ICO, CNIL and German DPA revised cookies guidelines: Convergence and divergence (Sep 2019)
Mozilla: Recommended Server configurations (TLS ciphers)
FieldFisher post on Data Scraping (under GDPR)
Complaints filed by Privacy International (Nov 2019)
on tracking, cookies, data brokers
https://privacyinternational.org/advocacy/2426/our-complaints-against-acxiom-criteo-equifax-experian-oracle-quantcast-tapad
This includes good summaries of legal theories and business models for
- Acxiom and Oracle – https://privacyinternational.org/sites/default/files/2018-11/08.11.18%20Final%20Complaint%20Acxiom%20%26%20Oracle.pdf
- Experian and Equifax – https://privacyinternational.org/sites/default/files/2018-11/08.11.18%20Final%20Complaint%20Experian%20%26%20Equifax.pdf
- AdTech Criteo, Quantcast, Tapad – https://privacyinternational.org/sites/default/files/2018-11/08.11.2018%20Final%20Complaint%20AdTech%20Criteo%2C%20Quantcast%20and%20Tapad.pdf
CNIL publishes its own register of processing activities (as example)
The actual registry (in French), 121 pages:
https://www.cnil.fr/sites/default/files/atoms/files/registre-rgpd-cnil_decembre-2019.pdf
Press article in French:
https://www.cnil.fr/fr/la-cnil-publie-son-registre-rgpd
Google and University of Chicago sued over patient records
Some information left on shared records could be combined with Google’s geolocation data to identify patients, a lawsuit alleges.
https://www.cnet.com/news/google-and-university-of-chicago-sued-over-patient-records/#ftag=COS-05-10aaa0j