DDoS victim faces fine for privacy breach

 

UK Information Commissioner to investigate ACS:Law.

The UK's Information Commissioner Christopher Graham has confirmed that legal firm ACS:Law - the victim of a distributed denial of service attack by Anonymous 4Chan users - is not able to use the attack as an excuse for its failure to protect personal information.

UK-based ACS:Law is one of several anti-piracy bodies - including Australia's AFACT - that has been targeted in attacks by large numbers of Anonymous users.

ACS:Law documents exposed in the aftermath of the attack revealed the extent to which it had convinced alleged file-sharers in the UK into paying thousand dollar per allegation settlements to avoid litigation.

On Tuesday, Commissioner Graham confirmed his office would investigate the alleged data breach, which had exposed the details of tens of thousands of ACS:Law's targets.

A new list was also leaked - a list which contained the personal details of 8,000 Sky Broadband subscribers that had been in ACS:Law's possession, according to a BBC News report.

Graham told the BBC that the breach appeared to be "pretty serious" and that he could issue a fine of up to £500,000 (AU$817,000) under the UK's Data Protection Act.

"The question we will be asking is: how secure was this information, how was it so easily accessed from outside?" said Graham.

Any claim by ACS:Law that it was a victim of a DDoS attack would not pass as an excuse for exposing people's private details, he said.

"That excuse doesn't wash... Speaking generally, companies with opponents are subject to cyber-attack and we have got to have in place adequate firewalls and protection and procedures and staff training."

"And what are we doing holding all this information anyway? Is it still of use? Should we be getting rid of it?"

The leaked emails revealed that ACS:Law's anti-pirate campaign had netted the company over £600,000 (AU$989,000) in two years.

Yesterday, advocacy group Privacy International called upon the commissioner to investigate the breach.

The leak apparently occurred after ACS:Law accidentally posted a backup of its email database to its website when it attempted to recover from a distributed denial of service attack launched by 4Chan message board pranksters under a campaign called "Operation: Payback".

Operation: Payback yesterday targeted Australia's anti-piracy lobby group, the Australian Federation Against Copyright Theft (AFACT).

AFACT executive director Neil Gane claimed that the attack also knocked offline 8,000 other websites, including some operated by the Australian Government.

Copyright © iTnews.com.au . All rights reserved.


DDoS victim faces fine for privacy breach
"Congrats to the UK Privacy Commissioner, will be interesting to hear the outcome of his investigation. Edited by Mordd: 29/9/2010 09:49:59 PM"
By Mordd
 
 
 
Comments: 2
Ezy2Confuze
Sep 29, 2010 2:06 PM
Couldn't have happened to a nicer bunch. Saying to someone you downloaded this illegally because here's your IP address, should not be a valid reason to chase someone. IN their case, form what I have read, they worked on the fact that a certain amount of people will be too scared to contest their allegations in court and will settle.

Of course being lawyers, they will probably do something dodgy like miraculousy be insolvent, to avoid paying any huge fines, then start up again under another name, with different company directors. That's the one major problem with having the lawyers create the laws, they know all the loopholes, because they put them in there.
Mordd
Sep 29, 2010 9:49 PM
Congrats to the UK Privacy Commissioner, will be interesting to hear the outcome of his investigation.

Edited by Mordd: 29/9/2010 09:49:59 PM
Comments have been disabled for this article.
 
 
Top Stories
Photos: AusCERT 2013 day two
The second day of the Queensland security conference.
 
The illusion of cognitive computing
Opinion: IBM's Watson is a marketing success.
 
CenITex to move from IT provider to broker
Documents reveal new strategy.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...

Latest VideosSee all videos »

Bankwest builds continuous delivery capability
Bankwest builds continuous delivery capability
To automatically deploy test/dev sandboxes by mid-year.
Veterans' Affairs sets sights on modernisation
Veterans' Affairs sets sights on modernisation
Data safe with Human Services, CIO says.
Citi Australia drops platform customisations
Citi Australia drops platform customisations
Technology chief shifts focus from building to leveraging systems.
VicRoads restructures IT team
VicRoads restructures IT team
Department moves to align with industry benchmarks.
Zurich Australia extends IT team offshore
Zurich Australia extends IT team offshore
Malaysian staff served from Australian data centres.
Leigh Berrell - Utilities CIO of the Year
Leigh Berrell - Utilities CIO of the Year
Yarra Valley Water CIO Leigh Berrell accepts his Benchmark Award for Utilities CIO of the Year.
Wayne McMahon - Retail CIO of the Year
Wayne McMahon - Retail CIO of the Year
Domino's Pizza CIO Wayne McMahon accepts his Benchmark Award for Retail CIO of the Year.
Inside Perpetual's ongoing IT transformation
Inside Perpetual's ongoing IT transformation
CIO Jenny Levy discusses how outsourcing will help the firm "simplify, refocus and grow".
Managing Complexity - Defence's Daniel McCabe
Managing Complexity - Defence's Daniel McCabe
Daniel McCabe, Assistant Secretary of Australia's Department of Defence, provides the audience at the iTnews Data Centre Strategy Summit with a deep dive into the organisation's data centre consolidation program.
How Facebook designed the data centre from scratch - Marco Magarelli
How Facebook designed the data centre from scratch - Marco Magarelli
The full keynote by Facebook data centre architect Marco Magarelli at the Australian Data Centre Strategy Summit. Magarelli details the design considerations behind the social network's Prineville, Oregon; North Carolina and Luleå, Sweden data centres.
Modernising Legacy Data Centres - Telstra's Jon Curry
Modernising Legacy Data Centres - Telstra's Jon Curry
Telstra general manager of managed data centres Jon Curry guides the audience at the iTnews Australian Data Centre Summit through the build of the telco's Clayton, Victoria data centre.
NSW Government launches NABERS data centre rating tools
NSW Government launches NABERS data centre rating tools
Matthew Clark from the NSW Department of Environment guides facilties managers through the details of the new NABERS data centre energy rating tool at the Australian Data Centre Strategy Summit.
NABERS launch panel: Australian Data Centre Strategy Summit
NABERS launch panel: Australian Data Centre Strategy Summit
Matthew Clark (NSW Dept of Environment), Greg Boorer (Canberra Data Centres), Glenn Allan (National Australia Bank), Mike Andrea (Strategic Directions) and Bob Sharon (Green Global Consulting) discuss the impact of the NABERS data centre rating.
Judges notes: Fortescue Metals [The Benchmark Awards]
Judges notes: Fortescue Metals [The Benchmark Awards]
iTnews' panel of judges discuss Fortescue Metals 'New World of Work" project, one of three shortlisted finalists for the Industrials category of the CIO Benchmark Awards.
Judges notes: Retail [The Benchmark Awards]
Judges notes: Retail [The Benchmark Awards]
iTnews' panel of judges discuss the shortlisted finalists for the Retail category of the CIO Benchmark Awards.
Judges notes: Pacific Aluminium [The Benchmark Awards]
Judges notes: Pacific Aluminium [The Benchmark Awards]
iTnews' panel of judges discuss Pacific Aluminium's lightning fast service desk refresh, one of three shortlisted finalists for the Industrials category of the CIO Benchmark Awards.
Judges notes: Domino's Pizza [The Benchmark Awards]
Judges notes: Domino's Pizza [The Benchmark Awards]
iTnews' panel of judges discuss Domino's Pizza's shift to hosted services, one of three shortlisted finalists for the Retail category of the CIO Benchmark Awards.
Judges notes: McDonald's Australia [The Benchmark Awards]
Judges notes: McDonald's Australia [The Benchmark Awards]
iTnews' panel of judges discuss McDonald's Australia's new self-service portal for employees, one of three shortlisted finalists for the Retail category of the CIO Benchmark Awards.
Judges notes: ING Direct [The Benchmark Awards]
Judges notes: ING Direct [The Benchmark Awards]
iTnews' panel of judges discuss ING Direct's 'Bank in a Box', one of three shortlisted finalists for the banking and finance category of the CIO Benchmark Awards.
Judges notes: Yarra Valley Water [The Benchmark Awards]
Judges notes: Yarra Valley Water [The Benchmark Awards]
iTnews' panel of judges discuss Yarra Valley Water's insourcing project, one of three shortlisted finalists for the Utilities category of the CIO Benchmark Awards.
Latest Comments
Polls
Do you prefer the Coalition's NBN policy?

   |   View results
Yes
  19%
 
No
  81%
TOTAL VOTES: 1715

Vote