<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Endpoint Security Info &#187; UK</title>
	<atom:link href="http://www.endpoint-security.info/tag/uk/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.endpoint-security.info</link>
	<description>Endpoint Security in the News. Learn to protect your data by controlling removable storage devices.</description>
	<lastBuildDate>Thu, 29 Jul 2010 19:55:21 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>UK: Information Commissioner&#8217;s Office reports that the NHS has disclosed 305 security losses, as the amount of breaches tops 1,000</title>
		<link>http://www.endpoint-security.info/2010/05/29/uk-information-commissioners-office-reports-that-the-nhs-has-disclosed-305-security-losses-as-the-amount-of-breaches-tops-1000/</link>
		<comments>http://www.endpoint-security.info/2010/05/29/uk-information-commissioners-office-reports-that-the-nhs-has-disclosed-305-security-losses-as-the-amount-of-breaches-tops-1000/#comments</comments>
		<pubDate>Sat, 29 May 2010 09:40:14 +0000</pubDate>
		<dc:creator>Robert</dc:creator>
				<category><![CDATA[DLP]]></category>
		<category><![CDATA[Data Encryption]]></category>
		<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[In the News]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[ICO]]></category>
		<category><![CDATA[NHS]]></category>
		<category><![CDATA[security breaches]]></category>
		<category><![CDATA[UK]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=439</guid>
		<description><![CDATA[Over more than 1000 data losses for the NHS. This is a new record. Of which alone 307 were as a result of stolen data or hardware and 233 due to lost data or hardware. The Information Commissioner&#8217;s Office has warned organisations that they need to minimise the risk of mistakes, as the amount of [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2010%2F05%2F29%2Fuk-information-commissioners-office-reports-that-the-nhs-has-disclosed-305-security-losses-as-the-amount-of-breaches-tops-1000%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2010%2F05%2F29%2Fuk-information-commissioners-office-reports-that-the-nhs-has-disclosed-305-security-losses-as-the-amount-of-breaches-tops-1000%2F&amp;style=normal" height="61" width="50" /><br />
			</a>
		</div>
<blockquote><p>Over more than 1000 data losses for the NHS. This is a new record.<br />
Of which alone 307 were as a result of stolen data or hardware and 233 due to lost data or hardware.</p></blockquote>
<p>The Information Commissioner&#8217;s Office has warned organisations that they need to minimise the risk of mistakes, as the amount of losses reported tops 1,000.</p>
<p>The ICO claimed that staff need simple procedures on how to handle personal information with appropriate training to ensure the importance of securing it is fully understood. It also said that it is essential that the protection of people&#8217;s personal information is part of organisations&#8217; culture and DNA.</p>
<p>An ICO report revealed that 254 breaches were as a result of information being disclosed in error, 307 were as a result of stolen data or hardware and 233 due to lost data or hardware.</p>
<p>A further 83 were due to a technical or procedural failure and 59 were lost in transit. A breakdown of companies revealed 305 incidents were recorded by the NHS, 288 in the private sector and 132 by local government. Only 81 incidents were the result of central government.</p>
<p>David Smith, deputy commissioner at the ICO, said: “We all know that mistakes can happen but, the fact is that human error is behind a high proportion of security breaches that have been reported to us. Extra vigilance is required so that people&#8217;s personal information does not end up in the wrong hands.</p>
<p>“Organisations should have clear security and disclosure procedures that staff can understand, properly implement these and ensure that they are being followed by staff. Staff must be adequately trained not just in the value of personal information, but in how to protect it.</p>
<p>“We are keen to work with organisations to prevent breaches happening in the first place and to help ensure that things are put right when they do go wrong.”</p>
