The ICO has issued a fine to Tuckers Solicitors following a successful ransomware attack against them. The company was fined £98,000 after a data breach caused by ransomware, during which hackers accessed 24,000 court bundles containing sensitive data such as medical files and witness statements – which were then released on the dark web. The action notice shows the firm did not have MFA in place, and had unpatched software for six months leading up the breach. After gaining access to the network, the attackers were able to install tools, set up an account on the network, before deploying ransomware.
The opinions expressed in this post belongs to the individual contributors and do not necessarily reflect the views of Information Security Buzz.