← Front PageCompliance Desk
Compliance
UK water company allowed hackers to lurk undetected for nearly two years, regulator finds
Nearly £1M fine demonstrates how prolonged attacker dwell time amplifies regulatory penalties under UK data protection law, with 630K+ records exposed after two-year compromise window.
Summary written by editorial AI · Source link below
The Information Commissioner's Office (ICO) fined South Staffordshire Water £963,900 ($1.3 million) on Monday over an attack by the Cl0p ransomware group that led to the personal data of 633,887 customers and employees being published in August 2022.
Continue at the source
Read the full report at The RecordExternal link — opens at The Record in a new tab.
§
Continue with
More from the Compliance Desk
- Compliance teams have gone continuous, but their evidence-gathering hasn’t caught up3d
- Population-Calibrated Graph Screening at 835-Million-Address Scale, with Label-Free Transfer to New Chains4d
- French hospital fined €500,000 after breach exposes data of 727,0004d
- Identification of Compositional Risks in Data Protection Impact Assessments and Beyond6d
- You Know GDPR Is Good Based on Who Hates It29 Aug