This article addresses data security issues in the cloud computing environment, with particular emphasis on legal aspects and examples of data breach incidents from 2020 to 2024. The aim of the paper is to highlight the main threats arising from cloud computing, assess the effectiveness of current legal regulations, and analyze the practices employed by cloud service providers and users regarding information protection. The publication discusses, among other things, basic concepts related to cloud computing, its history, evolution, and typologies; cloud service implementation models; and the technical architecture of cloud systems. Furthermore, it analyzes the legal provisions applicable to cloud computing, discussing key regulations such as the GDPR, the Act on the National Cybersecurity System, and copyright issues. The conclusions from the analysis confirm that the effectiveness of data protection in the cloud depends not only on the technologies used but also on the level of user awareness, correct service configuration, and compliance with applicable regulations. Data protection in cloud computing requires an integrated approach that combines legal, technical, and organizational aspects.