• - Leading UK airline; breach affected online booking
systems • Information Management Failures • - Weaknesses in website and app security - Delays in identifying root cause and breach detection - Inadequate encryption of sensitive data British Airways (Data Breach – 2018)
• Impact
• - £183M fine for GDPR violations
- Reputational damage, loss of customer trust, legal claims • How it Could Have Been Avoided
• - U.S. credit reporting agency; breach exposed 147M people's data • Information Management Failures • - Failure to patch known vulnerability in Apache Struts - Lack of vulnerability management and delayed detection Equifax (Data Breach – 2017)
• Impact
• - Over $700M in settlements, reputational damage
- Numerous lawsuits, stock value drop, regulatory scrutiny • How it Could Have Been Avoided
proactive strategy - Faster incident response and vulnerability Reference • Warnings (& Lessons) of the 2013 Target Data Breach - Corrin Jones https://redriver.com/security/target-data- breach • British Airways fined £20m over data breach - BBC https://www.bbc.com/news/technology- 54568784\ Reference
• British Airways faces record £183m fine for
data breach - BBC https://www.bbc.com/news/business- 48905907British Airways fined £20m over data breach • Equifax Data Breach https://www.bbc.com/news/technology- 54568784\ Reference • Equifax Data Breach Explained: A Case Study https://www.breachsense.com/blog/equifax- data-breach/#:~:text=Cost%20of%20the %20Breach:%20Equifax,regulatory%20fines %2C%20and%20legal%20fees.