PogoWasRight.org

Menu
  • About
  • Privacy
Menu

UK Gov, and privacy invasion without a safety net

Posted on April 18, 2010 by pogowasright.org

John Lettice has a commentary on the recent breach where Gwent Police sent a reporter from The Register a file with criminal records checks on 10,000 people:

In the case of the autocomplete disaster that’s just happened to Gwent Police, the original error wasn’t spotted until The Register told reported it, and was even compounded by a second email alerting a baffled Chris Williams to an updating of the internal phone directory (but no, at least they didn’t send us the directory as well). As we understand it, Gwent has an officer with a similar name, so unbeknownst to himself our Chris Williams had blundered onto a distribution list, and presumably would have continued to receive Gwent bulletins, perhaps even slowly moving up the distribution pecking order.

[…]

However… Although we accept that Gwent also takes this matter very seriously and will make honest and strenuous efforts to control the data it handles, it is the nature of the beast – the Criminal Records Bureau checking regime – that this kind of leak will happen again and again. Autocomplete errors, poor list management and (we suspect) excessive use of the cc filed aside, the elephant in the room is that file – why was it even possible for someone to have that volume of sensitive data in a single file, far less to email it out unencrypted?

Read more in The Register.

Category: BreachesNon-U.S.

Post navigation

← Think Tank Sues to Get Drug Test Results of Ferry Crew Involved in Collision
City of Ontario v. Quon: The Rights of Other Parties to the Communication →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • FTC dismisses privacy concerns in Google breakup
  • ARC sells airline ticket records to ICE and others
  • Clothing Retailer, Todd Snyder, Inc., Settles CPPA Allegations Regarding California Consumer Privacy Act Violations
  • US Customs and Border Protection Plans to Photograph Everyone Exiting the US by Car
  • Google agrees to pay Texas $1.4 billion data privacy settlement
  • The App Store Freedom Act Compromises User Privacy To Punish Big Tech
  • Florida bill requiring encryption backdoors for social media accounts has failed

RSS Recent Posts on DataBreaches.net

  • Twilio denies breach following leak of alleged Steam 2FA codes
  • Personal information exposed by Australian Human Rights Commission data breach
  • International cybercrime tackled: Amsterdam police and FBI dismantle proxy service Anyproxy
  • Moldovan Police Arrest Suspect in €4.5M Ransomware Attack on Dutch Research Agency
  • N.W.T.’s medical record system under the microscope after 2 reported cases of snooping
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy