DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

UK: ICO called on to punish Milton Keynes Council

Posted on May 20, 2011 by Dissent

Tom Brewster reports:

The Information Commissioner’s Office (ICO) has been called on to reprimand Milton Keynes Council for a data breach which exposed citizens’ information.

The local authority admitted to accidentally posting results from a residents’ survey on its website, revealing addresses and phone numbers of 50 participants, the Milton Keynes Citizen reported.

Personal data from the survey, which asked for thoughts on a controversial park, remained online for around 18 hours towards the end of last week.

Read more on ITPro.  The article on Milton Keynes Citizen referred to in the story does not seem to be available at the time of this posting, but a cached copy suggests that it may not just be addresses and phone numbers:

MILTON Keynes Council has admitted breaching data protection law by publishing results of a residents’ survey on its website.

Personal information, including addresses and phone numbers of 50 people in Middleton who filled out a questionnaire and submitted it to the council were put online for around 18 hours at the end of last week before being withdrawn.

The survey was carried out to find out what local residents thought about the controversial park in Southside Lane, Middleton after complaints about anti-social behaviour – a story the Citizen covered in March.

One resident, Dr Bob Ranger, has been vocal in his stance against the play-park, and believes the publishing of the residents’ details is just another straw to break the camel’s back.

Dr Ranger said: “They published the contact details and other sensitive personal information of about 50 persons who have filled out a residents’ questionnaire and then submitted it to the council. It was put on the council website for 18 hours.

“Anybody could have seen all those details in the time they were online. Nobody will accept responsibility or offer a genuine apology.

“We got a press statement written by the council’s PR department that is supposed to count as an apology but adds insult to injury and inflames a delicate situation even more.”

Dr Ranger also believes the published details could have prompted acts of vandalism on his car.

David Hill, chief executive of the council, said: “The council has apologised for publishing personal data provided by the residents on the website, with all the background information.

“Although not strictly required by the Information Commissioner’s Office guidelines, we have notified a breach of the data protection legislation to the ICO and launched a data protection investigation.”


Related:

  • Revealed: Afghan data breach after MoD official left laptop open on train
  • Canada says hacktivists breached water and energy facilities
  • UK: FCA fines former employee of Virgin Media O2 for data protection breach
  • Former General Manager for U.S. Defense Contractor Pleads Guilty to Selling Stolen Trade Secrets to Russian Broker
  • The 4TB time bomb: when EY's cloud went public (and what it taught us)
  • China Amends Cybersecurity Law and Incident Reporting Regime to Address AI and Infrastructure Risks
Category: Breach IncidentsExposureGovernment SectorNon-U.S.

Post navigation

← NE: Hackers Steal Local Credit Card Info
FL: Two Sentenced in ID Theft and Credit Card Scheme Involving Flanigan’s Customers →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Report released on PowerSchool cyber attack
  • Sue The Hackers – Google Sues Over Phishing as a Service
  • Princeton University Data Breach Impacts Alumni, Students, Employees
  • Eurofiber admits crooks swiped data from French unit after cyberattack
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill
  • French agency Pajemploi reports data breach affecting 1.2M people
  • From bad to worse: Doctor Alliance hacked again by same threat actor (1)
  • Surveillance tech provider Protei was hacked, its data stolen, and its website defaced
  • Checkout.com Discloses Data Breach After Extortion Attempt
  • Washington Post hack exposes personal data of John Bolton, almost 10,000 others

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • CIPL Publishes Discussion Paper Comparing U.S. State Privacy Law Definitions of Personal Data and Sensitive Data
  • India’s Digital Personal Data Protection Act 2023 brought into force
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill
  • Keeping Cool When ICE Arrives: Basic Raid Response Strategies for Laboratories
  • IRS Accessed Massive Database of Americans Flights Without a Warrant

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.