Home Office admits to Windrush compensation data breach

Immigration Minister Caroline Nokes says “an administrative error” exposed email addresses of vitcims

Windrush scandal protest

The Home Office has admitted to exposing the email addresses of migrants involved in the Windrush compensation scheme and breaching data protection regulations.

Immigration Minister Caroline Nokes released a statement apologising for the data breach which exposed some 500 email addresses, The Guardian reported.

"Regrettably, in promoting the scheme via email to interested parties, an administrative error was made, which has meant data protection requirements have not been met, for which the Home Office apologises unreservedly," said Nokes.

"This occurred in emails sent to some of the individuals and organisations who had registered an interest in being kept informed about the launch of the compensation scheme, which included other recipients' email addresses. Five batches of emails, each with 100 recipients, were affected. No other personal data was included."

An internal review of the incident has been launched and the issue has been referred to the Information Commissioner's Office. The ICO has yet to comment on the news.

Advertisement
Advertisement - Article continues below
Advertisement - Article continues below

Whether the administrative error was technical or down to human error has yet to be revealed, but it would suggest that some of the mechanisms behind government online schemes could do with an overhaul.

The Windrush payment scheme itself is designed to compensate migrants, who came over to the UK from Caribbean countries between 1948 and 1971, for any poor treatment they might have received after changes in immigration law in 2012, which saw those without documentation classified as illegal immigrants.

Public outcry to the manner in which the migrants were treated, despite living in the UK for decades, resulted in the Home Office setting up the compensation scheme.

The subsequent data breach occurred just one week after the compensation scheme was launched.

In July last year, the UK government was forced to apologise after accidentally allowing sensitive documents accessible through a Google search. An investigation revealed that names, phone numbers, email addresses, as well as calendar appointments and the details of those attending, were leaked through a misconfigured board hosted by web collaboration tool Trello.

Featured Resources

What you need to know about migrating to SAP S/4HANA

Factors to assess how and when to begin migration

Download now

Your enterprise cloud solutions guide

Infrastructure designed to meet your company's IT needs for next-generation cloud applications

Download now

Testing for compliance just became easier

How you can use technology to ensure compliance in your organisation

Download now

Best practices for implementing security awareness training

How to develop a security awareness programme that will actually change behaviour

Download now
Advertisement

Most Popular

Visit/microsoft-windows/32066/what-to-do-if-youre-still-running-windows-7
Microsoft Windows

What to do if you're still running Windows 7

14 Jan 2020
Visit/operating-systems/25802/17-windows-10-problems-and-how-to-fix-them
operating systems

17 Windows 10 problems - and how to fix them

13 Jan 2020
Visit/operating-systems/microsoft-windows/354526/memes-and-viking-funerals-the-internet-reacts-to-the
Microsoft Windows

Memes and Viking funerals: The internet reacts to the death of Windows 7

14 Jan 2020
Visit/hardware/laptops/354533/dell-xps-13-new-9300-hands-on-review-chasing-perfection
Laptops

Dell XPS 13 (New 9300) hands-on review: Chasing perfection

14 Jan 2020