ITPRO

Printed from www.itpro.co.uk

Register to receive our regular email newsletter at http://www.itpro.co.uk/reg/register.

The newsletter contains links to our latest IT news, product reviews, features and how-to guides, plus special offers and competitions.

Skip to navigation

    Top 10 most embarrassing data breaches

Inspired by a notable security gaffe at BP, we give our rundown of the most embarrassing data breaches in recent memory.

By Tom Brewster, 1 Apr 2011 at 17:34

Data security

Every data breach brings the risk of embarrassing not only the company involved but also those whose information is compromised.

All too often we see breaches where truly sensitive data, such as medical information, is leaked, harming the organisation’s reputation and infringing people’s privacy simultaneously.

As a case in point, this week BP was guilty of losing a laptop containing personal data on around 13,000 claimants from the disastrous Deepwater Horizon oil spill of 2010.

Given the furore surrounding the oil spill, that particular loss was made all the more embarrassing for the firm.

Inspired by such epic gaffes, we’ve drawn together the 10 most mortifying breaches in recent memory.

10. First ICO fines

There have been far worse breaches than those that occurred at Hertfordshire County Council and employment services company A4e last year.

The reason why these two have been included in the list (making it a top 11 really…) is that they were the first to be punished with an Information Commisioner’s Office fine.

The anticipation in the lead up to the ICO’s first monetary punishments meant whoever was forced to pay up would be left blushing.

Admittedly, their errors were fairly shaming in themselves. The council was reprimanded for two serious incidents when employees faxed highly sensitive personal information to the wrong recipients.

A4e had an unencrypted laptop stolen, which contained personal data on 24,000 people who had used community legal advice centres in Hull and Leicester.

If and when the ICO hands out the maximum £500,000 fine, the guilty organisation can expect to be even more shamefaced.

Previous
1 2 3 4

Email to a friend

Print this page

< Previous   Security : Analysis & Insight Next >

Be the first to comment on this article

You need to Login or Register to comment.

    You may also like...

 Sponsored Links

advertisement

    You may also like...

    Latest Security Tutorials

PC on a drip (virus protection)

How to protect a group of office PCs from viruses

Safeguarding multiple office computers from malware doesn't have to be difficult or expensive, as Simon Edwards shows in our step-by-step guide.

Read more

 
advertisement

    Latest Analysis & Insight Videos in Security

Why security should top the cloud agenda

Play Why security should top the cloud agenda   Play

Security should always be paramount in business, but with a cloud based infrastructure it’s arguably even more important. Steve Cassidy and...

 
Sponsored Links
Advertisement