Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Interview: Shopify CISO Andrew Dunbar on Securing an E-Commerce Giant

June 26, 2026

New CISA Guide Helps Agencies Adopt SASE For Zero Trust

June 25, 2026

Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development

June 25, 2026
Facebook X (Twitter) Instagram
Friday, June 26
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»California Shuts Down Health Data Resales By Unregistered Brokers
News

California Shuts Down Health Data Resales By Unregistered Brokers

Team-CWDBy Team-CWDJanuary 13, 2026No Comments2 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


California privacy regulators have taken fresh action against companies accused of trading in sensitive personal data without proper authorization.

The latest decisions target a marketing firm that sold health-related profiles and a global analytics provider that failed to meet registration rules.

The California Privacy Protection Agency (CPPA) said the actions are part of its enforcement of the Delete Act, which requires businesses that buy and sell consumer data to register annually.

Officials warned that information linked to medical conditions and personal behavior can pose serious risks when circulated for commercial gain.

The most severe penalty was imposed on Rickenbacher Data LLC, operating as Datamasters. Regulators found the Texas-based company bought and resold personal data tied to millions of people in 2024 without registering as a data broker in California.

Trading in Sensitive Profiles

According to the agency’s order, Datamasters handled hundreds of millions of records containing names, email addresses, phone numbers and physical addresses. The data was packaged into marketing lists built around highly sensitive attributes.

These included:

  • People with conditions such as Alzheimer’s disease, drug addiction and bladder incontinence

  • Lists based on age and perceived race, including “Senior Lists” and “Hispanic Lists”

  • Groupings linked to political views, grocery purchases, banking activity and health-related spending

“Reselling lists of people battling Alzheimer’s disease is a recipe for trouble,” said Michael Macko,  head of enforcement at CalPrivacy.

“In the wrong hands, these lists could be used to target people for more than just advertising.”

Fines and Operating Restrictions

CalPrivacy fined Datamasters $45,000 and ordered the company to stop selling any personal information belonging to Californians. It must also delete all previously acquired California data and remove any such information within 24 hours if it appears in future data sets.

Read more on data brokers: Cybercriminals Exploit Low-Cost Initial Access Broker Market 

A separate decision fined S&P Global $62,600 for failing to register as a data broker by the January 31 deadline for 2025. Regulators said the lapse, caused by an administrative error, left the firm unregistered for 313 days.

The actions align with the launch of the Delete Request and Opt-out Platform (DROP), which allows consumers to request deletion of their personal information from all registered data brokers in a single step.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleResearchers Uncover NodeCordRAT Hidden in npm Bitcoin-Themed Packages
Next Article Cisco Patches ISE Security Vulnerability After Public PoC Exploit Release
Team-CWD
  • Website

Related Posts

News

New CISA Guide Helps Agencies Adopt SASE For Zero Trust

June 25, 2026
News

Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development

June 25, 2026
News

Trust in Automated AI Vulnerability Scanning Collapses to 9%

June 25, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

Cyber M&A Roundup: Cyber Giants Strengthen AI Security Offerings

December 1, 20258 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

Here’s what you should know

February 6, 2026

What it takes to fool facial recognition

March 14, 2026

What parents should know to protect their children from doxxing

November 28, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.