The Notification of Risk to Personal Data Act would set a national standard for notification of consumers when a database breach occurs. Only California, which has a notification law going into effect Tuesday, requires businesses or government to disclose attacks on databases that compromise an individual's personal information.
Feinstein's legislation is based, in part, on the new California law and requires a business or government entity to notify an individual when there is a "reasonable basis to conclude that a hacker or other criminal has obtained unencrypted personal data maintained by the entity."
The link for this article located at internet.com is no longer available.