Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home News

DPP Law Fined After Ransomware Exposes Data

April 17, 2025
Reading Time: 2 mins read
in News
Less Malware and Higher Wire Fraud in 2024

A British law firm, DPP Law, was fined £60,000 ($80,000) after cybercriminals accessed its case management system. Hackers gained access by brute-forcing an infrequently used administrator account that lacked multi-factor authentication. They were able to move laterally across DPP’s network, stealing over 32GB of sensitive data, which included client documents and police footage. DPP failed to secure this information adequately, violating the UK’s data protection laws.

The breach impacted 791 individuals, including crime and family clients, expert witnesses, and individuals involved in sensitive cases.

One of the impacted clients, accused of sexually abusing a child, was informed by the police about the online publication of the data. DPP Law initially believed no data had been stolen but learned otherwise when the National Crime Agency contacted them. The breach resulted in court bundles and other sensitive media being exposed on the dark web.

The Information Commissioner’s Office (ICO) investigated the incident, emphasizing DPP’s failure to implement sufficient security measures. The ICO noted the importance of cybersecurity frameworks, especially for firms handling highly sensitive personal data, such as legal firms dealing with criminal and family cases. The law firm was criticized for not conducting a thorough review of its logs, which ultimately failed to detect the exfiltration of data at the time of the breach.

DPP Law’s chief executive, Sue Christopher, expressed disagreement with the ICO’s findings, stating the company had fully cooperated with the investigation.

The firm has since obtained independent certifications to ensure compliance with cybersecurity best practices. DPP faces potential negligence claims related to the cyber incident, though the company has not yet commented on these claims.

Reference:

  • Law Firm DPP Law Fined After Cybercriminals Expose Sensitive Client Data
Tags: April 2025Cyber NewsCyber News 2025Cyber threats
ADVERTISEMENT

Related Posts

Oregon Has Passed a New Data Privacy Law

UK To Invest £1B In Cyber Army For Defense

May 29, 2025
Oregon Has Passed a New Data Privacy Law

Oregon Has Passed a New Data Privacy Law

May 29, 2025
Oregon Has Passed a New Data Privacy Law

Horizon 3 AI Secures Near $100M

May 29, 2025
New CISA SIEM and SOAR Cyber Guide Released

New CISA SIEM and SOAR Cyber Guide Released

May 28, 2025
New CISA SIEM and SOAR Cyber Guide Released

Iranian Pleaded Guilty in Robbinhood Case

May 28, 2025
New CISA SIEM and SOAR Cyber Guide Released

Vietnam Cites Security For Telegram Ban

May 28, 2025

Latest Alerts

New PumaBot IoT Botnet Uses SSH Attack

APT41 Uses Google Calendar For C2 Operations

New NodeSnake RAT Hits UK Universities

Microsoft Void Blizzard Cyber Threat Alert

Fake DocuSign Alerts Target Corporate Logins

Fake Bitdefender Site Spreads Venom Malware

Subscribe to our newsletter

    Latest Incidents

    Cork Protocol Paused After $12M Exploit

    Victoria’s Secret Site Down After Breach

    LexisNexis GitHub Breach Affects 364K People

    Migos IG Hack Blackmails Solana Cofounder

    Tiffany & Co. Faces Data Breach Incident

    MathWorks Crippled by Ransomware Attack

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial