Samsung website error exposes UK customer data

The data breach is the latest of Samsung’s “technical errors”

Samsung's UK website has suffered a data breach resulting in the leak of private information of around 150 customers, the company has confirmed.

Samsung said that the error exposed names, telephone numbers, postal and email addresses and previous orders, according to a statement seen by Reuters. Samsung emphasised that credit card information was not exposed.

An unnamed representative for the Korean tech giant told The Register on Tuesday that Samsung’s website was affected by a “technical error” that only targeted accounts of UK users, however the exact nature of the error is unclear.

“As soon as we became aware of the incident, we removed the ability to log in to the store on our website until the issue was fixed,” they said.

The UK's data watchdog, the Information Commissioner's Office, has said that it has yet to receive a data breach report from Samsung, in an email to IT Pro. Companies are required by law to notify the ICO if a data breach is considered serious enough, and likely to infringe on the rights of data subjects.

“People have the right to expect that organisations will handle their personal information securely and responsibly," the authority said. "Where that doesn’t happen, people can come to the ICO and we will look into the details."

“When a data incident occurs, we would expect an organisation to consider whether it is appropriate to contact the people affected, and to consider whether there are steps that can be taken to protect them from any potential adverse effects."

Related Resource

Digital Risk Report 2020

A global view into the impact of digital transformation on risk and security management

Download now

Samsung said that they "will be contacting those affected by the issue with further details".

The UK website data breach only adds to the mounting concern among Samsung customers. The news follows last week’s incident in which some Samsung phone users received an unexpected Find My Mobile push notification, including those who had the location-tracking application disabled on their phones. Press representatives for the company did not respond to IT Pro’s request for comment.

Featured Resources

Consumer choice and the payment experience

A software provider's guide to getting, growing, and keeping customers

Download now

Prevent fraud and phishing attacks with DMARC

How to use domain-based message authentication, reporting, and conformance for email security

Download now

Business in the new economy landscape

How we coped with 2020 and looking ahead to a brighter 2021

Download now

How to increase cyber resilience within your organisation

Cyber resilience for dummies

Download now

Recommended

CVS Health data breach leaves a billion records exposed
data protection

CVS Health data breach leaves a billion records exposed

16 Jun 2021
Researchers send “unhackable” quantum data over 370-mile optical fiber
data protection

Researchers send “unhackable” quantum data over 370-mile optical fiber

11 Jun 2021
New study shows global privacy investments increasing
data protection

New study shows global privacy investments increasing

2 Jun 2021
Misconfigured cloud services exposed 100 million Android users' data
data breaches

Misconfigured cloud services exposed 100 million Android users' data

21 May 2021

Most Popular

How to find RAM speed, size and type
Laptops

How to find RAM speed, size and type

16 Jun 2021
What is HTTP error 400 and how do you fix it?
Network & Internet

What is HTTP error 400 and how do you fix it?

16 Jun 2021
EU plans to launch bloc-wide cyber task force
cyber attacks

EU plans to launch bloc-wide cyber task force

22 Jun 2021