Reply to post: Re: GDPR can't Fix this

Oi, you. Equifax. Cough up half a million quid for fumbling 15 million Brits' personal info to hackers

Yet Another Anonymous coward Silver badge

Re: GDPR can't Fix this

Would GDPR fines apply in this case?

It wasn't that they were deliberately selling customer information - they got hacked.

We don't fine banks when they get robbed (ok. we don't fine them when they deliberately mislead and rob customers either but that's a different story)

They were obviously incompetent, but imagine - if you get hacked because of a zero-day exploit in Windows should you get fined 4% of your turnover, or should Microsoft be fined? If your AWS bucket is hacked does the Eu get 4% of Amazon book sales?

But if you aren't responsible when your cloud provider gets hacked - what stop Equifax setting up "Equifax data processing Europe Inc", a subcontractor with no assets.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon