P&O Ferries data blunder as it sends out passengers’ personal details by text message


P&O Ferries was hit by a data breach after mistakenly sending out a full list of passengers’ personal details by text message this morning, we can reveal. A blunder saw the details of 432 passengers travelling on the 12pm P&O ferry from Calais to Dover sent as an attachment in a customer services text message.

It is not clear if the error only happened for this ferry or a more widespread breach has occurred hitting more P&O Ferries crossings today. The message seen by This is Money and the Daily Mail was sent on one of the busiest travel days of the year, as holidaymakers return from trips at the end of the school holidays.

Read more…
Source:  This is money


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • UK: Cambridge Water customers’ bank details published to dark web after cyber attack

    December 3, 2022

    Bank account details of Cambridge Water customers have been published to the dark web, following a cyber attack. Customers have been left alarmed and furious after learning that names and current addresses, sort codes and account numbers are among the data stolen by cyber criminals from its parent company, South Staffordshire plc, back in August. Cambridge Water ...

  • Cybersecurity laws to be updated to boost UK protection from cyber attacks

    November 30, 2022

    The UK’s cybersecurity laws will be updated to require outsourced IT providers to meet security standards as part of efforts to better protect supply chains, the Government has announced. The Network and Information Systems (NIS) Regulations will be updated so third-party firms providing IT services to businesses will be compelled to have effective cybersecurity measures in ...

  • Donut extortion group also targets victims with ransomware

    November 22, 2022

    The Donut (D0nut) extortion group has been confirmed to deploy ransomware in double-extortion attacks on the enterprise. BleepingComputer first reported on the Donut extortion group in August, linking them to attacks on Greek natural gas company DESFA, UK architectural firm Sheppard Robson, and multinational construction company Sando. Strangely, the data for Sando and DESFA was also posted ...

  • NHS tech chief dismisses concerns over loss of statutory power to protect patient data

    November 16, 2022

    An outgoing NHS tech chief has defended the decision to merge his organization with a UK government-run unit, arguably diluting the statuary protection of patient data. Simon Bolton, interim chief executive of the soon-to-be-defunct NHS Digital, said the merger of the organization with NHS England, a non-departmental government body, was necessary to “provide real clarity of ...

  • British government is scanning all Internet devices hosted in UK

    November 4, 2022

    The United Kingdom’s National Cyber Security Centre (NCSC), the government agency that leads the country’s cyber security mission, is now scanning all Internet-exposed devices hosted in the UK for vulnerabilities. The goal is to assess UK’s vulnerability to cyber-attacks and to help the owners of Internet-connected systems understand their security posture. NCSC’s scans are performed using tools ...

  • British spies playing key role in defending Kyiv from Russian cyber attacks

    November 1, 2022

    British cyber spies have been playing a key role in defending Ukraine from widespread Russian cyber attacks since the start of the invasion, it has been confirmed. The damage caused by Russian hackers would have been “very significant” without the British assistance, Leo Docherty, a junior foreign office minister, said. He told Sky News the UK has ...