Skip to content
CityAM
Main navigation
  • News
    • News
      • Latest Business News
      • Economics
      • Politics
      • Tech
      • Banking
      • FTSE 100 Live
      • Retail
      • Insurance
      • Legal
      • Property
      • Transport
      • Markets
    • From our partners
      • AON
      • Bayes Business School
      • Canada BIDs
      • Central London Alliance CIC
      • Destination City
      • Halkin
      • Olympia
      • Inside Saudi
      • Tottenham Hotspur Stadium
      • Santander X
      • YEAR SIX Dividend
    • Featured

      Starmer vows to end system ‘failing our kids’ ahead of expected social media ban

      Keir Starmer speaking at London Tech Week conference, discussing innovation and technology advancements in the UK.

      Submit a story

      Tell us your story.

      Submit
  • Opinion
  • Sport
    • Latest Sports News
      • Sport
      • Sport Business
    • From our partners
      • The Morning Briefing: SBS x CityAM
      • Aramco Team Series
      • LIV Golf
    • Featured

      Can football conquer the US? Why culture is key this World Cup

      GettyImages 2281127577 featuring a significant news event or business setting, capturing key moments and interactions

      Submit a story

      Tell us your story.

      Submit
  • Life&Style
    • Life&Style
      • Life&Style
      • Toast the City Awards
      • The Magazine
      • Travel
      • Culture
      • Motoring
      • Wellness
      • The RED BULLETiN
      • Do it with Shared Ownership
      • Media Speak Hub
    • Featured

      The best places to eat sandwiches in Lisbon, from bifanas to pregos

      Bifana do Afonsos famous bifana sandwich showcasing tender pork in a freshly baked roll with savory sauce.

      Submit a story

      Tell us your story.

      Submit
  • Investec
  • Events
  • Latest Paper
Thursday 20 September 2018 11:21 am  |  Updated:  Tuesday 21 May 2019 4:27 pm

Equifax fined maximum £500,000 for data breach affecting 145m people

By: Joe Curtis

Add as a preferred source on Google

NULL

  Credit rating agency Equifax has received the maximum possible fine of £500,000 for a data breach affecting up to 15m Brits.

UK data protection regulator the Information Commissioner’s Office (ICO) said the penalty reflected its opinion that the US giant “has no excuse” for failing to follow its own internal policies and the law, with its own mistakes responsible for the data leak.

It broke five of eight data protection rules set out in the 1998 Data Protection Act when it failed to fix a flaw in its own infrastructure, despite a software update that would have fixed it being available.

ICO investigators found significant problems with data retention, IT system patching, and audit procedures.

It still failed to fix the issue after the Department of Homeland Security warned it about the vulnerability in March 2017, leading to 145m people’s personal details being stolen by hackers bteween May and July last year.

Information Commissioner Elizabeth Denham said: “The loss of personal information, particularly where there is the potential for financial fraud, is not only upsetting to customers, it undermines consumer trust in digital commerce.

“This is compounded when the company is a global firm whose business relies on personal data.

“We are determined to look after UK citizens’ information wherever it is held. Equifax has received the highest fine possible under the 1998 legislation because of the number of victims, the type of data at risk and because it has no excuse for failing to adhere to its own policies and controls as well as the law.”

Were the data breach to have happened under new UK legislation, the highest fine Equifax could have incurred would be up to £17m.

An Equifax UK spokesperson said the firm was “disappointed” by the fine, saying it has since implemented measures to prevent such an incident happening again.

“The criminal cyberattack against our US parent company last year was a pivotal moment for our company. We apologise again to any consumers who were put at risk,” they added.

“Data security and combating criminal digital activity is an ongoing battle for all organisations that requires continued innovation and attention. We have acted and continue to act to make things right for consumers. They will always be our priority.”

 

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Tech

Related Topics

  • Data protection

Trending Articles

  • KPMG’s Summer Friday half-day rollback signals deeper woes for Big Four giants

  • Inflation expectations at record high in interest rates signal

  • London Tech Week sums up everything wrong with UK tech

  • UK economy falters as deeper damage to growth to come

  • KPMG report on AI found riddled with AI hallucinations

More from CityAM

  • Cadillac F1 forced to fix phone ‘issue’ to satisfy FIA cost cap protocol

    Sport Business
    Getty Images logo against a blurred background, reflecting professional media representation and stock photography branding.
  • ‘We cannot regulate cyber threats away,’ top lawyer warns

    Tech
    The ICO said it initially planned to fine Capita a total of £45m, but this was later reduced by “mitigating factors”
  • Ask the expert: Is £500k enough to retire?

    Personal Finance
    Marianna Hunt discussing financial strategies at a business conference, wearing a professional suit, engaging with the aud...
  • Visa data leak piles pressure on Britain’s digital ID push

    Tech
    UK work and study visas have fallen as Labour faces pressure to reduce immigration.
  • Taxpayers on the hook over ‘dangerously outdated’ government IT systems

    Politics
    Dominic Cummings claims China has stolen vast amounts of secret UK material
  • OPAQUE Acquires Abu Dhabi-Developed Cryptographic AI Technology from TII, Extending Confidential AI Across the Full Lifecycle with Post-Quantum Protection

    Business Wire
  • Quantexa chief says £175m HMRC deal will ‘protect taxpayers’ money’

    Tax
    Inheritance tax receipts are on track for a record breaking year
  • UK ministers tell UK businesses to ‘step up’ cyber defences

    Tech
    The ICO said it initially planned to fine Capita a total of £45m, but this was later reduced by “mitigating factors”
  • Terms & Conditions
  • Privacy Policy
  • Cookie Policy
  • News
  • Markets & Economics
  • Politics
  • Opinion
  • Life&Style
  • Personal Finance

Follow us for breaking news and latest updates

  • Facebook
  • X
  • Instagram
  • LinkedIn
Copyright 2026 CityAM Limited