Data Security , Privacy , Government Regulations FTC bans Kochava from selling location data without consent May 6, 2026 Share By SC Staff (Adobe Stock) The Federal Trade Commission (FTC) has reached a settlement with data broker Kochava and its subsidiary Collective Data Solutions (CDS), prohibiting them from selling location data without explicit consumer consent. This agreement resolves charges filed nearly four years ago concerning the collection and sale of precise geolocation data from mobile devices. The FTC sued Kochava in August 2022, alleging the company provided clients with access to sensitive location information, as reported by Bleeping Computer. The FTC's complaint detailed how Kochava collected and sold geolocation data from hundreds of millions of mobile devices, enabling clients to track users' movements to and from sensitive locations such as health clinics and places of worship. For a $25,000 subscription fee, clients gained access to this data through a feed via the Amazon Web Services Marketplace. The proposed order, filed in the U.S. District Court for the District of Idaho, will ban Kochava and CDS from selling, licensing, transferring, or disclosing precise location data unless they obtain affirmative express consent from consumers. The companies will also be required to establish a sensitive location data program, implement a supplier assessment program, allow consumers to request data disclosures and withdraw consent, submit incident reports to the FTC, and create a data retention and deletion schedule. This action follows previous FTC efforts to crack down on commercial surveillance and the sale of sensitive location data, including recent bans on other data brokers like InMarket Media, Outlogic, Gravy Analytics, and Mobilewalla. Source: Bleeping Computer SC Staff Related Security Operations Miles Taylor’s ‘GTFO ICE’ project allegedly exposed personal data of 17,662 users SC Staff May 6, 2026 The GTFO ICE website, intended as an advocacy tool to track and protest proposed Immigration and Customs Enforcement (ICE) detention facilities, reportedly suffered a significant data exposure due to an unprotected public REST API. Data Security Public voter data poses privacy risks, analysis finds SC Staff May 5, 2026 Noah M. Kenney, founder of consultancy Digital 520, conducted research using voter data from Travis County, Texas, and Robeson County, North Carolina. Security Operations U.S. state health insurance marketplaces reportedly shared user data with tech giants SC Staff May 5, 2026 The investigation by Bloomberg revealed that these trackers, commonly used for website analytics and bug identification, were misconfigured on healthcare exchange sites, leading to the collection and sharing of personal data. Related Events Cybercast Beyond the Hype: The Cybersecurity Trends CISOs are Keeping an Eye on in 2026 On-Demand Event Cybercast Beyond the data perimeter: Why next-generation DSPM is the foundation for modern data security On-Demand Event Virtual Conference Securing the Future of Finance: Strategies to Counter Modern Cyber Threats On-Demand Event Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe Related Terms Block Cipher Cyclic Redundancy Check (CRC) Data Aggregation Data Custodian Data Warehousing Digital Envelope Digital Signature Standard (DSS) Discretionary Access Control (DAC) Identity Theft Inference Attack You can skip this ad in 5 seconds