Close Menu
  • Home
  • Cybercrime and Ransomware
  • Emerging Tech
  • Threat Intelligence
  • Expert Insights
  • Careers and Learning
  • Compliance

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

What's Hot

Urgent: Exploitation of SAP Commerce Cloud CVE-2026-58231 Sparks Immediate Threat

September 19, 2026

Mastering Security: The One-Incident Test for Unified Platform Evaluation

September 19, 2026

GISEC 2026: Quantum, AI escalate cyberattack sophistication

September 19, 2026
Facebook X (Twitter) Instagram
The CISO Brief
  • Home
  • Cybercrime and Ransomware
  • Emerging Tech
  • Threat Intelligence
  • Expert Insights
  • Careers and Learning
  • Compliance
Home » Protecting your 23andMe data against resale
Uncategorized

Protecting your 23andMe data against resale

Staff WriterBy Staff WriterJune 11, 2025No Comments5 Mins Read12 Views
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email


Remember 23andMe? The company that gave customers saliva-based DNA testing kits to learn about their ancestry?

Founded in 2006, the company also conducted health research and drug development. But it struggled to find a profitable business model and eventually filed for Chapter 11 bankruptcy protection back in March, raising concerns about the safety of customer data.

Well, 27 states and the District of Columbia on Monday filed a lawsuit in bankruptcy court seeking to block the sale of the company’s archive of genetic data without customer consent. The lawsuit comes as a biotechnology company seeks court’s approval to buy the struggling firm.

If you were a customer of 23andMe, you’re probably wondering what is going on with your data. It turns out you do have options if you want to protect your genetic self.

What happened to 23andMe?

23andMe filed for Chapter 11 bankruptcy protection back in March. Anne Wojcicki, who co-founded the company nearly two decades ago and served as its CEO stepped down. The San Francisco-based company said that it would look to sell “substantially all of its assets” through a court-approved reorganization plan.

Wojcicki intends to bid on 23andMe as the company pursues a sale through the bankruptcy process. In a statement on social media, Wojcicki said that she resigned as CEO to be “in the best position” as an independent bidder.

23andMe said that filing for Chapter 11 bankruptcy protection helps facilitate a sale of the company, meaning that it’s seeking new ownership. The company said it wants to pull back on its real estate footprint and has asked the court to reject lease contracts in San Francisco and Sunnyvale, California, and elsewhere to help cut costs. But the company plans to keep operating during the process.

I used the service, is my DNA data safe?

In a post about the Chapter 11 process, 23andMe said its users’ privacy and data are important considerations in any transaction and that any buyer will be required to comply with applicable laws when it comes to how it treats customer data.

But experts note that laws have limits. For one, the U.S. has no federal privacy law and only about 20 states do.

There are also security concerns. For instance, the turmoil of bankruptcy and related job cuts could leave fewer employees to protect customers’ data against hackers. It wouldn’t be the first time — a 2023 data breach exposed the genetic data of nearly 7 million customers at 23andMe, which later agreed to pay $30 million in cash to settle a class-action lawsuit accusing the company of failing to protect customers whose personal information was exposed.

Experts note that DNA data is particularly sensitive — and thus valuable.

“At a fundamental biological level, this is you and only you,” said David Choffnes, a computer science professor at Northeastern University and executive director of its Cybersecurity and Privacy Institute. “If you have an email address that gets compromised, you can find another email provider and start using a new email address. And you’re pretty much able to move on with your life without problem. And you just can’t do that with your genetic code.”

23andMe says it does not share information with health insurance companies, employers or public databases without users’ consent and with law enforcement only if required by a valid legal process, such as a subpoena. Choffnes said while that’s good, it’s a fairly narrow set of categories.

“There’s still other things that they are allowed to do with that data, including, as they mentioned, provide cross context, behavioral or targeted advertising,” he said. “So, you know, in a sense, even if they aren’t sending your personal data to an advertiser, there’s a long line of research that identifies how third parties can re-identify you from de-identified data by looking for patterns in it. And so if they’re targeting you with advertisements, for example, based on some information that they have about your genetic data, there’s probably a way that other parties could piece together other information they have access to.”

How can I delete my data from 23andMe?

California Attorney General Rob Bonta issued an urgent consumer alert before 23andMe filed for bankruptcy — noting the company’s financial distress and reminding people they have the right to have their data deleted.

If you have a 23andMe account, you can delete your data by logging in and going to “settings” and scrolling to a section called “23andMe Data” at the bottom of the page. Then, click “View,” download it if you want a copy then go to the “Delete Data” section and click “Permanently Delete Data.” 23andMe will email you to confirm and you will need to follow the link in the email to confirm your deletion request.

If you previously asked 23andMe to store your saliva sample and DNA, you can also ask that it be destroyed by going to your account settings and clicking on “Preferences.” And you can withdraw consent from third-party researchers to use your genetic data and sample under “Research and Product Consents.”



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleDeep context for code securit
Next Article Binary Defense Announces Partnership with Palo Alto Networks
Avatar photo
Staff Writer
  • Website

John Marcelli is a staff writer for the CISO Brief, with a passion for exploring and writing about the ever-evolving world of technology. From emerging trends to in-depth reviews of the latest gadgets, John stays at the forefront of innovation, delivering engaging content that informs and inspires readers. When he's not writing, he enjoys experimenting with new tech tools and diving into the digital landscape.

Related Posts

CrowdSec Reveals NPM Attack Resulted in 170 Private GitHub Repo Copies

September 19, 2026

Gyazo Breach Exposes Over 23 Million User Records and Nearly 500 Million Image Metadata Entries

September 17, 2026

Russian State Hackers Rebuild Malware Using Claude After Detection

September 11, 2026
Leave A Reply Cancel Reply

Latest Posts

Urgent: Exploitation of SAP Commerce Cloud CVE-2026-58231 Sparks Immediate Threat

September 19, 2026

Suspected China-Linked Group Exploits VMware Flaw to Launch Babuk Ransomware

September 16, 2026

CISA Flags Critical Ray Flaw for Browser-Based RCE Exploits

September 13, 2026

TWINLOOT Exploits SharePoint and Teams to Steal Credentials and Lateral Movement

September 10, 2026
Don't Miss

CrowdSec Reveals NPM Attack Resulted in 170 Private GitHub Repo Copies

By Staff WriterSeptember 19, 2026

Essential Insights CrowdSec’s private GitHub repositories were copied by an attacker using an employee’s compromised…

Gyazo Breach Exposes Over 23 Million User Records and Nearly 500 Million Image Metadata Entries

September 17, 2026

Russian State Hackers Rebuild Malware Using Claude After Detection

September 11, 2026

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Recent Posts

  • Urgent: Exploitation of SAP Commerce Cloud CVE-2026-58231 Sparks Immediate Threat
  • Mastering Security: The One-Incident Test for Unified Platform Evaluation
  • GISEC 2026: Quantum, AI escalate cyberattack sophistication
  • CrowdSec Reveals NPM Attack Resulted in 170 Private GitHub Repo Copies
  • SolarWinds ARM Hard-Coded Key Enables RCE Exploitation
About Us
About Us

Welcome to The CISO Brief, your trusted source for the latest news, expert insights, and developments in the cybersecurity world.

In today’s rapidly evolving digital landscape, staying informed about cyber threats, innovations, and industry trends is critical for professionals and organizations alike. At The CISO Brief, we are committed to providing timely, accurate, and insightful content that helps security leaders navigate the complexities of cybersecurity.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Urgent: Exploitation of SAP Commerce Cloud CVE-2026-58231 Sparks Immediate Threat

September 19, 2026

Mastering Security: The One-Incident Test for Unified Platform Evaluation

September 19, 2026

GISEC 2026: Quantum, AI escalate cyberattack sophistication

September 19, 2026
Most Popular

Gefährliche Angriffe: Wie Cyberkriminelle Ihre Identität angreifen

January 29, 2026199 Views

CISA Alerts: Critical Vulnerability in Splunk Enterprise Under Active Attack

June 19, 2026198 Views

Salesforce Disables Klue App After Data Breach from Token Abuse

June 19, 2026196 Views

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025

Categories

  • Compliance
  • Cyber Updates
  • Cybercrime and Ransomware
  • Editor's pick
  • Emerging Tech
  • Events
  • Featured
  • Insights
  • Most Read
  • Threat Intelligence
  • Uncategorized
© 2026 thecisobrief. Designed by thecisobrief.
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions

Type above and press Enter to search. Press Esc to cancel.