Privacy group fights European Parliament over ‘massive’ HR data breach


The European Parliament’s headache over a major human resources data breach earlier this year just won’t fade. Austria-based digital rights group noyb on Thursday said it had filed two complaints against the European Union institution for infringing the bloc’s flagship privacy law, the General Data Protection Regulation (GDPR), over a data breach discovered before the summer.

In June, Parliament notified up to 9,000 staffers that it had suffered a data breach of its recruitment application PEOPLE, which contained staffers’ ID details, birth certificates, employment history, medical records, marriage certificates — which revealed sexual orientation — and proof of work dating back 10 years.

Read more…
Source: Politico Europe


Sign up for our Newsletter


Related:

  • Northern Ireland: Hoax bomb accused takes legal action in bid to stop police accessing mobile phone material

    September 26, 2024

    A Co Tyrone man accused of buying parts for a hoax bomb left outside a police station is taking High Court action in a bid to stop detectives extracting messages and photos from his mobile phone. Sean Pearson claims the plans to obtain any information stored on devices seized during a raid on his home breaches ...

  • NATO trains countries to respond to cyber attacks on renewables

    September 26, 2024

    As the war in Ukraine rages on and Russia pounds Ukraine’s energy facilities, Europe’s renewable energy sector is increasingly vulnerable to hybrid warfare. In Jönköping, NATO has set up an exercise training participants to deter, prepare and react to hybrid cyber security threats to renewable energy sources. Under the Nordic Pine Hybrid Threats to Renewable Energy ...

  • UK railway stations Wi-Fi affected by cyber attack

    September 26, 2024

    The wi-fi has been hacked at 19 UK railway stations to display a message about terror attacks. Network Rail confirmed that the wi-fi systems at stations including London Euston, Manchester Piccadilly, Liverpool Lime Street, Birmingham New Street, Edinburgh Waverley and Glasgow Central were affected. People reported logging on to the wi-fi at the stations on Wednesday ...

  • From 12 to 21: How Kaspersky discovered connections between the Twelve and BlackJack groups

    September 25, 2024

    While analyzing attacks on Russian organizations, Kaspersky team regularly encounters overlapping tactics, techniques, and procedures (TTPs) among different cybercrime groups, and sometimes even shared tools. Kaspersky researchers recently discovered one such overlap: similar tools and tactics between two hacktivist groups – BlackJack and Twelve, which likely belong to a single cluster of activity. In this report, ...

  • ‘Two-factor authentication may have stopped Synnovis cyber attack’

    September 25, 2024

    The cyber attack on pathology provider Synnovis could have been prevented by two-factor authentication, according to Beverley Bryant, strategic advisor in the frontline digitisation team at NHS England. Speaking at the Health Excellence Through Technology (HETT) conference on 24 September 2024, in a session titled ‘Best practice in cyber security: Achieving excellence in the health and ...

  • UK: Cyber incident ‘was an accident – not an attack’

    September 23, 2024

    A cyber incident which forced a council to shut down its IT systems was not an “attack, it was an accident”, it is understood. Tewkesbury Borough Council declared a major incident on 4 September after the incident, which a source said was its “own systems testing its own security”. People selling or buying homes in the ...