Data Breach Debacle: Electoral Commission’s 300-Day Delay in UK’s Largest Hack in History!

By |2023-08-10T08:42:57+00:00August 10th, 2023|

On the ICO website it clearly states that organisations suffering data breaches must report it within 72 hours of being made aware of the breach. Lets be clear 72 hours. That equates to three days, Not the 300 days it has taken the Electoral Commission to fess up to THE BIGGEST data breach in UK history. For those that have missed the headlines The Electoral Commission reported a breach on 8th August 2023 having discovered in October 2022 that hackers were playing fast and loose with its systems since August 2021. This includes unfettered access to the names and addresses of at least 40 million people registered to vote between 2014 and 2022. Oh dear. The eagle eyed of you [...]

Those most likely to donate as a result of Direct Mail

By |2023-07-21T09:18:23+00:00July 21st, 2023|

A new study, The Future of Direct Mail 2023, reinforces the effectiveness of direct mail, with the overwhelming finding that 81% of people engaging with direct mail in some way. Almost two thirds were found to have purchased a physical product as a result of receiving a piece of DM, 43% took advantage of a discount or special offer that was promoted through the mail, 35% applied for a financial product whilst 25% donated to charity as a direct result of a call to action within a mail pack. With charity fundraising suffering as a result of the cost-of-living crisis, understanding the impact of direct mail and who is most likely to respond is incredibly valuable. The report finds that, [...]

Data processing security is key data concern for 2023

By |2023-07-11T13:01:31+00:00July 11th, 2023|

Our latest review of the GDPR enforcements undertaken by the ICO over the past 12 months reveals that data processing security and right of access are the most common infringements since July 2022. Almost a third (30 per cent) of the 30 recorded infringements this year pertained to Article 5, the principles relating to data processing and of these 21 per cent were for Article 5 (f) which specifies that personal data must be processed in a manner that ensures appropriate security. Sixteen per cent contravened Article 15: Right of Access by the data subject and 15 per cent were non-compliant to Article 12 (data transparency) and Article 32 (security of processing). Last year the lion’s share of enforcements (61 [...]

Has MOVEit made you think more seriously about data governance?

By |2023-06-19T13:04:59+00:00June 19th, 2023|

If not, it should and here’s why As the days roll by it is becoming increasingly clear that the MOVEit vulnerability which was discovered earlier this month is having very, very far-reaching repercussions. A growing list of UK companies have been affected by the cyberattack on payroll service provider Zellis, which occurred via one of its third-party suppliers (Moveit), this has resulted in hundreds of thousands of staff members at these organisations having their personal information posted on the dark web. The hack was first made public when US-based firm Progress Software identified that hackers had discovered a method of breaking into its MOVEit Transfer tool, a widely used software which enables users to move files from one place to [...]

Go to Top