Regulatory Watch
New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.
Showing 20 of 220 developments
ADTP REGULATORY BRIEF
WBUR reports driver’s license data appearing on dark web, raising AI‑enabled fraud risks
The exposure of driver’s license images on the dark web creates new AI‑driven identity‑theft threats and endangers vulnerable individuals.
ADTP REGULATORY BRIEF
ENISA releases 2026 Threat Landscape report highlighting AI-enabled cyber threats and supply‑chain risks
The report informs EU stakeholders of evolving cyber threats, emphasizing the need for heightened vigilance and resilience across digital services.
ADTP REGULATORY BRIEF
D.C. Circuit urged to vacate FAA drone restriction that criminalized recording immigration agents
The outcome could restore First Amendment protections for journalists using drones to document government actions.
ADTP REGULATORY BRIEF
EU Commission proposes KIDS Act to impose age‑based restrictions and safety‑by‑design for children online
The KIDS Act aims to create EU‑wide, age‑based safeguards and design obligations to protect children’s privacy and safety online.
ADTP REGULATORY BRIEF
California Governor Newsom issues executive order on AI to spur dialogue and address harms
The order signals California’s intent to shape AI policy, impacting algorithmic decision‑making, privacy and cybersecurity practices.
ADTP REGULATORY BRIEF
How to limit Siri AI access in iOS 27
The article explains how iOS 27’s Siri AI expands data access and provides step‑by‑step controls for users to protect their privacy.
ADTP REGULATORY BRIEF
Secure Messaging and AI Remain In Conflict Despite the Promise of TEEs
The article highlights that relying on TEEs for AI processing undermines the privacy of secure messaging, urging user control and developer restraint.
ADTP REGULATORY BRIEF
EFF warns that cloud TEEs undermine end‑to‑end encryption in messaging apps
The article highlights a privacy risk where AI features offload encrypted messages to cloud TEEs, weakening end‑to‑end encryption protections.
ADTP REGULATORY BRIEF
EFF urges lawmakers to base AI cybersecurity rules on established best practices
Linking AI cybersecurity law to established best practices could reduce lab breaches without stifling innovation.
ADTP REGULATORY BRIEF
CNIL outlines its status, organization and sanction powers
The notice details CNIL’s enforcement authority and the maximum GDPR fines, important for data protection compliance.
ADTP REGULATORY BRIEF
NY Attorney General urges workers to file whistleblower complaints on unsafe AI development
The guidance signals heightened enforcement focus on AI safety and data security in New York, prompting insider reporting.
ADTP REGULATORY BRIEF
EU AI Board discusses AI Act implementation and publishes Action Plan on cybersecurity and AI
The meeting signals EU progress on AI governance, linking AI Act enforcement with a new cybersecurity‑AI action plan.
ADTP REGULATORY BRIEF
Settlement codifies Meta's surveillance practices into law as states move to curb ALPR use
The piece highlights emerging legal and policy actions that affect privacy and surveillance technologies in the United States.
ADTP REGULATORY BRIEF
California legislature passes three AI employment bills pending Governor's signature
These bills aim to curb AI-driven employment decisions and surveillance, enhancing employee protections and transparency.
ADTP REGULATORY BRIEF
Police misuse ALPR data with frivolous reasons, EFF finds
The report reveals pervasive, undocumented ALPR searches that threaten privacy and civil liberties.
ADTP REGULATORY BRIEF
California Governor signs AB 2071 and AB 2298 to add digital literacy and cybersecurity to school curricula
The new laws mandate digital literacy and cybersecurity instruction for students, addressing online safety and privacy.
ADTP REGULATORY BRIEF
Amazon Ring's 'Throw Away the Key Encryption' adds limited privacy but falls short of true end‑to‑end encryption
TAKE improves key handling but does not provide the full privacy protections of end‑to‑end encryption, leaving users vulnerable to law‑enforcement access.
ADTP REGULATORY BRIEF
Cameras capture alleged vandal in Morristown SafetyStick pilot
The incident highlights privacy concerns around pilot surveillance deployments and the need for community oversight.
ADTP REGULATORY BRIEF
EU Cyber Resilience Act reporting obligations take effect for manufacturers
The EU Cyber Resilience Act now imposes mandatory incident reporting duties on manufacturers, raising compliance requirements for product security.
ADTP REGULATORY BRIEF
ENISA launches Single Reporting Platform for Cyber Resilience Act reporting
The SRP provides a single, EU‑wide tool for manufacturers to meet CRA reporting duties, enhancing coordinated cybersecurity risk management.
Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.