government social media healthcare service provider fine education law enforcement finance dark web web retail phama app insurance security telecoms charity travel manufacturing operating system legal tech gaming publishing transport
story hacked malware unauthorised access ransomware vulnerability accidental disclosure phishing unsecured database poor security insider threat unsecured server hacked email lost device website hacked identity theft ddos stolen documents hacking financial Trojans RDP inside job breached spear phishing
cyber attack breach notification privacy security flaw legislation poor operations user credentials physical security customer data third party Cryptocurrency enforcement email hacked insecure storage court action encryption VPN fraud zero day passwords spyware 3rd parties state hacking cloud employee data

West Georgia Ambulance Company Pays $65,000 to Settle Allegations of Longstanding HIPAA Noncompliance
Canada's broadcasting agency fines company behind the Orcus malware
Aegean Marine Petroleum Network Inc. fined 150,000 Euros for breaching Art. 5 GDPR, Art. 6 GDPR, Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Website providing legal information fined 15,000 Euros for breaching Art. 6 GDPR, Art. 12 GDPR, Art. 13 GDPR - Insufficient fulfilment of information obligations
Nursing Care Organisation fined 2000 Euros for breaching Art. 12 GDPR, Art. 15 GDPR, Art. 17 GDPR - Insufficient fulfilment of data subjects rights
Nusvar AB fined 35,000 Euros for breaching Art. 6 GDPR - Insufficient legal basis for data processing
Eni Gas e Luce fined 3,000,000 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
Eni Gas e Luce fined 8,500,000 Euros for breaching Art. 5 GDPR, Art. 6 GDPR, Art. 17 GDPR, Art. 21 GDPR - Insufficient legal basis for data processing
Unknown Company fined 1,430 Euros for breaching Art. 5 GDPR, Art. 6 GDPR, Art. 13 GDPR, Art. 24 GDPR, Art. 25 GDPR - Non-compliance with general data processing principles
Shop Macoyn, S.L. fined 5,000 Euros for breaching Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Sports Bar fined 6,000 Euros for breaching Art. 5 (1) c) GDPR - Non-compliance with general data processing principles
General Confederation of Labour ('CGT') fined 3,000 Euros for breaching Art. 6 GDPR - Insufficient legal basis for data processing
L. Sp. z o.o. fined 1,770 Euros for breaching Art. 5 (1) a), f) GDPR - Non-compliance with general data processing principles
Spanish complaint leads to 150,000 Euro fine for breaching Art. 6 GDPR - Insufficient legal basis for data processing
Menzis (Health Insurance Company) fined 50,000 Euros for breaching Art. 5 GDPR - Non-compliance with general data processing principles
UWV (Dutch employee insurance service provider) fined 900,000 Euros for breaching Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Austrian Post fined 0 Euros for breaching Art. 5 (1) a) GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
LGS Handling Ltd, Louis Travel Ltd, and Louis Aviation Ltd fined 70,000 Euros for breaching Art. 6 GDPR, Art. 9 GDPR - Insufficient legal basis for data processing
Military Hospital fined 7,400 Euros for breaching Art. 32 GDPR, Art. 33 GDPR - Insufficient fulfilment of data breach notification obligations
Wind Hellas Telecommunications fined 20,000 Euros for breaching Art. 21 GDPR - Insufficient fulfilment of data subjects rights
Major of Aleksandrów Kujawski fined 9,380 Euros for breaching Art. 28 GDPR - Insufficient data processing agreement
ClickQuickNow fined 47,000 Euros for breaching Art. 5 GDPR - Non-compliance with general data processing principles
Unknown Company fined 2,860 Euros for breaching Art. 5 GDPR, Art. 6 GDPR, Art. 13 GDPR, Art. 24 GDPR, Art. 25 GDPR - Non-compliance with general data processing principles
Telecommunication Service Provider fined 200,000 Euros for breaching Art. 5 (1) c) GDPR, Art. 25 GDPR - Non-compliance with general data processing principles
Town of Kerepes fined 15,100 Euros for breaching Art. 6 (1) GDPR - Insufficient legal basis for data processing
Delivery Hero fined 195,407 Euros for breaching Art. 15 GDPR, Art. 17 GDPR, Art. 21 GDPR - Insufficient fulfilment of data subjects rights
Merchant fined 10,000 Euros for breaching Art. 5 (1) c) GDPR - Non-compliance with general data processing principles
Brokerage Firm Hit With $500,000 Data Breach Penalty
Morele.net fined 660,000 Euros for breaching Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Online Services fined 7,000 Euros for breaching Art. 17 GDPR - Insufficient fulfilment of data subjects rights
School in Skellefteå fined 18,630 Euros for breaching Art. 5 (1) c) GDPR, Art. 9 GDPR, Art. 35 GDPR, Art. 36 GDPR - Insufficient legal basis for data processing
Government Office Managing the Real Estate Register fined 1,715 Euros for breaching Art. 5 GDPR, Art. 14 GDPR - Non-compliance with general data processing principles
Private person (YouTube-Channel) fined 200 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
Public area maintenance company fined 4,290 Euros for breaching Art. 5 GDPR, Art. 6 GDPR, Art. 13 GDPR - Non-compliance with general data processing principles
Company in the medical sector fined 50,000 Euros for breaching Art. 13 GDPR, Art. 37 GDPR - Insufficient fulfilment of information obligations
PWC Business Solutions fined 150,000 Euros for breaching Art. 5 (1) GDPR, Art. 5 (2) GDPR, Art. 6 (1) GDPR, Art. 13 (1) c) GDPR, Art. 14 (1) c) GDPR - Insufficient legal basis for data processing
ACTIVE ASSURANCES (car insurer) fined 180,000 Euros for breaching Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Equifax to Pay $575 Million as Part of Settlement with FTC, CFPB, and States Related to 2017 Data Breach | Federal Trade Commission
Budapest Environs Regional Court fined 8,575 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
Gastroenterology Services Staten Island NY