Top 10 most embarrassing data breaches
Inspired by a notable security gaffe at BP, we give our rundown of the most embarrassing data breaches in recent memory.


Every data breach brings the risk of embarrassing not only the company involved but also those whose information is compromised.
All too often we see breaches where truly sensitive data, such as medical information, is leaked, harming the organisation's reputation and infringing people's privacy simultaneously.
As a case in point, this week BP was guilty of losing a laptop containing personal data on around 13,000 claimants from the disastrous Deepwater Horizon oil spill of 2010.
Given the furore surrounding the oil spill, that particular loss was made all the more embarrassing for the firm.
Inspired by such epic gaffes, we've drawn together the 10 most mortifying breaches in recent memory.
10. First ICO fines
There have been far worse breaches than those that occurred at Hertfordshire County Council and employment services company A4e last year.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
The reason why these two have been included in the list (making it a top 11 really) is that they were the first to be punished with an Information Commisioner's Office fine.
The anticipation in the lead up to the ICO's first monetary punishments meant whoever was forced to pay up would be left blushing.
Admittedly, their errors were fairly shaming in themselves. The council was reprimanded for two serious incidents when employees faxed highly sensitive personal information to the wrong recipients.
A4e had an unencrypted laptop stolen, which contained personal data on 24,000 people who had used community legal advice centres in Hull and Leicester.
If and when the ICO hands out the maximum 500,000 fine, the guilty organisation can expect to be even more shamefaced.
Tom Brewster is currently an associate editor at Forbes and an award-winning journalist who covers cyber security, surveillance, and privacy. Starting his career at ITPro as a staff writer and working up to a senior staff writer role, Tom has been covering the tech industry for more than ten years and is considered one of the leading journalists in his specialism.
He is a proud alum of the University of Sheffield where he secured an undergraduate degree in English Literature before undertaking a certification from General Assembly in web development.
-
CISA issues warning in wake of Oracle cloud credentials leak
News The security agency has published guidance for enterprises at risk
By Ross Kelly
-
Reports: White House mulling DeepSeek ban amid investigation
News Nvidia is caught up in US-China AI battle, but Huang still visits DeepSeek in Beijing
By Nicole Kobie
-
Dell sells RSA security business to private equity firm
News Cash deal worth £1.6bn expected to close within the next 9 months
By Jane McCallion
-
View from the Airport: RSA Conference 2017
Opinion Brace yourselves for the cyberpocalypse... or not
By Jane McCallion
-
Why complex security plans mar business-IT relationship
News Michael Dell talks security at first post-acquisition RSA Conference
By Jane McCallion
-
C-suite and IT must collaborate for safer businesses
News "Business-driven security" is the name of the game at RSA Conference 2017
By Jane McCallion
-
What to expect from RSA Conference 2017
Opinion This year's security landscape means there's more to discuss than ever
By Jane McCallion
-
Elizabeth Denham appointed ICO boss
News Denham will be tasked with helping the UK leave the EU without any knock-on effects on privacy
By Clare Hopping
-
Information Commissioner signs off with overview of year
News Christopher Graham has issued a report outlining past achievements and recommendations for the future
By Clare Hopping
-
RSA 2016: Weakened encryption compromises national security
News Terrorists will move to other platforms, while criminals will exploit the flaws, claim speakers
By Jane McCallion