Tag Archives: Twitter

California Bill Targets Social Networking Privacy

A new bill proposed in California, the Social Networking Privacy Act (the “Act”), would force social networking websites to establish default privacy settings for their users that prohibit such sites from publicly displaying most information about users without the users’ consent.  Given that many social networking websites currently have default settings that make user personal information and photos public unless the user changes those settings, the Act would represent a fundamental shift in social networking privacy. Continue reading…

Tags: California, Facebook, Google, Online Privacy, Penalty, Social Media, Twitter, U.S. State Law

Update: NLRB Remains Focused on Social Media Issues

As reported in Hunton & Williams’ Employment & Labor Perspectives blog:

The National Labor Relations Board (“NLRB”) regional offices addressing complaints involving employers’ social media policies must seek advice from the NLRB’s Division of Advice before taking any action.  The memorandum, issued by the NLRB’s Office of the General Counsel on April 12th, added social media disputes to the list of matters that must be submitted to the Division of Advice.  The Division of Advice is responsible for issuing opinions on difficult or novel labor issues.

Continue reading…

Tags: Facebook, Social Media, Twitter, Workplace Privacy

Employer May Be Liable for Impersonating Employee on Facebook and Twitter

As reported in Hunton & Williams’ Employment & Labor Perspectives blog:

An employer who allegedly posted to an employee’s Facebook and Twitter accounts without her consent may face liability for its actions, according to a federal judge in Illinois.  The case is Maremont v. Susan Fredman Design Group, Ltd., in the U.S. District Court for the Northern District of Illinois (2011 U.S. Dist. LEXIS 26441, March 15, 2011).

The Plaintiff, Jill E. Maremont, worked as the Director of Marketing, Public Relations and E-Commerce for an interior designer and her company, Susan Fredman and the Susan Fredman Design Group, Ltd. (Defendants).  Maremont contends she created a “popular personal following” on Facebook and Twitter, and she also created a company blog called “Designer Diaries: Tales from the Interior.” Continue reading…

Tags: Class Action, Facebook, Litigation, Online Privacy, Social Media, Twitter, Workplace Privacy

FTC Accepts Final Settlement with Twitter

On March 11, 2011, the Federal Trade Commission finalized a proposed settlement with Twitter, which resolved allegations that Twitter deceived consumers and failed to safeguard their personal information. The FTC first announced the proposed settlement in June 2010. Specifically, the FTC claimed that Twitter, contrary to its privacy policy statements, did not provide reasonable and appropriate security to prevent unauthorized access to consumers’ personal information and did not honor the consumers’ privacy choices in designating certain tweets as nonpublic. Intruders exploited these failures and obtained administrative control of the Twitter system. These intruders were able to gain unauthorized access to nonpublic tweets and user information, reset any user’s password, and send unauthorized tweets from any user account.

Continue reading…

Tags: Consumer Protection, Enforcement, Federal Trade Commission, Online Privacy, Privacy Policy, Twitter

Israeli Supervisor of Banks Issues Letter on Social Networking

Reporting from Israel, legal consultant Dr. Omer Tene writes:

On July 28, 2010, the Israeli Supervisor of Banks, Rony Hizkiyahu, issued a letter to the CEOs of all local banks expressing concern over the banks’ and their employees’ use of online social networks, including both proprietary Web 2.0 tools and networking sites such as Facebook, Twitter, LinkedIn, MySpace and YouTube, all of which are explicitly referred to in the letter.  The Supervisor of Banks, Israel’s banking regulator, requires banks to take steps to ensure data protection and information security, including having outside experts perform risk assessments, creating and enforcing policies for use of social networking tools as well as guidelines and procedures for implementation and audit, and devising a data security strategy to address increased risks to employee and customer data.  These instructions are in addition to the Supervisor of Banks Proper Conduct of Banking Business Regulation No. 357, Information Technology Management, as well as applicable data protection law and regulations.

View the Supervisor of Banks’ letter (in Hebrew).

Tags: Facebook, International, Israel, LinkedIn, MySpace, Omer Tene, Social Media, Twitter, YouTube

Twitter Settles FTC Data Security Charges

Twitter has agreed to settle Federal Trade Commission charges that it deceived consumers and put their privacy at risk by failing to safeguard their personal information.  The charges stem from alleged lapses in the company’s data security that permitted hackers to access tweets that users had designated as private and to issue phony tweets from the accounts of some users, including then-President-elect Barack Obama.  According to the FTC’s complaint (main document, exhibits), these attacks on Twitter’s system were possible due to a failure to implement reasonable safeguards, including:

  • requiring employees to use hard-to-guess administrative passwords that are not used for other programs, websites or networks;
  • prohibiting employees from storing administrative passwords in plain text within their personal email accounts;
  • suspending or disabling administrative passwords after a reasonable number of unsuccessful login attempts;
  • providing an administrative login webpage that is made known only to authorized persons and is separate from the login page for users;
  • enforcing periodic changes of administrative passwords by, for example, setting them to expire every 90 days;
  • restricting access to administrative controls to employees whose jobs required it; and
  • imposing other reasonable restrictions on administrative access, such as by restricting access to specified IP addresses.

The proposed settlement agreement contains a consent order requiring Twitter to implement data security safeguards and submit to periodic independent security audits.  The FTC’s press release contains more details.

Tags: Consent Order, Consumer Protection, Enforcement, Federal Trade Commission, Information Security, IP Address, Online Privacy, Social Media, Twitter, Workplace Privacy