• About Us
  • Privacy Policy
  • Disclaimer
  • Contact Us
AimactGrow
  • Home
  • Technology
  • AI
  • SEO
  • Coding
  • Gaming
  • Cybersecurity
  • Digital marketing
No Result
View All Result
  • Home
  • Technology
  • AI
  • SEO
  • Coding
  • Gaming
  • Cybersecurity
  • Digital marketing
No Result
View All Result
AimactGrow
No Result
View All Result

UK watchdog fines 23andMe for ‘profoundly damaging’ information breach

Admin by Admin
June 17, 2025
Home Technology
Share on FacebookShare on Twitter


DNA testing agency 23andMe has been fined £2.31m by a UK watchdog over a knowledge breach in 2023 which affected 1000’s of individuals.

The Info Commissioner’s Workplace (ICO) mentioned the corporate – which has since filed for chapter – did not put sufficient measures in place to safe delicate consumer information previous to the incident.

“This was a profoundly damaging breach that uncovered delicate private data, household histories, and even well being situations,” mentioned Info Commissioner John Edwards.

23andMe is ready to be offered to a brand new proprietor, TTAM Analysis Institute, which mentioned it had “made a number of binding commitments to boost protections for buyer information and privateness.”

23andMe’s customers have been focused by what is called a “credential stuffing” assault in October 2023.

This noticed hackers use passwords uncovered in earlier breaches to entry 23andMe accounts for which individuals had used the identical or related credentials.

They have been capable of entry 14,000 particular person accounts – and, by these, obtain data regarding about 6.9m folks linked to as potential relations on the positioning.

In keeping with the ICO, this included entry to non-public information belonging to 155,592 UK residents, comparable to names, yr of delivery, geographical data, profile photographs, race, ethnicity, well being stories and household timber.

Stolen information didn’t embody DNA information.

“As a type of impacted informed us: as soon as this data is on the market, it can’t be modified or reissued like a password or bank card quantity,” mentioned Mr Edwards.

As a consequence of its extra delicate nature, genetic information is taken into account particular class information below UK information safety legislation and requires additional protections and safeguards.

Companies controlling it ought to think about having further safety measures in place to assist safe it, based on the ICO’s steering.

Its investigation – launched together with Canada’s privateness commissioner final June – discovered that 23andMe breached UK information safety legislation by not having applicable authentication and verification measures for patrons throughout its login course of.

This included not having necessary multi-factor authentication to permit customers logging in to confirm themselves by further means or gadgets.

The corporate additionally didn’t have safe password necessities or extra verification necessities for customers attempting to obtain uncooked genetic information, it added.

Mr Edwards mentioned such failures and delays in resolving them “left folks’s most delicate information susceptible to exploitation and hurt”.

“Their safety techniques have been insufficient, the warning indicators have been there, and the corporate was gradual to reply,” he mentioned.

The corporate says it resolved the problems recognized throughout the ICO and the Workplace of the Privateness Commissioner of Canada (OPC)’s probe by the top of 2024.

Each watchdogs just lately known as on 23andMe to guard the delicate private information of its prospects amid its chapter proceedings.

The corporate was initially set to be offered to biotechnology firm Regeneron Prescribed drugs in a $256m deal.

However 23andMe mentioned on Friday it had agreed to the sale of its belongings to TTAM Analysis Institute – a non-profit biotech organisation led by its co-founder and former chief government Anne Wojcicki.

It mentioned the acquisition of the corporate for a brand new worth of $305m would include binding commitments to uphold current insurance policies and shopper protections, comparable to letting prospects delete their accounts, genetic information and choose out of analysis.

A chapter court docket is scheduled to listen to the case for its approval on Wednesday.

Tags: 23andMeBreachdamagingDatafinesprofoundlywatchdog
Admin

Admin

Next Post
High 10 Instruments For search engine marketing Wants In 2025 — SitePoint

High 10 Instruments For search engine marketing Wants In 2025 — SitePoint

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended.

Cursor AI Rockets to $9.9 Billion Valuation with Huge $900 Million Elevate

Cursor AI Rockets to $9.9 Billion Valuation with Huge $900 Million Elevate

June 6, 2025
How To Plan PPC Campaigns For SaaS Advertising

How To Plan PPC Campaigns For SaaS Advertising

April 18, 2025

Trending.

Industrial-strength April Patch Tuesday covers 135 CVEs – Sophos Information

Industrial-strength April Patch Tuesday covers 135 CVEs – Sophos Information

April 10, 2025
Expedition 33 Guides, Codex, and Construct Planner

Expedition 33 Guides, Codex, and Construct Planner

April 26, 2025
How you can open the Antechamber and all lever places in Blue Prince

How you can open the Antechamber and all lever places in Blue Prince

April 14, 2025
Important SAP Exploit, AI-Powered Phishing, Main Breaches, New CVEs & Extra

Important SAP Exploit, AI-Powered Phishing, Main Breaches, New CVEs & Extra

April 28, 2025
Wormable AirPlay Flaws Allow Zero-Click on RCE on Apple Units by way of Public Wi-Fi

Wormable AirPlay Flaws Allow Zero-Click on RCE on Apple Units by way of Public Wi-Fi

May 5, 2025

AimactGrow

Welcome to AimactGrow, your ultimate source for all things technology! Our mission is to provide insightful, up-to-date content on the latest advancements in technology, coding, gaming, digital marketing, SEO, cybersecurity, and artificial intelligence (AI).

Categories

  • AI
  • Coding
  • Cybersecurity
  • Digital marketing
  • Gaming
  • SEO
  • Technology

Recent News

How To Change Your Buddy Code

How To Change Your Buddy Code

June 18, 2025
How To Drive Extra Conversions With Fewer Clicks [MozCon 2025 Speaker Series]

How To Drive Extra Conversions With Fewer Clicks [MozCon 2025 Speaker Series]

June 18, 2025
  • About Us
  • Privacy Policy
  • Disclaimer
  • Contact Us

© 2025 https://blog.aimactgrow.com/ - All Rights Reserved

No Result
View All Result
  • Home
  • Technology
  • AI
  • SEO
  • Coding
  • Gaming
  • Cybersecurity
  • Digital marketing

© 2025 https://blog.aimactgrow.com/ - All Rights Reserved