Fino

UODO (Poland) · 9 October 2024

Sole entrepreneurPrivate person

About: Accountability, Data breach, Data principles, Data security, Processor obligations

FinePLN353,589≈ €82,300Violation found
Regulator
UODO (Poland)
Decided
9 October 2024
Country
Poland
Sector
Not given
Regulator’s reference
DKN.5131.1.2021
Fino case number
2024/PL/029
Export as PDF

What happened

The DPA fined a controller PLN 353,589 (€82,000) after insufficient security measures allowed for a ransomware attack encrypting data of approximately 200 customers and employees. An involved processor was fined PLN 9,822 (€2,200).

Summary from GDPRhub (noyb), written by its volunteers, not by Fino. CC BY-NC-SA 4.0.

Rules involved

  • Accountability
  • Data breach
  • Data principles
  • Data security
  • Processor obligations

Sources

The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.

Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2024/PL/029.