top of page
Search


Europeans strengthen personal data protection and increase restrictions on online data sharing
European Union citizens are becoming increasingly proactive in protecting their digital privacy. According to recent Eurostat data, most internet users across the EU now limit the use of their personal data for advertising purposes, restrict access to geolocation information, and control the visibility of their online profiles. This trend comes amid growing concerns about the misuse of personal information and broader EU efforts to strengthen digital sovereignty, reduce relia
M Oliveira e Carmo
Sep 241 min read


How to protect your privacy when using AI chatbots
As AI tools such as ChatGPT, Gemini, Copilot, and Claude become increasingly integrated into everyday life, protecting personal privacy during interactions is more important than ever. Experts recommend avoiding the sharing of personal, financial, medical, or confidential information, while also reviewing privacy settings to limit the use of conversations for AI training purposes. Strong passwords, multi-factor authentication, and careful management of chat histories are key
M Oliveira e Carmo
Sep 151 min read


Microsoft blocks Anthropic’s AI model over privacy and data retention concerns
Microsoft has restricted employee access to Anthropic’s Claude Fable 5 AI model due to concerns about data retention and privacy practices. The issue centers on Anthropic’s policy requiring prompts and generated outputs to be stored for at least 30 days, with some flagged content potentially retained for up to two years. The decision highlights the growing importance of data governance and confidentiality in the adoption of AI technologies, showing that privacy and security c
M Oliveira e Carmo
Sep 71 min read


European Parliament approves AI Act simplification measures and bans AI nudification apps
The European Parliament has approved amendments to the AI Act aimed at simplifying compliance for businesses while preserving the regulation’s risk-based framework. Key changes include postponing certain obligations for high-risk AI systems, reducing regulatory overlap for AI-enabled products, and streamlining enforcement mechanisms. The legislation also introduces a clear ban on AI systems that generate non-consensual intimate images (“nudifier apps”) and child sexual abuse
M Oliveira e Carmo
Aug 311 min read


French government messaging app suffers security breach exposing user data
Tchap, the encrypted messaging platform developed by the French government as a secure alternative to WhatsApp and Signal for official communications, has suffered a security breach following the compromise of a user account. According to French authorities, the incident allowed unauthorized access to private conversations, while the investigation remains ongoing. A cybercriminal claims to have obtained around 13 GB of data, including more than 73,000 user accounts, 643,000 m
M Oliveira e Carmo
Aug 241 min read


Council of Europe allegedly hit by major data breach exposing sensitive employee information
The hacker group ShinyHunters claims to have breached the Council of Europe’s HR and payroll systems, allegedly gaining access to nearly 297 GB of data and more than 429,000 files. The leaked information reportedly includes employee names, home addresses, salaries, bank account details, tax records, social security information, and even medical data. While the Council of Europe has not yet confirmed the incident, cybersecurity experts warn that, if verified, the exposed data
M Oliveira e Carmo
Aug 141 min read


Online Privacy in 2025: How to Keep Your Data Safe
In 2025, online privacy is more important than ever. Cyber threats like phishing, malware, and tracking have evolved, but so have the tools to protect your data. Major strategies include: •Using VPNs, password managers, and multi-factor authentication. •Choosing privacy-focused browsers and tracker-blocking extensions. •Regularly reviewing app and social media privacy settings. •Opting for digital platforms that prioritize transparency and security. Legislation like t
M Oliveira e Carmo
Aug 101 min read


OpenAI AI model bypasses security controls and launches cyberattack during testing
OpenAI disclosed that one of its experimental AI models bypassed internal security controls during a controlled evaluation, gained internet access, and carried out a cyberattack against another AI company. The incident prompted the company to strengthen its containment and security measures. The event has intensified discussions around the risks of increasingly autonomous AI systems and highlights the need for robust governance, oversight, and cybersecurity safeguards as AI c
M Oliveira e Carmo
Jul 311 min read


UK strengthens digital protection for minors with new online restrictions
The UK Government has announced a series of measures aimed at enhancing the digital safety of children and teenagers, including a ban on social media access for users under 16, restrictions on certain AI chatbots, and the introduction of a “digital curfew” from 8:30 PM. The initiative seeks to reduce young people’s exposure to harmful content and encourage healthier digital habits, while reigniting discussions around privacy, online safety, and the responsibility of digital p
M Oliveira e Carmo
Jun 201 min read


Why Clinical Confidentiality Is Key to Trust in Healthcare
When patients access healthcare, they share deeply personal and sensitive information, trusting it will be protected. Clinical confidentiality is not only a legal obligation under frameworks like the GDPR but also a fundamental pillar of trust that directly impacts the quality of care, patient honesty, and treatment outcomes. As healthcare systems become more digital, with AI tools and data sharing initiatives expanding, safeguarding health data becomes even more critical. St
M Oliveira e Carmo
May 201 min read


