top of page

Blog


Take it Down Act Now in Effect
The Take it Down Act is now enforceable, and the fines for violating this Act are over $53,000! This new law bans the nonconsensual online publication of intimate images of individuals - including AI-generated deepfakes. This is a MAJOR victory for anyone who has been a victim of the publishing of images and/or videos without their consent.
Jul 271 min read


You Choose Your Own Breach Counsel, Not Your Insurance Company
Recently, a client of ours reached out to SWA Law after their breach counsel, recommended by their insurance company, did not submit reimbursements to the insurance company. SWA stepped in and recovered more than $600,000 for incident response expenses. Six hundred thousand dollars! Their previous breach counsel didn't even ask for it. The lesson: you have a choice when it comes to which breach counsel you want to use. Looking for one? We'd love to be considered!
Jul 201 min read


Louisiana enacts its first Data Privacy Act
Louisiana enacts its first Louisiana Data Privacy Act. It looks a whole lot like the other 21 states' privacy acts. This new act applies to entities with more than $20M in gross revenue collecting more than 75,000 different people's personal identity information. WATCH to learn more about this new law as Sarah Anderson explains.
Jul 131 min read


Buying World Cup Tickets? Check the URL first!
CAUTION when buying World Cup tickets! Threat actors are creating legitimate websites (think fiffa[.]com) to trick users into believing they're interacting with an official brand - fifa.com. WATCH as Sarah Anderson explains what's happening and how you can stay aware and alert!
Jul 61 min read


The Use of AI in Hiring Decisions
Here's what nobody told you when HR bought that AI hiring tool: when it discriminates, the vendor doesn't get sued. You do. Businesses - before you choose to engage AI vendors in your hiring process, check with legal counsel. We'd love to help!
Jun 231 min read


Fraudsters are Opening Loans in Your Name Based on Your Social Media Activity
Fraudsters aren't hacking credit unions anymore. They're applying for loans - like everyone else. The only difference is, the identity isn't theirs. It's yours. And they got it off your social media. And they're getting approved. WATCH as Sarah explains how this is happening and what you should be cautious of.
Jun 151 min read


Don't Skip the 15 Minutes it Takes to Run a Background Check When Hiring
Can you imagine it taking 56 minutes to wipe 96 federal databases? After serving their sentence, the Akhter brothers were rehired as government contractors. No background check required. WATCH to hear Sarah explain what that skipped 15 minute background check cost this government contractor.
Jun 81 min read


Canvas Incident Teaches Us all to Recover from Cyber Incidents Thoroughly and Properly (so it doesn't happen again)
Canvas - a widely used Learning Management System - was hacked twice in four days. The lesson here: when you undergo incident response, the cheap and easy route is usually not the best.
Jun 11 min read


Washington State: Companies Must Disclose to Users When They're Interacting With a ChatBot
Washington State's Governor just signed a new law regarding Artificial Intelligence. Starting January 1, 2027, all entities using an AI companion Chatbot must disclose to users that they are interacting with a machine and not an actual person. WATCH as Sarah dives into the details and if you have any follow-up questions, we'd love to hear from you!
May 271 min read


3 New Laws About Cyber Security You Should Know About
3 New Laws about cyber security you should know about: 1. Alabama introduces a new consumer data privacy law regarding minors 2. Oklahoma introduces a consumer data privacy law with a $7,500 penalty 3. South Dakota introduces a genetic privacy law with a $5,000 fine Watch as Sarah gives you a brief overview, then check out our blog for links to all three of these new laws today!
May 181 min read


DigitalMint Finds Team Members Cooperating With a Cybercrime Group
Never engage in ransomware demands. That's it. That's the message. Watch as Sarah dives into a recent incident where DigitalMint - a cyber security firm - found several of its staff cooperating with BlackCat. If you have any questions about what to do when you see a demand for ransom, reach out to Sarah!
May 111 min read


Coinbase Cartel Advertising for Insiders to Access Your Company's Data
Recently, as Sarah was monitoring Coinbase Cartel's website, she saw an ad for "insiders." In short, this company will pay your disgruntled employees to help them access your data. Just another reason to tighten security procedures today (not when you have more time). WATCH as Sarah dives into the details. If you have any questions? Connect Sarah with your IT Department today!
May 61 min read


Caution When Hiring Experts in Tech Cases
Be very cautious before you spend thousands of dollars on an expert witness for your technology case. REMEMBER: Not everyone is created equal. WATCH to learn more!
Apr 271 min read


Largely Remote workforce? Be Aware - Hackers are Targeting Legitimate VPNs with convincing fakes
There are now fake enterprise Virtual Private Networks (VPNs) convincing employees who work remotely to enter their credentials. Pro tip: only allow downloads directly from the manufacturers website or through your MSP to ensure your employees do not fall prey to any of these very convincing deep fakes.
Apr 201 min read


Cyber Attack Linked to Iran Impacts Stryker Medical Group
Stryker Medical Group was hit with a cyber attack in early March where an Iranian group remotely wiped nearly 200,000 devices. Stryker Medical Group manufactures implants, hospital beds, surgical instruments and more and maintains that none of their product was impacted. This is a healthy reminder that in the currently political climate, expect cyber attacks to increase.
Apr 131 min read


Technology dispute? Here are 3 things we look for first in Discovery
In the discovery phase of a technology dispute, we're looking for THREE main things: 1. What is the opposition's information security policy? 2. Who is in charge? 3. Who performed the forensics? Want to know more about each of these three top priorities for us? Watch more and reach out to us today! sarah@legallycyber.com
Apr 61 min read


How to Win Tech Vendor Disputes | A SproutEd Webcast
When a cyber incident hits, vendor liability becomes front and center. This March, Sarah Anderson taught a live SproutEd CLE webcast on how to strategically litigate tech vendor disputes and position cases for resolution! Earn 1.5 General CLE credit and take the course today !
Mar 311 min read


Who's Responsible for Fraudulent ACH Instructions?
"Who suffers the loss when fraudulent ACH is at play?" According to courts from Florida and Arizona, the party in the best position to prevent the fraud (usually the PAYER) is most at fault. WATCH to learn more clues to prevent future ACH fraud!
Mar 231 min read


Crowdstrike 2026 Global Threat Report
The Crowdstrike Global Threat Report is important to us and our clients because it: Makes predictions that help SWA clients prepare for the future It tracks what we see in the trenches working as incident responders WATCH to hear two important takeaways Sarah Anderson is seeing in the 2026 report.
Mar 101 min read


Why IT Vendors Should Say "No" to Guaranteed Response Times and Support Metrics
STOP promising "Guaranteed Response Times." It sounds like good customer service, but as an IT Director, putting these metrics in writing is a massive legal risk. Listen in as Sarah Anderson explains why! If you need help fixing your service agreements, reach out to Sarah and the Legally Cyber team today. We’ll make sure your contracts actually protect your hard work!
Feb 241 min read
bottom of page
