Welcome To The Data Leak Lawyers Blog

We focus on the latest news surrounding data breaches, leaks and hacks plus daily internet security articles.

Tag: personal data

data protection
October 30, 2017

Nottinghamshire County Council fined £70,000 for leaving data belonging to vulnerable people exposed for 5 years

The Information Commissioner’s Office (ICO) issued Nottinghamshire County Council a fine of £70,000.00 for leaving sensitive personal data exposed online for half a decade.

The watchdog discovered the council’s ‘Home Care Allocation System’ (HCAS) was shared with care home providers using a simple link that did not require a username or a password.

The system contained a lot of personal information belonging to prospective and current care home users. Created in July 2011, the council was finally alerted to the security risk when a member of the public searched for HCAS online in June 2016 and found files readily accessible and completely unrestricted.
read more

By Author
phone hacking
October 23, 2017

Celebrity Steve Coogan awarded six-figure sum in damages for phone hacking scandal

Known for his portrayal of fictional character Alan Partridge, comedian Steve Coogan was the victim of a hacking scandal that led to details of his personal life published in newspapers, revealing intimate information about his family life, sexual encounters and alleged drug use.

Coogan is amongst dozens of other celebrities who have settled damages claims against Mirror Group Newspaper for reportedly hacking their phones to obtain private information to seemingly publish it in the media and, we assume, sell more papers.

It was a horrid scandal, and the levels of damages awarded goes to show the extent the courts are prepared to go to when people are the victim of malicious hacking.
read more

By Author
data breach
October 13, 2017

Employees reportedly need updated data security training

As technology in industry improves, many employees are being provided with more and more advanced devices and software to help for a more efficient workplace. From unified portals to mobile devices, employees are often given shiny new tools to work with all the time; but do they know how to use them safely?

A significant proportion of data breaches can result from employee mistakes: from accidental emails being sent, to uploading information online, and hackers targeting vulnerabilities to gain entry into customer databases. Cybersecurity experts have long identified employees as one of the weakest links when it comes to securing data in organisations.
read more

By Author
uber taxi settlement
September 28, 2017

Uber reaches settlement over inadequate data protection for customers

Uber Technologies Inc agreed a settlement with regulators last month after reportedly failing to protect customers from having their personal information accessed by company employees.

Investigations into the popular alternative taxiing service also found that Uber had perhaps been less than honest with the public about their data protection commitments.

Uber, now worth over £13 billion and offering services in 46 countries, have been accused of simply not caring about the data protection rights of their customers, instead simply focusing on profits. They’ve been accused of simply aiming to “amass the greatest database of consumer habits that the world has ever seen.”
read more

By Author
data protection
September 26, 2017

Recruitment manager pleaded guilty for sharing personal information belonging to job applicants

A recruitment manager at HomeServe Limited was prosecuted when it was discovered he’d been sharing personal information belonging to job applicants to a third party employment agency.

According to the Information Commissioners Office (ICO), the 39-year-old recruitment manager “sent copies of 26 CVs containing the personal data of applications seeking employment with HomeServe to an external recruitment firm, without a business need to do so”.

This is a clear breach of data protection laws.
read more

By Author
unsecured database compensation claims
September 25, 2017

Another NHS worker fined by the ICO for accessing and disclosing information from medical records

On the 11th August 2017 yet another NHS (now former) worker was fined by the Information Commissioner’s Office (ICO) for accessing sensitive health records belonging to family, friends and colleagues without authorisation.

She even disclosed information she found.

Brioney Woolfe worked at Colchester Hospital University NHS Foundation Trust as a Midwifery Assistant. The self-confessed ‘nosy’ midwifery assistant reportedly accessed 29 patient medical records, including the parents of her children’s school friends.
read more

By Author
data protection
September 20, 2017

TalkTalk fined £100,000 for putting 21,000 customers at risk of scams and fraud

As if the £400,000 fine last year was not enough, TalkTalk has been slapped with a £100,000 fine for reportedly breaching data protection laws over customer information.

Unlike the last fine which came off the back of countless customers’ information being exposed after a malicious hacking, TalkTalk is being fined for an alleged lack of information security, leaving customer data “open to exploitation by rogue employees.”

TalkTalk employees reportedly have access to a great deal of information, heightening the need for internal security measures.
read more

By Author
ico warn nhs staff over accessing medical records
September 19, 2017

ICO cautions NHS staff against illegally accessing patient medical records

The Information Commissioners Office (ICO) has specifically reminded NHS staff not to access patient medical records without proper reason and / or proper authority. Illegally accessing, obtaining and/or disclosing patient medical records without permission is not only a violation of patient data protection rights, but also exposes the wrongdoer and the NHS to legal action and costly fines.

This latest ICO warning was prompted by a recent case where a former health care assistant accessed medical records belonging to several patients without a valid reason. Over a period of a year and a half, Brioney Woolfe reportedly accessed patient files belonging to 29 individuals, including her family members, colleagues and other patients.
read more

By Author
mobile devices
September 13, 2017

Provident Personal Credit Limited fined £80,000 for sending a million nuisance texts over six month period

The Information Commissioner’s Office (ICO) has concluded investigations into a Bradford-based credit loan company after 285 complaints were made over unwarranted ‘nuisance’ text messages.

Provident Personal Credit Ltd reportedly employed third party vendors to send 999,057 text messages to promote their services. The text messages were unwarranted as the recipients had not agreed to receive such correspondence for marketing purposes.
read more

By Author
court action
August 23, 2017

J.P. Morgan Chase Bank face class action for recording calls without consumer consent

Reuters report that the J.P. Morgan (one of the largest financial corporations in the world) are facing a class action (otherwise known as a group action here) in the U.S. which is being brought by multiple aggrieved consumers and to be heard in the Californian federal court.

The case is in relation to J.P. Morgan allegedly recording calls without consent, which is reportedly a violation of state laws. The lawsuit, which reportedly only covers outbound calls, was filed on the 3rd of July in the ‘golden state’ with allegations that J.P. Morgan’s practice of recording calls without permission has been a problem for a long time.
read more

By Author

We offer genuine No Win, No Fee agreements for our clients. Why we do this is simple:

Leading Data Breach Lawyers
Our experience speaks for itself.
We will fight for your right to compensation.
Access to Justice
As a victim of a data breach or hack, you deserve your chance to get access to justice.
Risks Assessment
We carefully risk assess your case and take it on if we think we have a good chance of winning the claim.

Request A Callback From Our Team

Fill out our quick call back form below and we'll contact you when you're ready to talk to us.

Your privacy is extremely important to us. Information on how we handle your data is in our Privacy Policy

solicitors regulation authority

SRA
Contact
www.dataleaklawyers.co.uk is © of Your Lawyers Limited - we are 'Authorised and Regulated by the Solicitors Regulation Authority (SRA number 508768)'
arrow-up icon