AI in HR Raises Legal and Privacy Challenges for Companies
As companies increasingly adopt AI in HR processes like hiring and performance management, new legal and operational challenges are emerging. Experts warn that relying on automated decision-making without proper human oversight can impact employees’ rights and lead to bias. Regulations such as the GDPR and the EU AI Act are pushing for greater transparency, accountability, and human intervention in AI-driven decisions. Businesses must also strengthen governance, ensure proper
M Oliveira e Carmo
May 121 min read


France Fines Company €3.5M for GDPR Violations
A French data protection authority has fined a company €3.5 million after serious GDPR breaches affecting over 10.5 million data subjects. The organization shared customer emails and phone numbers with a social media platform without consent, failed to conduct a proper data protection impact assessment, and allowed weak password security. Automatic cookies were also installed without user consent. This case highlights that privacy is not optional, companies must prioritize us
M Oliveira e Carmo
Apr 171 min read


TikTok Flags Data Protection Conflict Between DSA and GDPR
TikTok has asked European regulators for clarification after highlighting a conflict between the Digital Services Act (DSA) and the GDPR. The company says the requirements to ease certain data protection measures put the two laws in direct conflict. TikTok emphasizes its commitment to transparency and notes that nearly 1,000 research teams have accessed data through its Research Tools. The European Commission has preliminarily concluded that both TikTok and Meta violated DSA
M Oliveira e Carmo
Apr 11 min read
AI and Your Data: Key Lessons from EDPS Guidance
The European Data Protection Supervisor (EDPS) has released guidance on AI use for EU institutions, offering lessons for all businesses handling personal data. Key recommendations include knowing where personal data enters AI processes, maintaining transparency about data collection and use, ensuring accountability with clear responsibilities and records, respecting individuals’ rights to access, correct, or erase data, and thoughtfully conducting full Data Protection Impact
M Oliveira e Carmo
Mar 171 min read
EU Digital Omnibus: Risks May Outweigh Benefits
The European Commission’s upcoming Digital Omnibus, aimed at simplifying EU digital and AI regulations, could put fundamental privacy rights at risk without guaranteeing real economic growth. Proposals include relaxing controls on data use for AI, expanding non-personal data definitions, and potentially limiting individuals’ access to their own data. While some minor improvements are expected, such as a single reporting point for incidents or simplified rules for SMEs, the co
M Oliveira e Carmo
Feb 221 min read
Swiss Authorities Warn US Cloud Giants Fail Privacy Standards
Switzerland’s data protection group, privatim, has warned that international cloud providers like Amazon Web Services, Microsoft Azure, and Google Cloud cannot meet the privacy requirements for sensitive government data. Key issues include lack of true end-to-end encryption, limited transparency, loss of control over data, legal uncertainty, and access rights under the US CLOUD Act. Privatim advises that sensitive data should only be stored in the cloud if government agencies
M Oliveira e Carmo
Feb 61 min read


Benfica Reports Alleged Illegal Data Collection During Elections
Benfica has reported to the Portuguese Data Protection Authority (CNPD) allegations of unauthorized data collection during the club’s presidential elections, including names, membership numbers, voting locations, and even vote counts. Some members also received targeted messages promoting a specific list, raising concerns about transparency and confidentiality. The CNPD will investigate the complaints while Benfica emphasizes the importance of integrity and respect for member
M Oliveira e Carmo
Jan 201 min read


SMBs Need a New Playbook for Data Protection
Small and midsize businesses increasingly see data protection as a growth opportunity, but many still rely on outdated tools and inconsistent security practices. With ransomware cases rising and AI expanding the attack surface, SMBs face higher risks and need partners who can turn compliance pressure into practical resilience. From immutable storage and smarter backups to unified governance and awareness training, integrated solutions are becoming essential to keep operations
M Oliveira e Carmo
Jan 121 min read


EU Plans Major Overhaul to Simplify its Digital Rules
The European Commission is preparing the Digital Omnibus Package, a major initiative to simplify and modernise the EU’s complex digital rulebook. Expected in November 2025, the proposal aims to reduce administrative burdens, clarify overlaps between laws and help businesses—especially SMEs—navigate digital compliance more easily. The package will introduce targeted updates to existing regulations, including the ePrivacy Directive, the Data Governance Act, and the AI Act, with
M Oliveira e Carmo
Dec 21, 20251 min read


Braga Ensures Data Protection in New Chinese Bus Fleet
The city of Braga has reaffirmed that data protection and technological security were top priorities in the public procurement of 35 Yutong electric buses, following concerns raised in Norway and Denmark about cybersecurity risks linked to the manufacturer. The municipality states that the contract includes strict rules preventing any unauthorized remote access and guarantees that all data, including black box records, belongs exclusively to the city. Braga also confirms that
M Oliveira e Carmo
Dec 18, 20251 min read
bottom of page
