Skip to content
Saturday 29 August 2026London --:--Frankfurt --:--Zurich --:--
NewslettersSearchEN · DE · FR
MorningWire

European business, markets and politics

FTSE 100
10,824.26
+0.29%
DAX
26,569.99
+0.77%
CAC 40
8,401.18
+0.98%
STOXX 50
6,485.67
+0.95%
  • Europe
  • Markets
  • Business
  • Economy
  • Regulation
  • Politics
  • Opinion
More
GermanyFranceEU InstitutionsCompetitionPublic AffairsBankingTechnologyEnergy
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Economy
  • Regulation
  • Politics
  • Opinion
  • DE
Wednesday 05 October 2016 1:45 pm

TalkTalk slapped with record fine over cyber attack

By: Lynsey Barber

Add as a preferred source on Google

TalkTalk has been slapped with a record fine of £400,000 for failing to prevent a cyber attack last year.

The Information Commissioner's office has handed out the largest ever fine to the telecoms firm which suffered one of the most high profile attacks ever experienced by a business in the UK.

The data regulator said it did not do enough to protect customer data at even a basic level. More than 150,000 customers had their details stolen;, including bank account numbers, birth dates and addresses.

Read more: TalkTalk share price rises after financial forecast boost

“TalkTalk’s failure to implement the most basic cyber security measures allowed hackers to penetrate TalkTalk’s systems with ease" said the information commissioner Elizabeth Denham.

“Yes hacking is wrong, but that is not an excuse for companies to abdicate their security obligations. TalkTalk should and could have done more to safeguard its customer information. It did not and we have taken action.”

An investigation by the ICO found hackers gained access to the database of details which it had from its acquisition of Tiscali via vulnerable web pages which it had not spotted.

TalkTalk was not aware there was a bug which could let a hacker bypass the restricted access and so did not fix it with the relevant patch.

It also avoided "two early warnings" before the hack which would have signalled the hole in its security.

"The attacker used a common technique known as SQL injection to access the data. SQL injection is well understood, defences exist and TalkTalk ought to have known it posed a risk to its data," said the ICO.

Read more: TalkTalk boss calls for firms to be made to report all cyber attacks

“In spite of its expertise and resources, when it came to the basic principles of cyber security, TalkTalk was found wanting," said Denham.

“Today’s record fine acts as a warning to others that cyber security is not an IT issue, it is a boardroom issue. Companies must be diligent and vigilant. They must do this not only because they have a duty under law, but because they have a duty to their customers.”

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Business
  • Tech

Trending Articles

  • Pensioners to hand over bank statements in government benefits crackdown

  • Jamie Carragher: HMRC petitions for Sky Sports star to be declared bankrupt

  • Brewdog founder James Watt hits out at ‘total silence’ over new venture

  • Lloyds Bank and Halifax users unable to use app in latest outage

  • As it happened: FTSE 100 falls but Nasdaq soars after Nvidia sales boom

More from Morning Wire

  • Stansted Airport owner hit with cyber attack as millions of customers’ data stolen

    Transport & Infrastructure
    London Stansted Airport is part of the wider Manchester Airports Group (MAG).
  • Iranian hackers behind UK energy plant attack

    Energy
    UK industrial electricity prices are the highest in the G7 and 46 per cent above the average of the International Energy Agency.
  • Champions Cup rugby team hacked in ransom attack with player data at risk

    Sport Business
    Rugby player in a pink uniform running with the ball, pursued by an opponent in a black jersey.
  • FTSE 100 Beazley profit plunges as war roils insurance market

    Insurance
    Beazley 2026 business forecast graph with financial data and growth trends displayed for February 24 analysis
  • AI gold rush leaves accountancy firms exposed to costly cyberattacks

    AI
    Two tablets displaying code and a cyber warning symbol, with blurry blue and pink background numbers
  • UK’s AI watchdog flags new OpenAI and Anthropic cyber alarms

    AI
    Smartphone displaying the Claude by Anthropic AI assistant app, showing the app icon and interface.
  • As it happened: FTSE 100 falls but Nasdaq soars after Nvidia sales boom

    FTSE 100 Live
    Smiling man with gray hair and glasses in a dark suit and blue tie, speaking at an event.
  • FCA bans wealth manager trio behind £35.5m investor visa scam

    Investing
    An all-party parliamentary group said on Tuesday that the FCA's treatment of both internal and external whistleblowers was “alarming”.
MorningWire

Independent European business, markets and political news for decision-makers.

Morning Briefing

Europe

  • Germany
  • France
  • EU Institutions
  • Europe

Business

  • Markets
  • Business
  • Economy
  • Regulation
  • Competition
  • Public Affairs

Editorial

  • Opinion
  • Editorial Policy
  • Corrections
  • Contact

Company

  • About Morning Wire
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
© 2026 Morning Wire Ltd · Published by Morning Wire Media, Bahnhofstrasse 65, 8001 Zürich, Switzerland
Privacy · Terms · Cookies · Facebook