government
healthcare
social media
service provider
fine
education
finance
dark web
law enforcement
retail
web
telecoms
phama
travel
manufacturing
operating system
charity
insurance
legal
app
tech
gaming
transport
publishing
utilities
story
hacked
malware
unauthorised access
ransomware
vulnerability
accidental disclosure
phishing
unsecured database
poor security
insider threat
unsecured server
hacked email
lost device
identity theft
website hacked
ddos
stolen documents
Trojans
financial
inside job
spear phishing
RDP
spyware
skimming
cyber attack
privacy
breach notification
security flaw
legislation
poor operations
user credentials
physical security
customer data
third party
Cryptocurrency
enforcement
email hacked
insecure storage
court action
encryption
fraud
VPN
passwords
zero day
3rd parties
state hacking
employee data
remote working
stolen data
Alterna Operador Integral S.L. fined 50,000 Euros for breaching Art. 6 (1) b) GDPR - Insufficient legal basis for data processing
Individual fined 1,200 Euros for breaching Art. 5 (1) c) GDPR - Non-compliance with general data processing principles
Aquateknikk AS fined 9,700 Euros for breaching Art. 5 GPDR, Art. 6 GDPR - Insufficient legal basis for data processing
Anwara Sp. z.o.o. fined 4,600 Euros for breaching Art. 31 GDPR, Art. 58 (1) a) GDPR - Insufficient cooperation with supervisory authority
Regione Lazio fined 75,000 Euros for breaching Art. 5 (2) GDPR, Art. 28 GDPR - Insufficient data processing agreement
Azienda Usl di Bologna fined 18,000 Euros for breaching Art. 5 (1) f) GDRP, Art. 9 GDPR - Non-compliance with general data processing principles
Poliambulatorio Talenti S.r.l. fined 2000 Euros for breaching Art. 12 (3) GDPR, Art. 15 GDPR - Insufficient fulfilment of data subjects rights
Azienda sanitaria provinciale di Enna fined 30,000 Euros for breaching Art. 5 (1) a) GDPR, Art. 6 GDPR, Art. 9 GDPR - Insufficient legal basis for data processing
Agenzia regionale protezione ambientale Campania (ARPAC) fined 8,000 Euros for breaching Art. 5 (1) f) GDPR, Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Coop Finnmark SA fined 38,600 Euros for breaching Art. 5 (1) a) GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
M.D. Anderson’s $4.3 Million Fine for Patient Data Loss Vacated
Caixabank S.A. fined 6,000,000 Euros for breaching Art. 6 GDPR, Art. 13 GDPR, Art. 14 GDPR - Insufficient legal basis for data processing
Unknown fined 10,000 Euros for breaching Art. 6 (1) GDPR, Art. 12 (3) GDPR, Art. 21 (1) GDPR - Insufficient legal basis for data processing
Unknown fined 38,600 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
Enea S.A. fined 30,000 Euros for breaching Art. 33 (1) GDPR - Insufficient fulfilment of data breach notification obligations
notebooksbilliger.de fined 10,400,000 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
Gveik AS fined 7,250 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
Lindstrand Trading AS fined 9,700 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
Unknown fined 19,000 Euros for breaching Art. 34 (1), (2) GDPR, Art. 58 (2) e) GDPR - Insufficient fulfilment of data breach notification obligations
Śląski Uniwersytet Medyczny (Medical University of Silesia) fined 5,500 Euros for breaching Art. 33 (1) GDPR, Art. 34 (1) GDPR - Insufficient fulfilment of data breach notification obligations
School principal ordered to pay $3.6M for sharing students’ nude pictures online – Crime Online
