On December 17, 2025, a bipartisan group of 23 Attorneys General from the states of Arizona, California, Colorado, Connecticut, Delaware, Hawai’i, Illinois, Maine, Maryland, Massachusetts, Minnesota, Nevada, New Jersey, New Mexico, North Carolina, Oregon, Rhode Island, Tennessee, Utah, Vermont, Washington, Wisconsin, and the District of Columbia, sent a comment letter to the Federal Communications Commission
New Jersey
‘Tis the Season for Safer Shopping: New Jersey’s Gift Card Fraud Notice and Packaging Requirements
Gift cards are a perennial favorite for holiday shoppers. They’re easy to wrap, universally appreciated, and always the right size. But as gift-giving season approaches, it’s important to remember that gift cards are also a common target for scams. In 2024, Governor Phil Murphy signed into law new requirements governing the sale and display of…
TikTok’s Legal Woes from State AGs Continues
Last week, we outlined the lawsuits against TikTok by New York, California, and North Carolina, that followed in the footsteps of Nebraska, Nevada (which filed suit against TikTok in February of 2024), and Indiana, which filed suit against TikTok in 2022. Since last week, at least 11 more states have joined the fray, including…
Three More States Sue TikTok Alleging Harm to Young Users
Following in the footsteps of Nebraska, the Attorneys General of North Carolina, California, and New Jersey filed complaints against TikTok and its owner, ByteDance, Ltd., on October 8, 2024.
The suits are lengthy and full of allegations against TikTok and how it is responsible for a “profound mental health crisis” of American teenagers. The…
EyeMed Pays Four State AGs $2.5M for Data Breach
EyeMed Vision Care, LLC has agreed to settle allegations lodged against it by four state Attorneys General for $2.5 million stemming from a data breach that occurred in 2020 and effected 2.1 million people.
The settlement is with the AGs of Florida, New Jersey, Oregon, and Pennsylvania. The breach occurred when threat actors infiltrated EyeMed’s…
Tracking Employees with GPS? New Jersey Law Requires Employers to Give Written Notice to Employees Before Using a Tracking Device in Employee Vehicles
Private employers in New Jersey need to be aware of the latest employee privacy law that will take effect on April 18, 2022. A3950 prohibits employers from knowingly using a “tracking device” in a vehicle used by an employee without providing written notice to the employee.
Employers that violate this new law can be subject…
At Least 22 States Have Consumer Privacy Legislation Pending – Will 2022 Be the Year for More State Privacy Laws?
California is the gold standard for state privacy laws, having recently enacted the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA). Virginia and Colorado also have enacted comprehensive privacy laws, which will take effect in 2023. Recently, the International Association of Privacy Professionals (IAPP) released its state privacy legislation tracker.…
New Jersey Settles with Cancer Center Over Business Email Compromise
One of the challenging things about HIPAA (Health Insurance Portability and Accountability Act) enforcement is the fact that both the Office for Civil Rights and State AGs have jurisdiction to assess fines and penalties for HIPAA violations. The old double whammy.
States enforce those rights sparingly, but New Jersey is getting itself on the map…
Volkswagen and Audi Hit with Data Breach Class Action
This week, Volkswagen AG’s U.S. entity and its Audi brand were hit with a class action for a data breach that allegedly compromised 3.3 million consumers’ personal information. In the U.S. District Court for the District of New Jersey, a California consumer filed a suit against the automakers on behalf of other current and prospective…
CafePress to Pay $2 Million in Multi-State Data Breach Settlement
On December 18, seven states have entered into a settlement agreement with e-retailer Cafe-Press for $2 million stemming from a 2019 data breach that exposed information of approximately 22 million consumers. The breach affected consumers’ personal information, including usernames and passwords, Social Security numbers, and/or Taxpayer Identification numbers.
Of the $2 million, $750,000 will be…