Entries by Information Analyst

Disgruntled Cloud Engineer Sentenced To Two Years In Prison

Disgruntled Cloud Engineer Sentenced To Two Years In Prison

Press Release

Disgruntled Cloud Engineer

United States Attorney’s Office

 

Miklos Daniel Brody Retaliated Against His Former Employer, a Bank, by Damaging the Bank’s Cloud System and Stealing Valuable Computer Code

SAN FRANCISCO – Miklos Daniel Brody was sentenced to 24 months in prison today for a network intrusion and for making false statements to a government agency, announced United States Attorney Ismail J. Ramsey and United States Secret Service (USSS) Special Agent in Charge Shawn M. Bradstreet. The sentence was handed down by the Hon. William. H. Orrick, Senior United States District Judge.

Brody, 38, of San Francisco, pleaded guilty in April 2023 to two charges that he violated the Computer Fraud and Abuse Act—by obtaining information from a protected computer, in violation of 18 U.S.C. § 1030(a)(2)(C) and (c)(2)(B), and by intentionally damaging a protected computer, in violation of 18 U.S.C. § 1030(a)(5)(A) and (c)(4)(B)(i)—and one charge of making false statements to a government agency, in violation of 18 U.S.C. § 1001(a)(2).

According to a superseding indictment returned by a federal grand jury in December 2022, Brody worked as a cloud engineer for a bank headquartered in San Francisco until March 11, 2020, when he was fired for violating company policy.

The superseding indictment alleges that, later that evening, and continuing into the following morning, Brody used his company-issued laptop—which he failed to return upon being fired—to access the bank’s computer network without authorization and to cause substantial damage. Among other things, Brody deleted the bank’s code repositories, ran a malicious script to delete logs, left taunts within the bank’s code for former colleagues, and impersonated other bank employees by opening sessions in their names. He also emailed himself proprietary bank code that he had worked on as an employee, which was valued at over $5,000. At the sentencing hearing, Judge Orrick determined the total cost of the damage to the bank’s systems to be at least $220,621.22.

To read the full press release, go to United States Attorney’s Office

 

The 10 Biggest Cyber Security Trends In 2024 Everyone Must Be Ready For Now

The 10 Biggest Cyber Security Trends In 2024 Everyone Must Be Ready For Now

News

Cyber Security Trends

Forbes

By the end of the coming year, the cost of cyber attacks on the global economy is predicted to top $10.5 trillion.

This staggering amount reflects the growing need for cyber security to be treated as a strategic priority on an individual, organizational and governmental level.

As in every other field of business and technological endeavor, artificial intelligence (AI) will have a transformative impact on both attack and defense. Its impact will be felt across every one of the trends covered here

Recent years have brought an acceleration in the pace of technological advancement in many fields, and cyber threats are no different. As they say, forewarned is forearmed – so read on to find out what my predictions are for the cyber security trends everybody should be on high alert for as we head into 2024.

The Cyber Security Skills Crunch

A shortage of professionals with the skills needed to protect organizations from cyber attacks continues to be a running theme throughout 2024. In fact, the situation appears to be getting worse – research indicates that a majority (54 percent) of cyber security professionals believe that the impact of the skills shortage on their organization has worsened over the past two years. We can expect efforts to rectify this situation to include a continued increase in salaries paid to those with the necessary skills, as well as greater investment in training, development and upskilling programs.

To read the full article, go to Forbes

Ediscovery Market Size, Growth & Trends 2023-2030

Ediscovery Market Size, Growth & Trends 2023-2030

News

Ediscovery Market

TheExpressWire

 

The global Ediscovery market size was valued at USD Million in 2022 and will reach USD Million in 2028, with a CAGR of Percent during 2022-2028.

Electronic discovery (also e-discovery or ediscovery) refers to discovery in legal proceedings such as litigation, government investigations, or Freedom of Information Act requests, where the information sought is in electronic format (often referred to as electronically stored information or ESI). Electronic discovery is subject to rules of civil procedure and agreed-upon processes, often involving review for privilege and relevance before data are turned over to the requesting party.

The Ediscovery market report covers sufficient and comprehensive data on market introduction, segmentations, status and trends, opportunities and challenges, industry chain, competitive analysis, company profiles, and trade statistics, etc. It provides in-depth and all-scale analysis of each segment of types, applications, players, 5 major regions and sub-division of major countries, and sometimes end user, channel, technology, as well as other information individually tailored before order confirmation.