Innovasjon Norge fined 95,500 Euros for breaching Art. 5 (1) GDPR, Art. 6 (1) GDPR - Insufficient legal basis for data processing
Vodafone España, S.A.U. fined 54,000 Euros for breaching Art. 5 (1) d), f) GDPR - Non-compliance with general data processing principles
Ticketmaster Pays $10 Million Criminal Fine for Intrusions into Competitor’s Computer Systems
Towarzystwo Ubezpieczeń i Reasekuracji WARTA S.A. fined 18,930 Euros for breaching Art. 33 (1) GDPR, Art. 34 (1) GDPR - Insufficient fulfilment of data breach notification obligations
Unknown fined 15,000 Euros for breaching Art. 14 (1), (2) GDPR, Art. 12 (3) GDPR, Art. 6 GDPR, Art. 5 (1) c), (2) GDPR, Art. 24 (1), (2) GDPR - Insufficient fulfilment of data subjects rights
Unknown fined 50,000 Euros for breaching Art. 14 (1), (2) GDPR, Art. 12 (1), (2), (3) GDPR, Art. 15 (1) GDPR, Art. 5 (1) c), (2) GDPR, Art. 24 (1), (2) GDPR - Insufficient fulfilment of data subjects rights
Iberdrola Clientes, SAU fined 6,000 Euros for breaching Art. 48 (1) b) LGT, Art. 21 GDPR, Art. 23 (4) LOPDGDD - Insufficient fulfilment of data subjects rights
Banco Bilbao Vizcaya Argentaria, S.A. fined 36,000 Euros for breaching Art. 5 (1) d) GDPR - Non-compliance with general data processing principles
Ordine degli Assistenti Sociali della Regione Lazio fined 2000 Euros for breaching Art. 12 (3), (4) GDPR - Insufficient fulfilment of data subjects rights
Comune di Luino fined 10,000 Euros for breaching Art. 5 (1) a), c) GDPR, Art. 6 (1) c), e) GDPR, Art. 6 (2) GDPR, Art. 6 (3) b) GDPR, Art. 37 (1) a) GDPR, Art. 37 (7) GDPR - Non-compliance with general data processing principles
Comune di Santo Stefano Belbo fined 4,000 Euros for breaching Art. 5 (1) a), c) GDPR, Art. 6 (1) c), e) GDPR, Art. 6 (2) GDPR, Art. 6 (3) b) GDPR - Non-compliance with general data processing principles
University College Dublin fined 70,000 Euros for breaching Art. 5 (1) e), f) GDPR, Art. 32 (1) GDPR, Art. 33 (1) GDPR - Insufficient technical and organisational measures to ensure information security
Azienda Unità Sanitaria Locale Toscana Sud Est fined 100,000 Euros for breaching Art. 5 (1) f) GDPR, Art. 13 GDPR, Art. 14 GDPR, Art. 28 GDPR, Art. 30 GDPR, Art. 32 GDPR, Art. 35 GDPR - Non-compliance with general data processing principles
Miropass S.r.l. fined 40,000 Euros for breaching Art. 5 (1) a), e) GDPR, Art. 6 GDPR, Art. 9 GDPR, Art. 28 GDPR - Insufficient legal basis for data processing
Roma Capitale (Rome Municipality) fined 500,000 Euros for breaching Art. 5 (1) a) GDPR, Art. 13 GDPR, Art. 14 GDPR, Art. 28 (2), (3) GDPR, Art. 32 GDPR - Non-compliance with general data processing principles
ID Finance Poland Sp. z o.o. fined 235,300 Euros for breaching Art. 5 (1) f) GDPR, Art. 25 (1) GDPR, Art. 32 (1) b), d), (2) GDPR - Insufficient technical and organisational measures to ensure information security
Doctor fined 6,000 Euros for breaching Art. 32 GDPR, Art. 33 GDPR - Insufficient technical and organisational measures to ensure information security
Unknown fined 97,150 Euros for breaching Art. 5 (1) c) GDPR, Art. 6 (1) GDPR, Art. 9 (1) GDPR, Art. 12 GDPR - Insufficient legal basis for data processing
Robinson Tours Ltd. (Robinson Tours Idegenforgalmi és Szolgáltató Kft.) fined 55,400 Euros for breaching Art. 25 (1), (2) GDPR, Art. 32 (1) b) GDPR, Art. 34 (1) GDPR - Insufficient technical and organisational measures to ensure information security