UK: Information Commissioner’s Office reprimands Post Office for data breach


The Information Commissioner’s Office (ICO) has issued a reprimand to the Post Office following a data breach that resulted in the unauthorised disclosure of personal information belonging to hundreds of postmasters involved in the Horizon IT scandal.

The breach occurred when the Post Office’s communications team mistakenly published an unredacted version of a legal settlement document on its corporate website. The document contained the names, home addresses and postmaster status of 502 people who were part of a group litigation against the organisation. It remained publicly accessible from 25 April to 19 June 2024, before being removed following notification from an external law firm.

Read more…
Source: UKAuthority News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • UK: Cyber-attack sparks security fears over NHS provider’s data

    February 28, 2025

    The private healthcare group that will soon take charge of Swindon community care services has been hit by a cyber-attack. HCRG Care Group recently won the contract to provide care-at-home services in the Swindon area, which was previously managed by the trust in charge of Great Western Hospital, as well as other parts of Wiltshire. The company ...

  • Apple pulls data protection feature in UK amid government demands

    February 21, 2025

    Apple is scrapping its most advanced security encryption feature for cloud data in Britain, the company said on Friday, an unprecedented response to government demands for access to user data. The change affects a feature called Advanced Data Protection (ADP), which extends end-to-end encryption across a wide range of cloud data. Apple said it is no ...

  • Finastra Notifies Customers of Data Breach

    February 19, 2025

    British financial technology firm Finastra has notified customers impacted by a data breach that occurred over three months ago. Between October 31 and November 8, 2024, an unauthorized third party accessed the company’s secure file transfer platform (SFTP), used to share files with customers. Although the breach was detected on November 7, and the company acknowledged ...

  • UK: Man jailed for abusive emails to politicians

    February 18, 2025

    A 39-year-old man has been jailed for sending malicious communications to a government minister, the mayor of London and a senior Met Police officer. Jack Bennett, of Newlands Park, Seaton, Devon, pleaded guilty to four counts of sending malicious emails; one to Safeguarding Minister Jess Phillips, one to Metropolitan police officer Matt Twist, and two counts ...

  • Northern Ireland: Two people charged over alleged New IRA activity after PSNI data breach

    February 13, 2025

    Two men have appeared in court charged with terrorism offences linked to a major PSNI data breach. Brian Francis Cavlan, 49, from Coronation Park, Aughnacloy and Rory Martin Logan, 43, with an address given as HMP Maghaberry, appeared before court on Thursday. They were arrested on Tuesday as part of an ongoing police investigation into the ...

  • Gambling firms are secretly sharing your data with Facebook

    February 12, 2025

    While you might think you’re hitting the jackpot, whether you’ve consented to it or not, online gambling sites are playing with your data. Users’ data, including details of webpages they visited and buttons they clicked, are being shared with Meta, Facebook’s parent company. The Observer reports that over 150 UK gambling websites have been extracting visitor ...