Privacy group fights European Parliament over ‘massive’ HR data breach


The European Parliament’s headache over a major human resources data breach earlier this year just won’t fade. Austria-based digital rights group noyb on Thursday said it had filed two complaints against the European Union institution for infringing the bloc’s flagship privacy law, the General Data Protection Regulation (GDPR), over a data breach discovered before the summer.

In June, Parliament notified up to 9,000 staffers that it had suffered a data breach of its recruitment application PEOPLE, which contained staffers’ ID details, birth certificates, employment history, medical records, marriage certificates — which revealed sexual orientation — and proof of work dating back 10 years.

Read more…
Source: Politico Europe


Sign up for our Newsletter


Related:

  • Over the Kazuar’s nest: Cracking down on a freshly hatched backdoor used by Pensive Ursa

    October 31, 2023

    While tracking the evolution of Pensive Ursa (aka Turla, Uroburos), Unit 42 researchers came across a new, upgraded variant of Kazuar. Not only is Kazuar another name for the enormous and dangerous cassowary bird, Kazuar is an advanced and stealthy .NET backdoor that Pensive Ursa usually uses as a second stage payload. Pensive Ursa is a ...

  • British Library suffering major technology outage after cyber-attack

    October 31, 2023

    The British Library is suffering a technology outage after it was hit by a cyber-attack, which is affecting services online and its sites in London and Yorkshire. Access to the website, as well as the catalogue and digital collections, is temporarily unavailable. The collection of items ordered on or after 27 October, new collection item orders ...

  • From Albania to the Middle East: The Scarred Manticore is listening

    October 31, 2023

    Check Point Research, in collaboration with Sygnia’s Incident Response Team, has been tracking and responding to the activities of Scarred Manticore, an Iranian nation-state threat actor that primarily targets government and telecommunication sectors in the Middle East. Scarred Manticore, linked to the prolific Iranian actor OilRig (a.k.a APT34, EUROPIUM, Hazel Sandstorm), has persistently pursued high-profile organizations, ...

  • Police Service of Northern Ireland reprimanded over unlawful data sharing

    October 28, 2023

    The Police Service of Northern Ireland (PSNI) has been reprimanded for unlawfully sharing personal data on 174 people with a law enforcement agency in the United States. It follows an investigation by the UK data watchdog, the Information Commissioner’s Office (ICO). The ICO said multiple infringements of the Data Protection Act occurred between 2018 and late ...

  • Sheffield Hallam cryptocurrency investigation game wins European Commission Award

    October 24, 2023

    A first-of-its kind cryptocurrency-tracing training game co-created by Sheffield Hallam University’s Centre of Excellence in Terrorism, Resilience, Intelligence and Organised Crime Research (CENTRIC) has won a prestigious European Commission Award. Cryptopol was developed and co-created by researchers in CENTRIC and Europol, the law enforcement agency of the EU, in 2019. It simulates a cryptocurrency investigation ...

  • Irish-linked spyware used in brazen attacks

    October 21, 2023

    The Irish government is set to investigate a digital surveillance alliance that has been accused of letting its smartphone spyware “run wild across the world”, BBC News NI understands. It comes after Intellexa Limited and its parent company Thalestris were named in a damning report by a leading human rights body. The firms are registered at ...