#SypherPrivacyTalks - November 2023 - Week 49

by Sypher | Published in News - December 04, 2023


Welcome to #SypherPrivacyTalks — Your news and article roundup. Bringing you the top privacy & compliance stories of the week.

The Norwegian DPA issues a EUR 1.7 million fine to the Norwegian Labour and Welfare Authority

datatilsynet.no • 7 min read

๐Ÿšจ The Norwegian Data Protection Authority (Norwegian: Datatilsynet) inspection of the Norwegian Labour and Welfare Authority (NAV) earlier in September revealed a total of twelve breaches of privacy regulations in the way personal data is processed in the organisation's internal computer systems. This led to the DPA issuing a notification of a ๐Ÿ’ถ NOK 20 million (EUR 1.7 million) fine to NAV.

In its conclusion, the Norwegian DPA mentions that the violations are very serious and have been going on for a long time, and therefore is announcing this significant fine of NOK 20 million. 
In addition, the majority of Norwegian citizens receive benefits from NAV during their lifetime, adding to the gravity of the situation… read more (article in Norwegian).


Italian Privacy Authority launches investigation into online data collection for AI training

ipinitalia.com • 2 min read

๐Ÿ“ฃThe Italian Privacy Authority has initiated an investigation to assess whether websites are implementing sufficient security measures to prevent the extensive gathering (web scraping) of personal data for ๐Ÿค– training AI algorithms. This investigation targets data controllers in Italy who expose users' personal data online, potentially accessible by AI service developers. 

The Authority calls on trade associations, consumer groups, experts, and academics to contribute insights on ๐Ÿ›ก๏ธ security measures against large-scale personal data collection for AI training, and submit these to the authority until January 22, 2024. Following the investigation, the Authority reserves the right to enforce legislation through various measures, including urgent actions… read more


Meta sued by privacy group over pay up or click OK model

theregister.com • 2 min read

๐Ÿ‘ฉ‍โš–๏ธ Privacy activist group noyb (None Of Your Business) has filed a data protection complaint against #Meta over its newly announced subscription model, which the organisation claims is now being considered by many of Meta's competitors.

The complaint has been filed with the ๐Ÿ‡ฆ๐Ÿ‡น Austrian data protection authority.
The essence of the complaint is that ๐Ÿ‘‰ the right to privacy is a โ—fundamental right, and making a customer pay up to ๐Ÿ’ถ €251.88 a year for that right defeats the purpose… read more


The Swedish DPA issues 26,500 EUR fine to the Children's and Education Board

imy.se • 10 min read

๐Ÿ’ฅ The Swedish Data Protection Authority (IMY) imposes a ๐Ÿ’ถ fine of SEK 300,000 (26,500 EUR) on the Children's and Education Board in the municipality of Östersund. 

The reason cited is that the board ๐Ÿšซ failed to carry out the required impact assessment before introducing the digital school platform Google Workspace in 24 of the municipality's schools in autumn 2020… read more (article in Swedish)


Ford Patent Filed for Vehicle Data Protection System

fordauthority.com • 3 min read

๐Ÿš— Ford Motor Company has filed a patent for a vehicle ๐Ÿ›ก๏ธ data protection system that could be used in future Ford vehicles. 

In recent years, cars have begun to share data with other vehicles and even the surrounding infrastructure, all in an effort to make driving more convenient and safer. However, if this data is intercepted by hackers, it could cause serious problems.

The concept behind the patent is to apply a digital watermark to data exchanged between cars and other sources, using a ๐Ÿ”secret key that prevents it from being captured or decoded… read more

___
Stay tuned for more by ๐Ÿ“Œ connecting with us on LinkedIn or, better yet, by subscribing to our weekly newsletter. We do our best to select the most interesting and relevant content in our field and deliver it to you in a bite-sized format, so you can stay up to date on topics such as Privacy Management & Compliance.