<p>Source and full article: <a href="http://www.scmagazineuk.com/ico-reports-that-the-nhs-has-disclosed-305-security-losses-as-the-amount-of-breaches-tops-1000/article/171205/">SC Magazine</a></p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2008/02/25/uk-companies-pay-47-for-every-private-record-lost/" rel="bookmark" class="crp_title">UK Companies Pay £47 for Every Lost Private Record</a></li><li><a href="http://www.endpoint-security.info/2008/09/06/2008-sky-is-the-limit-for-us-data-breaches/" rel="bookmark" class="crp_title">2008: Sky is the Limit for US Data Breaches</a></li><li><a href="http://www.endpoint-security.info/2008/12/01/uk-governement-says-no-to-data-breach-notification-law/" rel="bookmark" class="crp_title">UK Governement says no to data breach notification law</a></li><li><a href="http://www.endpoint-security.info/2008/09/11/private-data-of-5000-lost-along-with-hard-drive/" rel="bookmark" class="crp_title">Private Data of 5,000 Lost along with Hard Drive</a></li><li><a href="http://www.endpoint-security.info/2008/11/13/self-encrypting-laptop-from-dell/" rel="bookmark" class="crp_title">Self-encrypting laptop from Dell</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2010/05/29/uk-information-commissioners-office-reports-that-the-nhs-has-disclosed-305-security-losses-as-the-amount-of-breaches-tops-1000/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>UK Defense experiences fourfold rise in data breaches</title>
		<link>http://www.endpoint-security.info/2009/08/18/uk-defense-experiences-fourfold-rise-in-data-breaches/</link>
		<comments>http://www.endpoint-security.info/2009/08/18/uk-defense-experiences-fourfold-rise-in-data-breaches/#comments</comments>
		<pubDate>Tue, 18 Aug 2009 15:40:54 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[DLP]]></category>
		<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[In The Spotlight]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[data breaches]]></category>
		<category><![CDATA[Data Loss]]></category>
		<category><![CDATA[defense]]></category>
		<category><![CDATA[MoD]]></category>
		<category><![CDATA[UK]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=279</guid>
		<description><![CDATA[When one thinks of institutions like the British Ministry of Defense, one expects tight security. Tight as in you cross us once, we expect you not to cross us twice. Apparently, things go another way, as the MoD, quoted by V3.co.uk, says the number of data breaches they have been exposed to was 4 times [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2009%2F08%2F18%2Fuk-defense-experiences-fourfold-rise-in-data-breaches%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2009%2F08%2F18%2Fuk-defense-experiences-fourfold-rise-in-data-breaches%2F&amp;style=normal" height="61" width="50" /><br />
			</a>
		</div>
<p>When one thinks of institutions like the British Ministry of Defense, one expects tight security. Tight as in you cross us once, we expect you not to cross us twice. Apparently, things go another way, as the MoD, <a title="MoD breaches rocket" href="http://www.v3.co.uk/v3/news/2246723/mod-breaches-rocket" target="_blank">quoted by V3.co.uk,</a> says the number of data breaches they have been exposed to was 4 times higher in the past year.</p>
<p>The Ministry’s  latest <a title="Annual Report and Accounts Volume Two 2008-2009" href="http://www.mod.uk/NR/rdonlyres/77428463-6C55-46F2-AEE4-522FB73D1B98/0/mod_arac0809_vol2.pdf" target="_blank">resource accounts</a> show it suffered eight serious breaches in the 2008 to 2009 period, up from just two in the preceding year.  The most serious case lead to the loss of a portable hard disk from a contractor&#8217;s premises containing the names, passport information and bank account details of about 1.7 million individuals. That’s a big blow!</p>
<blockquote><p>Other incidents included the theft of three USB sticks from &#8220;secure government premises&#8221;, which contained details of all RAF service personnel who served between 2002 to 2008 and some of their next of kin.</p>
<p>And in April last year, an unencrypted laptop was stolen from government premises containing the personal records of 300 people.</p>
<p>The MoD admitted that it had lost electronic equipment, devices or paper documents from outside government premises on 15 occasions, and in six instances they were lost from within government offices.</p></blockquote>
<p>We’d say it’s about time they actually did something to prevent such breaches! A private company would have probably done so 8 breaches sooner&#8230;But then again, it’s public funds, isn’t it?<br />
