Skip to main content

Bank Data On Computer Sold For $70

Bank Data On Computer Sold For $70

Andrew Chapman received an extra surprise with the computer he bought on eBay for $70. When he examined the hard drive, the IT manager from Oxford, England, was astonished to discover it contained details on a million bank customers.

There was sensitive personal data on customers of NatWest, Royal Bank of Scotland and American Express, including account numbers, credit card balances, sort codes, signatures, names, addresses, mobile phone numbers and even mothers’ maiden names – a treasure trove for criminals, the Daily Mail reports.

The data was held by Graphic Data, which digitally stores bank paperwork, and the computer was sold by a former employee. The newspaper says another computer has gone missing from the company.

Graphic Data said:

“Certain pieces of IT equipment have been removed from a secure area. We are seeking to recover this equipment, which apparently contained customer data.”

“We take customer privacy and data security very seriously.”

A NatWest/RBS spokesman commented:

“RBS and NatWest take data protection extremely seriously and have very strict procedures to ensure the security of information at all times.”

“Any breach of these procedures is totally unacceptable and is investigated as a matter of urgency.”

The Information Commissioner’s office is looking into the matter. This is just the latest in a long line of British data loss scandals, but could potentially have been the most damaging.

Digital Trends Staff
Digital Trends has a simple mission: to help readers easily understand how tech affects the way they live. We are your…
‘A staggering problem’: Working from home could lead to massive data leaks
man working from home

The corporate security situation right now is like trying to quickly assemble a shelter during a rainstorm, experts say: Even if you get something set up, you're still likely to have some water leaking through.
Everyone working from home, plus a reported increase in attempted cyberattacks means security systems straining under these unique conditions are especially vulnerable to massive hacks and data breaches -- which could be underway right now and may not be reported about for another six months.
“I’m terrified about it” said Ben Goodman, senior vice president of global business and corporate development at ForgeRock. “A lot of users are being thrust into a work from home environment, and they’re not at all used to this.”

It takes a lot to make sure users are properly implementing security best practices, he told Digital Trends -- practices that most companies didn't train for before employees were forced to work remotely.
“I think we’re going to have an unprecedented number of breaches being announced following the pandemic,” said Kayne McGladrey, member of the Institute of Electrical and Electronics Engineers.
“The amount of risk is at an all-time high,” agreed Chris Hertz, chief revenue officer for the cybersecurity company DivvyCloud. “If I were a cybersecurity professional, I would not be sleeping right now. It’s a staggering problem.”
An annual survey from DivvyCloud reported that 49% of respondents who use the public cloud in their jobs said “their developers and engineers at times ignore or circumvent cloud security and compliance policies.”
In addition, cyberattacks are on the rise, a trend that was already happening before the pandemic, and now has dramatically increased, said Hertz. 2018 and 2019 saw a record number of ransomware attacks that totaled $5 trillion in damages.
“Right now is one of the most critical periods for IT security professionals that we’ve had in last decades,” Hertz told Digital Trends. “As one of my colleagues says, we’ve planned for hurricanes, earthquakes, tornadoes, but not for a pandemic that would send literally everyone home for six to 12 months. That was never the framework we’re thinking of.”

Read more
Google Maps data shows whether people in your area are staying at home
Google Community Mobility Report

Google has published an early look at its COVID-19 Community Mobility Reports, a set of reports for use by health officials showing the effect of the pandemic coronavirus, officially called COVID-19, on people's mobility. Google has used anonymized location data to track the degree to which people are complying with social distancing advice and staying home rather than attending public places like restaurants, parks, and transit stations. The reports also indicate how many people are still required to travel to work, as opposed to working from home.

"In Google Maps, we use aggregated, anonymized data showing how busy certain types of places are -- helping identify when a local business tends to be the most crowded," Jen Fitzpatrick, SVP of Geo and Karen DeSalvo, Chief Health Officer at Google Health, wrote in a blog post. "We have heard from public health officials that this same type of aggregated, anonymized data could be helpful as they make critical decisions to combat COVID-19."

Read more
U.K. internet service providers lift caps on broadband data

As people around the world shift to remote work and look to the internet for personal communication and entertainment, unlimited access is more important than ever. Now, the U.K. government has reached an agreement with telecommunications companies to lift all data allowance caps on broadband plans to ensure people can continue to use the internet during the pandemic involving coronavirus, officially called COVID-19.

Major British broadband providers including BT/EE, Openreach, Virgin Media, Sky, TalkTalk, O2, Vodafone, Three, Hyperoptic, Gigaclear, and KCOM have all agreed to lift their data caps. The providers have also agreed to consider further actions, such as working with customers who are struggling to pay their bills due to the coronavirus outbreak, offering new affordable packages for both mobile and landline-based internet for those who don't yet have internet access at home, and providing alternative methods of communication for customers who experience problems with their internet access.

Read more