Meticulous research and analysis were conducted during the preparation process of the report. The qualitative and quantitative data were gained and verified through primary and secondary sources, which include but not limited to Magazines, Press Releases, Paid Databases, Maia Data Center, National Customs, Annual Reports, Public Databases, Expert interviews, etc. Besides, primary sources include extensive interviews of key opinion leaders and industry experts such as experienced front-line staff, directors, CEOs, and marketing executives, downstream distributors, as well as end-clients.

To read the full press release, go to Digital Journal

 

Understanding the Distinct Roles of E-Discovery and Digital Forensics

Understanding the Distinct Roles of E-Discovery and Digital Forensics

Insights

Roles of E-Discovery and Digital Forensics

Daily Journal

Understanding the Distinct Roles of E-Discovery and Digital Forensics

December 28th, 2023

By Daniel Garrie, Hon. Gail A. Andler

E-discovery and digital forensics are two distinct and nuanced concepts that are often conflated in the world of legal technology. While both fields converge in their utilization of digital data and may overlap once litigation is instituted, their applications, methodologies, and implications in legal proceedings significantly differ.

E-Discovery is by its nature employed once litigation (or arbitration, under some rules) has commenced; digital forensics implicates the prelitigation obligation of preservation, as discussed below, and perhaps other aspects of the discipline which may come into play for pre-litigation mediation or other forms of alternative dispute resolution.

Take, for example, the hypothetical situation of a key employee (“Former Employee”) leaving Business A to start a competing business, Business B. As soon as competing business enterprise Business B or Former Employee are put on notice that Business A may dispute some aspect of Former Employee’s actions in leaving Business A or engaging at Business B, Digital Forensics must come into play to identify, preserve and maintain certain electronically stored information of all concerned. Early mediation efforts may take place pre-mediation with the sides, separately or together, utilizing a digital forensics expert to review hard drives or phones to determine whether information has been accessed, downloaded or deleted. In our hypothetical, it is not until either litigation or arbitration permitting discovery commences that eDiscovery may come into play, potentially overlapping with Digital Forensics activities. Following below is a more expansive discussion of each. Understanding the roles and characteristics of these two critical facets of legal practice can aid legal professionals in managing the technical aspects of legal proceedings more efficiently and avoid costly pitfalls. This article provides an overview of the defining features of e-discovery and digital forensics and how they are used in distinct ways in the legal field.

To read the full article, go to JAMS

Epiq Global Mass and Class Summit

Epiq Global Mass and Class Summit

Events

In-Person Event

When: March 4th – 6th, 2024

Duration: 9:00 AM – 5:00 PM

Epiq’s Mass and Class unique, three-day educational retreat is back for its third year! This year’s summit will be held in Fort Lauderdale, Florida, from March 4-6, 2024. We will present an impressive group of court-appointed neutrals, judges and some of the best plaintiff and defense attorneys in the class action and mass tort industry.

In addition to attending panel discussions on the hottest topics in multidistrict litigation, there are plenty of opportunities to network with the prestigious speakers and others in attendance.

Registration is limited and space will sell out, so be sure to register and book your room early!

Early bird registration ends Jan. 8, 2024.  Final registration ends March 3, 2024.

Why You Should Attend

 

  • Access to Expert Panel Discussions: Engage in insightful discussions on the latest trends in multidistrict litigation with 60of the most prominent experts in Mass Torts and Class Action.
  • Exclusive Networking Opportunities: An all in one place for a unique networking and educational experience. Network with Federal and State Court Judges, Court-Appointed Neutrals, top Plaintiff and Defense attorneys, and other industry experts.
  • Stay Up to Date: Join us for lively discussions on recent developments and best practices in the industry while earning CLE credits.

Speakers:

Daniel Garrie
Law & Forensics

 

UCL Institute for the California Lawyers Association

UCL Institute for the California Lawyers Association

Events

In-Person Event

UCL Institute for the California Lawyers Association

When: January 18th, 2024

Duration: 1:45 PM – 2:15 PM

Format: In-Person

Daniel Garrie, a practitioner (Zeichner Ellman & Krause), neutral (JAMS), and legal engineering entrepreneur (Law & Forensics), will discuss the abuses in class discovery that have become all too common in UCL matters.

Why You Should Attend

  • Expert Insights from Daniel Garrie: Attendees will gain valuable insights from Daniel Garrie as his expertise covers a wide range of areas in legal technology and dispute resolution.
  • Focus on Class Discovery Abuses in UCL Matters: The panel will address the increasingly prevalent issue of abuses in class discovery, especially in Unfair Competition Law (UCL) matters. This is a critical topic for legal professionals dealing with class actions and consumer protection cases.
  • Guidance for Legal Practitioners: Legal practitioners, including attorneys and legal advisors, will benefit from understanding these abuses and learning strategies to navigate or prevent them in their practices.

