DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

UK: Schools reported for hack attacks and data breaches avoid ICO punishment

Posted on December 19, 2015 by Dissent

From the get-of-jail-free dept., Freddie Whittaker reports:

Dozens of schools that breached data protection rules have walked away without punishment, despite being reported to the information watchdog.

New figures obtained exclusively by Schools Week show that during the past school year the Information Commissioner’s Office (ICO) dealt with 66 reports of breaches by schools of the Data Protection Act 1998.

Almost half the reports related to information accidentally revealed, with five of the cases occurring at special schools. Twenty-four related to the loss or theft of data.

Read more on Schools Week,

Of course, k-12 schools here in the U.S. often don’t have to report breaches to federal or state agencies at all, and they never get any punishment from the U.S. Education Department. So if Whittaker is shocked by the situation in the U.K., he should be grateful that at least there’s some reporting to a central regulator in the U.K.

Of note in Whittaker’s report, he mentions another small breach, big potential harm incident:

At the end of November, Greenland (sic) Primary School in east London accidentally revealed the name of seven pupils aged between nine and 11 believed to be at risk of radicalisation.

Can you imagine in the current political climate how that disclosure might impact those children and their families? I had missed that story, and it’s actually the Greenleaf Primary School. From media reports that I’ve now read, it seems that in response to a freedom of information request, Waltham Forest Council disclosed emails concerning  a survey children took with their names redacted, but the data was “manipulated by a third party” to reveal or determine the children’s names.


Related:

  • Kept in the Dark -- Meet the Hired Guns Who Make Sure School Cyberattacks Stay Hidden
  • Pysa shuttered its leak site before it ever dumped data from more than half a dozen schools. Here's what we know so far.
  • UK: Welcome Financial Services Limited Fined £150,000 After Backup Tapes With Customer Contact Info Lost
  • Victims of W-2 phishing scams (2017 list)
  • k-12 school districts fall prey to Pysa ransomware
Category: Commentaries and AnalysesEducation SectorNon-U.S.Of Note

Post navigation

← TX: Former heart clinic employee admits to illegally disclosing patient’s medical records
Healthcare industry gets cybersecurity support in omnibus bill →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Ransomware incident responder gave info to BlackCat cybercriminals during negotiations, DOJ alleges
  • 45,000 malicious IP addresses taken down in international cyber operation
  • The Broken Records: tracing the human cost of the 2022 British MoD leak
  • Telus Digital confirms breach after ShinyHunters claims 1 petabyte data theft
  • China’s CERT warns OpenClaw can inflict nasty wounds
  • Bell Ambulance data breach impacted over 238,000 people
  • Lotte Card fined 9.6 billion won for leaking users’ social registration numbers
  • Handala claims responsibility for attack on medical device maker Stryker
  • Police Scotland fined £66k for extracting and sharing mobile phone data
  • The rise of teen hackers ‘makes for a good headline’, but cyber crime activities peak later in life

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • New data shows increase in FBI searches of Americans’ data last year
  • CalPrivacy Fines PlayOn Sports $1.1 Million for CCPA Violations Involving Student Privacy
  • 17 States Sues Trump Administration Over Unlawful Data Demands Targeting Colleges
  • Privacy watchdogs sound alarm over US bid to get travellers’ social media
  • Petition filed over misuse of protesters’ data by Kenyan government and telcos

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: Dissent.73

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: Dissent.73
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.