惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Y
Y Combinator Blog
IT之家
IT之家
博客园_首页
人人都是产品经理
人人都是产品经理
博客园 - Franky
I
InfoQ
Recent Announcements
Recent Announcements
P
Proofpoint News Feed
H
Hackread – Cybersecurity News, Data Breaches, AI and More
GbyAI
GbyAI
大猫的无限游戏
大猫的无限游戏
aimingoo的专栏
aimingoo的专栏
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
月光博客
月光博客
Microsoft Security Blog
Microsoft Security Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
B
Blog RSS Feed
MongoDB | Blog
MongoDB | Blog
雷峰网
雷峰网
博客园 - 聂微东
N
Netflix TechBlog - Medium
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
The GitHub Blog
The GitHub Blog
D
Docker

Consumer Insights

The ransomware negotiator who was working for the other side After years on the run, alleged Ryuk ransomware operator pleads guilty INTERPOL crackdown shows scammers shifting to social media Meta lets strangers remix your public Instagram photos with AI—here’s how to opt out Invited to a "job interview" with Netflix or OpenAI? Beware! Your Google password could be at risk Two arrested over credit card phishing - as the Netherlands is named Europe's worst for payment fraud India pauses WhatsApp username feature over security concerns Alleged teen ransomware hustler faces US charges after arrest in Finland WhatsApp usernames explained: how to reserve yours and stay safe Scammers race to cash in on Venezuelan earthquake disaster USB drives carrying China-linked malware infected Japanese military networks for nearly a year WhatsApp tests new safety prompt before you chat with strangers Social media is worth celebrating. It's also worth protecting. Polish police dismantle SIM-swap gang accused of crypto theft Operation Endgame deals fresh blow to StealC and Amadey malware networks Hacker hijacks Brazil's national alert system, sending "misanthropy" to millions of phones Cybercrime now rivals traditional crime across parts of Asia Apple's Hide My Email tweak leaves privacy fans fuming Americans lost $3.5 billion to imposter scams last year — and the scams are getting harder to spot Scammers have killed the physical Steam Gift cards Crypto investment scam sends couriers to collect victims' cash, FBI warns Maine forced to take down data breach portal after fake notices filed with authorities Privacy own-goal: World Cup blunder leaks Lionel Messi's passport details Why schools remain one of cybercriminals' favourite targets WhatsApp detects new spyware activity from Israel’s NSO Group despite court order Got a LinkedIn message from a recruiter? It might be Chinese intelligence, warn FBI and MI5 Europol cracks down on illegal streaming globally Hackers didn't hack Instagram; they just asked Meta AI FBI Warns Fans About FIFA Scams Ahead of 2026 World Cup Virtual knife, real lawsuit: Counter-Strike skin dispute ends in court
UK Water Supplier Fined Nearly £1 Million After Hackers R...
Filip TRUȚĂ · 2026-05-12 · via Consumer Insights

A UK water supplier has been fined £945,000 after regulators found cybercriminals had access to its systems, exposing sensitive customer data, for nearly two years before they were discovered.

The UK Information Commissioner’s Office (ICO) announced this week that it had levied the penalty against South Staffordshire Plc and South Staffordshire Water Plc following a 2022 ransomware attack that compromised the personal data of hundreds of thousands of customers.

Key takeaways

  • UK regulators fined South Staffordshire Plc and South Staffordshire Water Plc nearly £1 million after a major cyberattack.
  • The ICO said attackers were able to linger inside company systems for almost two years before detection.
  • Exposed data reportedly included names, addresses, contact details, and in some cases bank account information.

Attackers reportedly lingered undetected for years

Investigators found the attackers had access to parts of the company’s network long before August 2022 when the breach was publicly disclosed. The ICO said the intrusion went unnoticed for nearly two years, raising serious concerns about the organization’s security monitoring and detection capabilities.

As reported by The Record, the ransomware gang Cl0p claimed responsibility for the attack and published samples of allegedly stolen data online. At the time, South Staffordshire Water said operational water supply systems were unaffected and drinking water remained safe.

However, subsequent investigations revealed that customer data had been accessed and later leaked online.

Who was affected 

Investigators found that, at the time of the attack, South Staffordshire held personal information relating to 750,000 current and 1.1 million former customers—totalling 1.85 million—as well as 2,791 current employees and at least 2,298 former employees. 

Personal information of 633,887 people stolen in the breach was published on the dark web in August 2022, the ICO said. The compromised data included:

  • Personal details such as full name, physical address, email address, date of birth, gender and telephone number. 
  • For employees, HR information including National Insurance numbers. 
  • For customers, account information (including username and password for South Staffordshire Water online services) and bank account number and sort code. 
  • For a small percentage of customers on the Priority Services Register, information from which disabilities could be inferred.

Security failures left customer data exposed

The ICO said the company failed to carry out appropriate security measures to protect personal information, violating UK data protection law. The regulator concluded that inadequate monitoring and cybersecurity controls allowed attackers to stay in internal systems for an extended period.

While the ICO has not publicly detailed every technical weakness involved, long-term unauthorized access typically points to gaps in visibility, endpoint monitoring, network segmentation, identity controls, or incident response readiness.

The incident is part of a broader pattern of cyberattacks targeting water suppliers and other operators of critical infrastructure. Britain’s drinking water suppliers have suffered several cyberattacks since early 2024, according to regulatory disclosures.

Water infrastructure is an attractive target because disruptions could create public panic, operational outages, or even safety risks.

Anyone affected by a data breach should consider a monitoring service. Bitdefender Digital Identity Protection alerts you if your data has been compromised or leaked online, identifies the risks you face, and provides guidance on how to protect yourself.

You may also want to read:

UK Fines 23andMe $3 Million Over 2023 Mega Breach

Aura data breach exposes 900,000 records after phishing attack

Booking.com says breach exposed travelers’ data