government social media healthcare service provider fine education law enforcement finance dark web web retail phama app insurance security telecoms charity travel manufacturing operating system legal tech gaming publishing transport
story hacked malware unauthorised access ransomware vulnerability accidental disclosure phishing unsecured database poor security insider threat unsecured server hacked email lost device website hacked identity theft ddos stolen documents hacking financial Trojans RDP inside job spear phishing breached
cyber attack breach notification privacy security flaw legislation poor operations user credentials physical security customer data third party Cryptocurrency enforcement email hacked insecure storage court action encryption fraud VPN passwords zero day spyware 3rd parties state hacking employee data remote working

Restaurant (SANTI 3000, S.L.) fined 9,600 Euros for breaching Art. 5 (1) a) GDPR, Art. 6 GDPR - Insufficient legal basis for data processing