U.S. DOJ: Disney Agrees to $10M Civil Penalty and Injunction for Alleged Violations of Children’s Privacy Laws


The Justice Department announced today that a federal court has entered a stipulated order resolving a case against Disney Worldwide Services Inc. and Disney Entertainment Operations LLC, (collectively, Disney). The Federal Trade Commission (FTC) investigated this matter, negotiated a resolution with Disney, and referred the case to the Department.

Under the order, Disney will pay $10 million in civil penalties as part of a settlement to resolve Federal Trade Commission allegations that Disney violated the Children’s Online Privacy Protection Act and its implementing regulations (COPPA) in connection with Disney’s popular YouTube video content. COPPA prohibits website operators from knowingly collecting, using, or disclosing personal information from children under the age of 13 (hereinafter, children), unless they provide notice to and obtain consent from those children’s parents.

Read more…
Source: U.S. Department of Justice


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • Biden to host summit with tech moguls on combating cyberattacks

    August 25, 2021

    United States President Joe Biden is set to host leaders from the country’s largest technology and finance firms at the White House on Wednesday to discuss how to shore up their cybersecurity defences in the face of increasingly complex attacks. The meeting with top executives comes as Congress considers legislation regarding data-breach notification laws and cybersecurity ...

  • FBI: OnePercent Group Ransomware targeted US orgs since Nov 2020

    August 23, 2021

    The Federal Bureau of Investigation (FBI) has shared info about a threat actor known as OnePercent Group that has been actively targeting US organizations since at least November 2020 as a ransomware affiliate. The US federal law enforcement agency shared indicators of compromise, tactics, techniques, and procedures (TTP), and mitigation measures in a flash alert published ...

  • Indiana: COVID-19 Contact-Tracing Data Exposed, Fake Vax Cards Circulate

    August 19, 2021

    This week, the Indiana Department of Health issued a notice that the state’s COVID-19 contact-tracing system had been exposed via a cloud misconfiguration, revealing names, emails, gender, ethnicity, race and dates of birth of more than 750,000 people. The incident shows that COVID-19 data could be poised for abuse and misuse, according to experts, which is ...

  • US Census Bureau hacked in January 2020 using Citrix exploit

    August 18, 2021

    US Census Bureau servers were breached on January 11, 2020, by hackers who exploited a Citrix ADC zero-day vulnerability as the US Office of Inspector General (OIG) disclosed in a recent report. “The purpose of these servers was to provide the Bureau with remote-access capabilities for its enterprise staff to access the production, development, and lab ...

  • US agencies scrub websites in bid to protect Afghans

    August 18, 2021

    Multiple United States agencies that operated in Afghanistan and worked with Afghan citizens have been hastily purging their websites, removing articles and photos that could endanger the Afghan civilians who interacted with them and now fear retribution from the Taliban. The online scrubbing campaign appeared to begin late last week when it became clear that the ...

  • PwnedPiper critical bug set impacts major hospitals in North America

    August 2, 2021

    Pneumatic tube system (PTS) stations used in thousands of hospitals worldwide are vulnerable to a set of nine critical security issues collectively referred to as PwnedPiper. PTS solutions are part of a hospital’s critical infrastructure as they are used to quickly deliver items like blood, tissue, lab samples, or medication to where they’re needed. Read more… Source: Bleeping ...