Speakers

Daniel Garrie
Law & Forensics

Michael Geibelson
Robins Kaplan LLP

 

ICCS 2024

ICCS 2024

Events

In-Person Event

ICCS 2024

When: January 10th, 2024

Duration: 9:30 AM – 10:30 AM

Format: In-Person

The International Conference on Cyber Security (ICCS) is the premier global cybersecurity event spanning three days, with over 50 distinguished speakers from the government, the private sector, and academia. It is an unparalleled opportunity for global cyber threat analysis, operations, research, and law enforcement leaders to coordinate and share their efforts to create a more secure world.

Why You Should Attend

  • Gain Valuable Insights: Hear from a diverse panel of experts in cybersecurity, each bringing a wealth of knowledge and experience.
  • Networking Opportunities: Connect with professionals from various industries, fostering valuable relationships in the cybersecurity community.
  • Stay Current: Learn about the latest trends, emerging threats, and innovative solutions in the world of cybersecurity.
  • Expand Your Knowledge: Deepen your understanding of critical cybersecurity issues, strategies, and best practices.
  • Professional Development: Enhance your skills and competencies, contributing to your professional growth in cybersecurity.

Speakers

Daniel Garrie
Law & Forensics

Adam Hickey
Partner, Mayer Brown

Tim Howard
Partner, Freshfields

Alex Iftimie
Associate General Counsel, OpenAI

 

Zero Day Exploits: Navigating Cybersecurity Challenges in a Rapidly Evolving Digital Landscape

Zero Day Exploits: Navigating Cybersecurity Challenges in a Rapidly Evolving Digital Landscape

Webinar

About This Webinar

In this day and age, vigilance in maintaining cyber hygiene and online practices is paramount for individuals, small businesses, and especially for professionals like lawyers, law firms, and banks. Cyber threats, ranging from individual hacks to large-scale data breaches, pose significant risks to both business operations and personal information. The ever-present threat of malicious actors who will take advantage of any vulnerabilities they have access to underscores the critical need for continuous awareness and proactive measures. Sometimes, however, it is not so clear. Zero-day exploits are one particularly insidious type of attack where cybercriminals target previously unknown and undetected vulnerabilities in a network. While this may sound like an impossible situation, there are actual steps that can be taken to defend against zero-day exploits. It is crucial for legal professionals to comprehend the nuances of zero-day exploits, including what they are, how they work, and what can be done.

In this webinar our panel of experts will begin by illuminating the intricate world of zero-day exploits, differentiating them from conventional cyber-attacks and elucidating their inherent dangers. Drawing from real-life incidents, the panelists will dissect a major data breach caused by a zero-day exploit, providing attendees with a tangible understanding of the potential consequences. The panelists will go on to discuss the multifaceted realm of cybersecurity, exploring the different kinds of threats that organizations can face including the kind of data that can be stolen. The experts will give context to the Computer Fraud and Abuse Act (CFAA) used to combat computer crime and hacking. They will talk about what kind of technology is protected under the Act as well as the scope of the conduct prohibited. Finally, the panelists will review key methods for protecting against zero-day exploits, including the tools that can be used and the development of incident response plans.

This course is brought to you by the Global Cyber Institute and Thomson Reuters and is nationally accredited.

Topics covered in this webinar:   

  1.  What are Zero Day Exploits?
  2. What is Cybersecurity?
  3. Regulatory Protections from Attacks: CFAA
  4. How to Protect Against Zero Days?
  5. Key Takeaways

Speakers:

  • Daniel B. Garrie, Esq.
    • Founder, Law & Forensics
    • Neutral, JAMS
    • Faculty, Harvard University
  • Anahi Santiago
    • Chief Information Security Officer, Christiana Care
  • David Kahlily
    • Director, Privacy and Data Security, FanDuel

Attending the webinar

If you would like to attend the program, please click this link and add the program to your “Cart.” Please note you may need to click the link twice to reach the webinar’s page.

