Irish Police Hit By “Industrial Scale” Data Breach

August 22, 2023

Introduction

Law enforcement in Northern Ireland recently woke up to an unfortunate message from their top police officer: More than 10K officers and staff members had had their personally identifiable information (PII) exposed in what their top officer described as a data leakage of “industrial scale.”

How did this happen? It turns out even law enforcement are not immune to cybersecurity risks and data leaks.

What Happened?

A recent data breach leaked information on the police force in Northern Ireland—a doubly tenuous situation given threats of violence against officers that have spanned the past nearly three decades. “The Troubles,” as they are known, involved threats, bombings and assassination attempts on police officers as part of the conflict. As a result, many police officers would obscure their faces, avoid displaying personal information, and sometimes use pseudonyms when carrying out their duties in sensitive or high-risk situations.

These fears echo down to this day, with many officers still choosing to hide their identities. As a result, this exposure of police PII generated some fear, especially given that these threats have not entirely abated in the twenty-five years since The Troubles’ peace agreement.

Worse still, the incident epitomizes why 95% of data breaches originate from human error.

The backstory: The Freedom of Information Act (2000) allows citizens to request copies of public information. In early August, a request came through the department, looking for details on how many staff they had across all levels of the organization. Instead of just that, the department sent back a full disclosure of surnames, initials, departments and unit assignments, and more on everyone in the Police Service of Northern Ireland.

Everything the cops sent was published on a Freedom of Information website for two and a half hours before they realized their error.

Everyone from the top of the organization, to officers currently taking a break from the force, were included in the data leak.

This incident comes on the back of a breach from July, which successfully swiped confidential police documents, a laptop and a radio.

What Does This Mean for Their Privacy?

Already, dissidents claim to have possession of this leaked PII and are allegedly circulating it on WhatsApp.

Potentially affected parties should remain on guard, and this might be a good time to refresh your incident response preparedness as well. Do you know who is continuously monitoring both your systems and the Dark Web for exposed PII? Do you know who to report to if you notice suspicious activity, or receive notification that your private data and accounts were compromised?

If you are struggling to remember your Security Awareness Training, now is a good time to brush up. Ask questions if you’re unsure where to go or what to do in an emergency. It’s better to be prepared now, so you don’t have to think twice when disaster strikes.

Stories like this just prove that nobody is safe—and everyone could accidentally leak information—even law enforcement. Cybersecurity best practices are important for EVERYONE to know, so we can all be safer online while managing private data.

References

Most Recent Post

Introducing

Our Exclusive FREE Cybersecurity Toolkit

Stay Secure with Top Free Cybersecurity Apps and Tools Recommended by PlanIT

In today’s digital age, protecting your online presence is more critical than ever. That’s why we’re excited to offer you our exclusive Cybersecurity Toolkit for FREE – to arm you with the essential tools and knowledge to safeguard your data and privacy.

Why You Need This Toolkit?

Protect Sensitive Information: Keep your personal and financial data safe from hackers and cybercriminals.

Enhance Digital Privacy: Shield your online activities from prying eyes and maintain your privacy.

Prevent Cyber Attacks: Equip yourself with the knowledge and tools to prevent and respond to cyber threats.

Peace of Mind: Enjoy the confidence that comes with knowing your digital life is secure.

Related Articles

The 30-Minute IT Check Every Small Business Should Do Once a Month

The 30-Minute IT Check Every Small Business Should Do Once a Month

Summary: Most IT problems don't appear out of nowhere. Backups quietly stop running, updates sit unfinished for weeks, and old staff accounts stay switched on for months. A short check once a month catches these while they're still cheap to fix. This post covers the...

How to Keep Your Business Running When Microsoft 365 Goes Down

How to Keep Your Business Running When Microsoft 365 Goes Down

Summary: The tools that run your business, like Microsoft 365, your accounting app, or your booking system, are reliable most of the time, but they do go down. When one does, work can stop for hours, and you often can't do anything but wait for the provider to fix it....

OneDrive or SharePoint? Where Your Business Files Should Live

OneDrive or SharePoint? Where Your Business Files Should Live

Summary: If your business uses Microsoft 365, you have both OneDrive and SharePoint, and files usually end up scattered across them with no clear rule. OneDrive is for your own work, and SharePoint is for files the team shares. Getting this right makes files easier to...