California Initiates Legal Proceedings Against 23andMe After Significant Data Breach in 2023


We independently review everything we recommend. When you buy through our links, we may earn a commission which is paid directly to our Australia-based writers, editors, and support staff. Thank you for your support!

Brief Overview

  • California Attorney General Rob Bonta initiates legal action against 23andMe related to a data breach impacting 6.9 million customers in the U.S.
  • The incident unveiled sensitive genetic and personal information, occurring from April through September 2023.
  • 23andMe may incur substantial fines for breaching California’s privacy regulations.
  • This lawsuit follows the bankruptcy proceedings of 23andMe and the green light for a settlement fund.
  • There are worries about targeted data breaches affecting customers of Chinese and Ashkenazi Jewish descent.

Litigation Against 23andMe

In a noteworthy legal step, California Attorney General Rob Bonta has launched a lawsuit against the genetic testing firm 23andMe. This follows a major data breach that revealed the genetic and personal details of nearly 6.9 million U.S. customers, which includes 856,000 residents of California. The breach, occurring over a span of five months in 2023, exposed serious flaws in 23andMe’s data security protocols.

Consequences and Repercussions

The breach revealed sensitive data including health information, genetic tendencies, and family history, heightening concerns about data privacy and protection practices. The lawsuit from California is aimed at imposing civil penalties totaling “multiple millions” of dollars for infringing the state’s Genetic Information Privacy Act and consumer protection statutes.

Bankruptcy and Resolution

This lawsuit arises on the heels of 23andMe’s bankruptcy declaration in St. Louis, which complicates the collection of any potential judgments. However, a federal judge has sanctioned a settlement fund estimated between US$30 million and US$50 million to settle claims from impacted U.S. customers.

Privacy Issues

Among the allegations are suggestions that 23andMe neglected to alert customers about specific ancestries for which they were uniquely targeted. This has led to additional scrutiny of the company’s privacy policies, particularly regarding the distribution of customer data on the dark web.

Company Profile

Established in 2006 and headquartered in Palo Alto, 23andMe emerged as a leader in the genetic testing field before its public listing in 2021. Recent hurdles, such as the data breach and growing competition, have greatly impacted its business operations, prompting its Chapter 11 filing.

Conclusion

California’s lawsuit against 23andMe emphasizes the vital need for robust data security measures within the genetics sector. The case showcases the potential legal and financial consequences for firms that fail to protect sensitive customer data.

FAQ

Reader questions

Frequently asked questions

Fast answers to the questions readers ask most about California Initiates Legal Proceedings Against 23andMe After Significant Data Breach in 2023.

What led California to take legal action against 23andMe?

The lawsuit was triggered by a data breach that compromised millions of customers’ sensitive genetic and personal information, contravening California’s privacy laws.

How many individuals were impacted by the data breach?

Around 6.9 million U.S. customers, including 856,000 from California, were impacted by the breach.

What are the possible repercussions for 23andMe?

23andMe could face civil penalties amounting to “multiple millions” of dollars for infringements of privacy and consumer protection regulations.

What was the resolution of 23andMe's bankruptcy case?

A settlement fund between US$30 million and US$50 million was authorized to handle most claims from U.S. customers related to the data breach.

Were certain demographics particularly targeted during the data breach?

Yes, there are allegations indicating that individuals of Chinese and Ashkenazi Jewish heritage were specifically targeted in the breach.

Posted by Matthew Miller

Matthew Miller is a Brisbane-based Consumer Technology Editor at Techbest covering breaking Australia tech news.

Leave a Reply

Your email address will not be published. Required fields are marked *