government social media healthcare service provider fine education law enforcement finance dark web web retail security phama app insurance telecoms charity travel manufacturing legal operating system tech ransomware publishing gaming
story hacked malware unauthorised access vulnerability accidental disclosure phishing unsecured database poor security insider threat unsecured server hacked email lost device hacking financial identity theft website hacked ddos stolen documents Trojans breached RDP inside job spear phishing spyware
cyber attack breach notification privacy security flaw legislation poor operations user credentials physical security customer data third party Cryptocurrency enforcement email hacked insecure storage court action encryption VPN fraud passwords zero day 3rd parties state hacking employee data remote working stolen data

Social Insurance Agency fined 50,000 Euros for breaching Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Madrileña Red de Gas fined 12,000 Euros for breaching Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Slovak Telekom fined 40,000 Euros for breaching Art. 32 GDPR - Insufficient technical and organisational measures to ensure information security
Restaurant (SANTI 3000, S.L.) fined 9,600 Euros for breaching Art. 5 (1) a) GDPR, Art. 6 GDPR - Insufficient legal basis for data processing