<a href="http://www.endpointprotector.com/lp/endpoint_protector_general_EN.html" target="_blank"><img title="Endpoint Protector" src="/wp-content/uploads/banners/banner-factory-epp.jpg" border="0" alt="Endpoint Protector" width="500" height="100" align="middle" /></a></p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2008/09/06/2008-sky-is-the-limit-for-us-data-breaches/" rel="bookmark" class="crp_title">2008: Sky is the Limit for US Data Breaches</a></li><li><a href="http://www.endpoint-security.info/2009/05/25/1-tb-of-data-on-the-clinton-administration-gone-missing/" rel="bookmark" class="crp_title">1 TB of data on the Clinton Administration gone missing</a></li><li><a href="http://www.endpoint-security.info/2008/11/13/self-encrypting-laptop-from-dell/" rel="bookmark" class="crp_title">Self-encrypting laptop from Dell</a></li><li><a href="http://www.endpoint-security.info/2009/05/20/dod-cant-handle-inside-threats/" rel="bookmark" class="crp_title">DoD can&#8217;t handle inside threats</a></li><li><a href="http://www.endpoint-security.info/2009/07/23/uk-data-breaches-rise/" rel="bookmark" class="crp_title">UK data breaches on the rise</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2009/08/18/uk-defense-experiences-fourfold-rise-in-data-breaches/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>UK Governement says no to data breach notification law</title>
		<link>http://www.endpoint-security.info/2008/12/01/uk-governement-says-no-to-data-breach-notification-law/</link>
		<comments>http://www.endpoint-security.info/2008/12/01/uk-governement-says-no-to-data-breach-notification-law/#comments</comments>
		<pubDate>Mon, 01 Dec 2008 06:30:41 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[Laws & Standards]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[Data Loss]]></category>
		<category><![CDATA[disclosure]]></category>
		<category><![CDATA[law]]></category>
		<category><![CDATA[UK]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=174</guid>
		<description><![CDATA[Although the numbers of data breaches reported in the UK has been significant this year, the UK Government has recently announced it will not implement a compulsory data breach notification law for the private-sector companies. The decision was made after reviewing a recommendation made in July by information commissioner Richard Thomas. On the other hand [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2008%2F12%2F01%2Fuk-governement-says-no-to-data-breach-notification-law%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2008%2F12%2F01%2Fuk-governement-says-no-to-data-breach-notification-law%2F&amp;style=normal" height="61" width="50" /><br />
			</a>
		</div>
<p>Although the numbers of data breaches reported in the UK has been significant this year, the UK Government has recently announced <a title="ZDNet news" href="http://news.zdnet.co.uk/itmanagement/0,1000000308,39563446,00.htm?r=1">it will not implement a compulsory data breach notification law</a> for the private-sector companies. The decision was made after reviewing a recommendation made in July by information commissioner Richard Thomas.</p>
<p>On the other hand public-sector organizations are obligated to report any <strong>significant</strong> potential or actual data loss. Their private-sector counterparts should report the losses in the spirit of &#8220;good business practice&#8221;. So if your data is exposed by a public-sector institution and only 2 others have been affected, or if a private company looses thousands of private record but does not see reporting the incident as good practice, you will never find out.</p>
<blockquote><p>&#8220;After considering the analysis of the experience of the US in the area of data-breach notification legislation, the government is not intending to implement similar legislation to that in operation in the US,&#8221; states the <a title="Response to the Data Sharing Review Report" href="http://www.justice.gov.uk/docs/response-data-sharing-review.pdf">Response to the Data Sharing Review Report</a>.</p></blockquote>
<p>Private-sector companies are not clear of all consequences, as fines for organizations found in breach of data-protection laws will soon be raised. According to the same report, The Ministry of Justice is working with the Information Commissioner&#8217;s Office to determine the level of the maximum fine.