt Injection Sanctions
  • IBM’s 2026 Cost of a Data Breach Report Signals a New Era of AI-Driven Cyber Risk
  • European Commission Publishes New Guidelines and Code of Practice on GenAI Transparency
Copyright © 2026 · Alston & Bird · All Rights Reserved. Privacy.