Federal Trade Commission has reached settlement agreements with a debt collector and an automobile dealership. The debt collector incident affected 3,800 hospital patients; the auto dealer case affected 95,000 individuals. Settlement agreements call for both businesses to establish and maintain comprehensive information security programs and undergo biennial data-security audits conducted by independent auditors for the next 20 years. Both businesses allowed peer-to-peer file-sharing software to be installed on their corporate computer systems, violating the businesses’ obligation to protect consumer privacy.”]
Source: https://www.bankinfosecurity.com/ftc-highlights-p-to-p-network-risks-a-4841