 

2023 Year in Review: The State and Impact of the GDPR

2023 Year in Review: The State and Impact of the GDPR

Webinar

About This Webinar

In our rapidly advancing global economy, the benefits of modernization and digital integration are undeniable, bringing unprecedented efficiency and connectivity to our daily lives. But as much as we get out of it, we also put in. The more digitized our lives become the higher the volume of personal data that will enter the digital landscape. So much of our personal information is collected online by companies we would not even consider. Every click, every interaction online results in a trail of data, much of which is harvested by companies without explicit consent. Companies will then take our personal information and sell it online to third-parties. Essentially, our data could be anywhere and everywhere online. Amidst this digital frenzy, the General Data Protection Regulation (GDPR), the European Union’s comprehensive data privacy law, stands as a beacon of privacy rights and consumer protections. As fines for non-compliance only continue to increase, counsel advising clients with business in the EU will find this webinar an excellent opportunity to better understand the regulation and stay updated on the past year’s developments.

In this seminar, our expert panelists will introduce GDPR, shedding light on the regulation and the background to its establishment. They will cover the far-reaching scope of the regulation as well as its exceptions. The experts will then go on to describe the recent changes to how GDPR is regulated that came about in 2023. They will describe the EU’s move towards a more centralized enforcement model allowing for greater consistency across rulings in various EU countries. The panelists will continue by discussing the criteria for receiving GDPR penalties, emphasizing the accountability of entities that violate these stringent regulations. They will continue by reviewing some of the fines that have been distributed throughout the EU, including the standout example and largest fine to date given to Meta, serving as a stark reminder of the serious consequences of mishandling personal data. Finally, the panelists will discuss what they expect for the future of GDPR and recommendations for best practices.

This course is brought to you by the Global Cyber Institute and Thomson Reuters and is nationally accredited.

Topics covered in this webinar:   

  1. Overview of the General Data Protection Regulation (GDPR)
  2. How 2023 was Significant for the GDPR?
  3. GDPR Fines in 2023
  4. Key Takeaways and What Lies Ahead

Speakers:

  • Daniel B. Garrie, Esq.
    • Founder, Law & Forensics
    • Neutral, JAMS
    • Faculty, Harvard University
  • K Royal, Ph.D.
    • Global Chief Privacy Officer, Crawford & Company
  • Jarno Vanto
    • Partner, King & Spalding
  • Noshin Khan
    • Associate Director, Ethics and Compliance, OneTrust

Attending the webinar

If you would like to attend the program, please click this link and add the program to your “Cart.” Please note you may need to click the link twice to reach the webinar’s page.

 

Navigating HIPAA: Guide to the Privacy Rule

Navigating HIPAA: Guide to the Privacy Rule

Webinar

About This Webinar

In an era where digital technologies dominate the healthcare landscape, safeguarding sensitive patient data is paramount. The healthcare sector is a vital cornerstone of society and is increasingly vulnerable to malicious cyber threats. Healthcare records contain some of the most sensitive personal data which, if exposed, can leave patients incredibly vulnerable to identity theft or reputational damage. It is critical for attorneys to understand the delicate and intricate world of healthcare data security. Specifically, with a focus on healthcare’s most significant security law, the Health Insurance Portability and Accountability Act (HIPAA) and its transformative Privacy Rule. Legal professionals will be equipped not just with legal information but with strategic foresight that is invaluable in the ever-changing reality of healthcare cybersecurity. This webinar will empower lawyers to be the guardians of patient privacy, ensuring the healthcare sector continues to thrive securely in the digital age.

In this webinar, the expert panelists will begin by discussing the current state of security for the healthcare industry, painting a vivid picture of the threats healthcare entities face in this digital age. Panelists will then introduce HIPAA, the linchpin of healthcare privacy laws and describe the entities the rule covers. They will continue by discussing the information that HIPAA protects and the information it excludes. The panel will go on to outline the Privacy Rule under HIPAA and its permitted uses and disclosures. Finally, the experts will review the proposed privacy rule changes their expectations for how the anticipated changes will affect the future of cybersecurity in the healthcare industry.

This course is brought to you by the Global Cyber Institute and Thomson Reuters and is nationally accredited.

Topics covered in this webinar:   

  1. The Current State of Cybersecurity Law and Healthcare
  2. Health Insurance Portability and Accountability Act of 1996 (HIPAA)
  3. Understanding the HIPAA Privacy Rule
  4. Proposed Privacy Rules Changes

Speakers:

  • Daniel B. Garrie, Esq.
    • Founder, Law & Forensics
    • Neutral, JAMS
    • Faculty, Harvard University
  • Dave Summitt
    • ICIT Fellow
    • Healthcare Security Advisor
    • Former CISO/VP Cyber Security
  • Afzal Khan
    • Global CISO, OPKO Health, Inc.
  • Jennifer Coughlin
    • Founding Partner, Mullen Coughlin

Attending the webinar

If you would like to attend the program, please click this link and add the program to your “Cart.” Please note you may need to click the link twice to reach the webinar’s page.