Proposed guidelines on GDPR fines by European DPAs

Organizations often ask how much chance they have on data protection fines and how much financial reserve they should make for that. Unit 27 June EDPB guidelines on calculating GDPR fines are released for public consultation. Interesting is to have a look at the example for mitigating and aggravating factors that could influence the height … Read more

Vodafone Spain almost 4 million Euros GDPR fine for loss of confidentiality related to mobile phone sim card duplicate and a lack of accountability

“Various claims are filed as a result of the issuance of duplicate SIM cards to third parties other than subscribers. As a result of the above, the holders of the telephone line are not only left without service, but the third parties access their bank accounts.” “Spanish DPA carries out research actions to analyze the … Read more

Salary and personal data of 637,138 residents leaked

The personal and salary data of 637,000 Albanians, about a quarter of the population, has been stolen and leaked on the internet. It concerns names, identity card and passport numbers, telephone numbers, salary, position and employer that are contained in two Excel documents that are shared via WhatsApp, according to the Albanian Exit News. The … Read more

How T-Mobile, with of 40 million users affected by the databreach, was hacked?

According to the CEO the bad actor leveraged their knowledge of technical systems, along with specialized tools and capabilities, to gain access to our testing environments and then used brute force attacks and other methods to make their way into other IT servers that included customer data. Compromised information includes customer names, addresses, Social Security … Read more

Microsoft Power Apps (BI) leaked 38 million personal data records

Power Apps, a low-code development platform for creating business-intelligence tools, were susceptible to a default configuration that made their data sets findable by search engines or anyone with knowledge of the web address. 38 million records pf 47 organizations— containing names, dates of birth, addresses and, in some cases, Social Security numbers were exposed.

Ransomware pandemic gets AXA

Cyberinsurance giant AXA said that it would no longer be writing policies to cover ransomware payments. Now AXA in Thailand, Malaysia, Hong Kong, and the Phillippines have reportedly been hit… by a ransomware attack. The ransomware gang posted on its website over the weekend that it had stolen 3 terabytes worth of data, including: customers’ … Read more