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2008/07/16/data-watchdog-warns-of-poor-data-protection-in-uk-institutions/" rel="bookmark" class="crp_title">Data Watchdog Warns of Poor Data Protection in UK Institutions</a></li><li><a href="http://www.endpoint-security.info/2009/07/23/uk-data-breaches-rise/" rel="bookmark" class="crp_title">UK data breaches on the rise</a></li><li><a href="http://www.endpoint-security.info/2010/04/29/data-breaches-cost-more-in-the-us/" rel="bookmark" class="crp_title">Data breaches cost more in the US</a></li><li><a href="http://www.endpoint-security.info/2010/05/29/uk-information-commissioners-office-reports-that-the-nhs-has-disclosed-305-security-losses-as-the-amount-of-breaches-tops-1000/" rel="bookmark" class="crp_title">UK: Information Commissioner&#8217;s Office reports that the NHS has disclosed 305 security losses, as the amount of breaches tops 1,000</a></li><li><a href="http://www.endpoint-security.info/2008/09/11/private-data-of-5000-lost-along-with-hard-drive/" rel="bookmark" class="crp_title">Private Data of 5,000 Lost along with Hard Drive</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2008/12/01/uk-governement-says-no-to-data-breach-notification-law/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>British party membership list gets posted online</title>
		<link>http://www.endpoint-security.info/2008/11/21/british-party-membership-list-gets-posted-online/</link>
		<comments>http://www.endpoint-security.info/2008/11/21/british-party-membership-list-gets-posted-online/#comments</comments>
		<pubDate>Fri, 21 Nov 2008 13:19:51 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[In The Spotlight]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[BNP]]></category>
		<category><![CDATA[data leak]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[online fraud]]></category>
		<category><![CDATA[party]]></category>
		<category><![CDATA[UK]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=172</guid>
		<description><![CDATA[If you are British and have been plotting to stalk a member of the British National Party (BNP) you might just have missed the opportunity. A list with all the party&#8217;s members, including names, addresses, and email addresses has recently shown up online. Some of those who just got exposed online are also underage (an [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2008%2F11%2F21%2Fbritish-party-membership-list-gets-posted-online%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2008%2F11%2F21%2Fbritish-party-membership-list-gets-posted-online%2F&amp;style=normal" height="61" width="50" /><br />
			</a>
		</div>
<p>If you are British and have been plotting to stalk a member of the British National Party (BNP) you might just have missed the opportunity. A list with all the party&#8217;s members, including names, addresses, and email addresses has recently shown up online.  Some of those who just got exposed online are also underage (an extra &#8220;benefit&#8221; of the family plan BNP offers) and others had mentions of other personal details made public, such as job or hobbies.</p>
<p>As <a title="BNP looses list" href="http://www.theregister.co.uk/2008/11/18/bnp_loses_list/" target="_blank">the Register</a> puts it, &#8220;That&#8217;s how we know that that BNP members include receptionists, district nurses, amateur historians, pagans, line dancers and a male witch.&#8221; Members reacted pretty strongly, filing their comments with courses and outrage. As certain professions in the UK are expected to have no political color, they might even lose their job and according to several blog sources, some pretty powerful people in the BNP are to blame for the leak.</p>
<p>BNP spokespersons found out of the leak from the Register, but although completely unaware, they promised to treat whoever is responsible quite harshly!</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2008/12/09/two-arrested-in-bnp-data-breach-case/" rel="bookmark" class="crp_title">Two arrested in BNP data breach case</a></li><li><a href="http://www.endpoint-security.info/2009/04/02/dark-side-of-google-payment-card-details-of-19000-brits-found-in-cache/" rel="bookmark" class="crp_title">Dark Side of Google: Payment card details of 19,000 Brits found in cache</a></li><li><a href="http://www.endpoint-security.info/2008/06/24/anti-fraud-collaborative-service-launches-in-the-us/" rel="bookmark" class="crp_title">Anti-Fraud Collaborative Service Launches in the US</a></li><li><a href="http://www.endpoint-security.info/2010/05/17/la-firemens-cu-potential-breach/" rel="bookmark" class="crp_title">LA Firemen&#8217;s Credit Union notifies 28,000 of potential breach</a></li><li><a href="http://www.endpoint-security.info/2009/12/14/french-authorities-use-stolen-data/" rel="bookmark" class="crp_title">Everyone loves stolen data, even the French authorities!</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2008/11/21/british-party-membership-list-gets-posted-online/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
