|
Post by juthi52943 on Jan 6, 2024 4:42:56 GMT
Unencrypted user passwords Another significant negligence on the part of the Company was storing unencrypted passwords in IT systems. The Personal Data Protection Office emphasizes that storing passwords in a secret form . by using a hash function, also known as hashing is one of the most common measures to ensure the confidentiality of the password and limit its knowledge only to the person who uses it. The Office also noted that in the case in question such Job Function Email List a situation could have led, for example, to identity fraud, damage to the good name or financial loss. In addition, the user could use the same username . e-mail address and password on other websites. Circumstances affecting the penalty The amount of the fine imposed was influenced by, among others the number of people. People and the wide range of data affected by the breach, which resulted in a high risk of negative consequences in the future for data subjects duration of the breach - confirmation of irregularities communicated to the Company in a message suggesting that the Companys server with customer data is publicly available lasted approximately days Migrations, clouds, systems. GDPR in IT.
|
|