Secure GenAI
Secure GenAI Podcast
US Treasury hack, 2024 Top Settlements, Apple $95M settlement, 15yrs of HIPPA, US taskforce report.
0:00
-9:37

US Treasury hack, 2024 Top Settlements, Apple $95M settlement, 15yrs of HIPPA, US taskforce report.

GenAI Safety & Security | Dec 30 - Jan 5, 2024

Notice: FY2024 is coming….

Highlights

  • US Treasury hack: workstations breached.

  • 2024 Top settlements: Meta, LVHN, Marriott and more.

  • Apple Pay fine: $95M settlement for Siri recordings.

  • Healthcare breach stat: 2009-2024.

  • US Taskforce AI Report: principle & philosophies.

    Secure GenAI is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.

Dive Deep

1. Treasury Dept.: ‘Major’ Breach The New York Times, BeyondTrust

  • China-linked espionage, not infrastructure attack.

  • Accessed unclassified documents in workstations.

  • Detected by BeyondTrust on Dec 2.

  • Treasury notified on Dec 8.

  • 9.8 CVS on Dec 16, 6.6 CVS on Dec 18.

    Mitigation: review third-party access/ security key.

    Secure GenAI is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.

2.2024's Top Data Settlements National Law Review

  • Meta settled for $1.4 billion.

  • LVHN settled for $65 million.

  • Marriott settled $52 million.

  • 23andMe pays $30 million.

  • T-Mobile $15.75M settlement.

    Mitigation: Audit current data privacy policies.

3.2025: Apple's $95 Million Siri Privacy Settlement Investopedia

  • Apple $95M Siri settlement.

  • Recordings shared with contractors.

  • Max payout $100 per person.

  • Siri devices since 2014 impacted.

  • 2019 The Guardian report started lawsuit.

    Mitigation: Evaluate AI privacy risks to enterprise.

    Secure GenAI is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.

4.Healthcare Data Breach Statistics HIPAA Journal

  • 5,887 breaches since 2009.

  • 519M healthcare records exposed.

  • 2024 only United Healthcare 100M breaches.

  • Hacking accounts for 79.7% of data breaches.

  • Business associate breaches rising rapidly.

    Mitigation: Secure data sharing protocols for 3rd parties.

    Related: New HIPPA Requirements

5. How Congress dropped the ball on AI safety The Hill

  • 50% super intelligence before 2047.

  • "Catastrophic" used once.

  • Whistle blower protection not included.

  • Required funding for NIST.

  • No regulator without clear authority.

    Mitigation: Stay updated with AI regulations.

Thanks for reading Secure GenAI ! This post is public so feel free to share it.

Share

Discussion about this episode

User's avatar