FeedExploreAsk AIAlertsSavedProfile

Categories

AICybersecurityInfrastructureDatabaseTech Updates

Tech news that matters.

FeedExploreAskAlertsSavedProfile
Back to feed
Cybersecurity·High

California Sues 23andMe Over Security Failures

A gavel and a DNA helix, representing the lawsuit against 23andMe for its data breach.

TL;DR: California's Attorney General is suing the company that now holds 23andMe's assets. The lawsuit, filed on May 27, 2026, alleges significant security failures and misleading statements related to the major 2023 data breach that exposed sensitive genetic information of millions of users.

By Neeraj Dhiman·3h ago·1 min read·updated 59m ago
Source

Key facts

Category
Cybersecurity
Impact
High
Published
3h ago
Source
Malwarebytes Labs

Full summary

California is suing the company holding 23andMe's assets over its massive 2023 data breach, alleging major security failures and misleading statements.

California's Attorney General has filed a lawsuit against Chrome Holding Co., the successor to the DNA testing company 23andMe, following its bankruptcy. The suit, filed in San Francisco Superior Court on May 27, 2026, addresses the major data breach that occurred in 2023. The state's complaint accuses the company of significant security failures that led to the exposure of sensitive genetic information belonging to millions of users. Furthermore, the lawsuit alleges that the company made misleading statements about the incident, failing to provide a clear and accurate account of the breach's scope and impact.

This legal action serves as a critical reminder for tech leaders about the long-term consequences of security vulnerabilities. The case highlights how regulatory bodies are holding companies accountable for protecting sensitive user data, with legal and financial repercussions extending even after major corporate changes like bankruptcy. For security teams and CTOs, the lawsuit underscores the importance of defending against common attack vectors like credential stuffing and implementing robust monitoring systems. The outcome could set a precedent for corporate liability in breaches involving highly personal information, such as genetic data.

Why it matters

This lawsuit is a significant case study for tech companies on the long-term legal ramifications of data breaches. It highlights the growing regulatory scrutiny on how companies handle sensitive user data and communicate security failures, particularly from state attorneys general.

Business impact

The legal action against 23andMe's successor, even after bankruptcy, underscores that financial and reputational liability from security incidents can persist for years. For founders and CTOs, it reinforces the need for proactive security investment to avoid severe, long-tail legal risks and brand damage.

Tags

#security#lawsuit#data breach#california#23andme

Related on Notifire

  • ResearchKubernetes security
  • ResearchSupply-chain security
  • ResearchCritical CVEs of 2026

✦ Notifire newsletter

Get more Cybersecurity intelligence

Join engineers getting Notifire’s verified tech briefings — short, sourced, and free. No spam, unsubscribe anytime.

The day's most important tech briefings. No spam, unsubscribe anytime.

Primary source: Malwarebytes Labs

Tech intelligence for engineering teams

Short, verified briefings on AI, cybersecurity, infrastructure, and data — with the analysis and action steps that matter. Every briefing is sourced, fact-checked, and bylined to a named editor.

[email protected]Story tips & corrections welcomeHow we report →

The Notifire briefing

Verified tech intelligence in your inbox — AI, security, infra, and data.

The day's most important tech briefings. No spam, unsubscribe anytime.

Sections

  • AI
  • Cybersecurity
  • Infrastructure
  • Database
  • Tech Updates
  • Web3 & Chains

Newsroom

  • About Notifire
  • Editorial team
  • Editorial standards
  • Methodology
  • AI disclosure
  • Corrections

Resources

  • Explore
  • Research hubs
  • Comparisons
  • Tech glossary
  • FAQ
  • Alerts & watchlists

Follow

  • RSS feed
© 2026 NotifirePrivacyTermsCorrections
An independent, AI-assisted publication. Built at </Alpheric>
IntelligenceLive panel
Live

Top trending

Last 24h

    Popular tags

    Add to watchlist

    +OpenAI+Claude+PostgreSQL+Kubernetes+Cloudflare+AWS+CVE Critical

    Notifire score

    0–100 priority signal — combines impact, freshness, trending velocity, and source credibility.

  1. Atom feed
  2. LinkedIn
  3. X / Twitter
  4. Facebook
  5. Instagram
  6. YouTube