DataBreaches.net

DataBreaches.net

The Office of Inadequate Security

Menu
  • Breach Laws
  • About
  • Donate
  • Contact
  • Privacy
  • Transparency Reports
Menu

Follow-up to a UK breach: Godalming College signs an undertaking

Posted on December 7, 2011November 1, 2015 by Dissent

A follow-up to a breach reported back in April involving Godalming College e-mailing sensitive medical details on 300 students to an entire year group:   the college has now signed an undertaking with the ICO to improve its data protection practices.  The undertaking provides a bit more detail on how the breach occurred:

The Information Commissioner (the ‘Commissioner’) was provided with a report in early April that an email with an attachment containing sensitive personal data had been sent inadvertently to lower-sixth form students. The email should have been sent to their tutors and the sender had not intended to send the attachment, but merely a link to it.

Enquiries revealed that the data controller had made efforts to recall or delete the email, but some students had already saved or forwarded the attachment, and some media publicity resulted. The Commissioner formed the view that the data controller lacked adequate data protection policies and considered that further staff training was also warranted.

 

Related Posts:

  • UK: Godalming College email gaffe exposes students…
  • UK: Godalming College email gaffe exposes…
  • UK: ICO follow-up on Burnett Practice undertaking
  • UK: Norwich college dumps students’ files in skip
  • UK: Norwich college dumps students’ files in skip

Post navigation

← Restaurant Depot/Jetro Cash & Carry Customers’ Credit Cards Hacked (update2)
UK: Burglars steal equipment with 8,000 dental patients' information →

Sponsored or Paid Posts

This site doesn’t accept sponsored posts and doesn’t respond to requests about them.

Have a News Tip?

Email:

Breaches[at]Protonmail.ch
Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Telegram: @DissentDoe

Browse by News Section

Latest Posts

  • Update: Cardiovascular Consultants Ltd. ransomware attack reportedly affected 500,000 patients, guarantors, and staff
  • Data breach by Addenbrooke’s Hospital reveals patient information
  • Millions of patient scans and health records spilling online thanks to decades-old protocol bug
  • Cybersecurity: Federal Agencies Made Progress, but Need to Fully Implement Incident Response Requirements (GAO Report)
  • Hackers Exploited ColdFusion Vulnerability to Breach Federal Agency Servers
  • CBIZ KA Notice of Data Privacy Incident (Prime Healthcare)
  • Seeking clarification on Maine’s data breach notification statute
  • East River Medical Imaging notifies 605,809 patients of breach

Please Donate

If you can, please donate XMR to our Monero wallet because the entities whose breaches we expose are definitely not supporting our work and are generally trying to chill our speech!

Donate- Scan QR Code   Donate!

Social Media

Find me on Infosec.Exchange.

I am also on Telegram @DissentDoe.

RSS

Grab the RSS Feed

Copyright

© 2009 – 2023, DataBreaches.net and DataBreaches LLC. All rights reserved.

HIGH PRAISE, INDEED!

“You translate “Nerd” into understandable “English” — Victor Gevers of GDI Foundation, talking about DataBreaches.net

©2023 DataBreaches.net