Share

British Airways faces record $230m fine over data theft

The UK plans to fine British Airways $230m over computer attacks that exposed customer data, marking the first major application of far-reaching European Union rules requiring companies to tighten anti-hacking measures.

The proposed penalty relates to data theft affecting about 500 000 customers between June and September last year, the UK Information Commissioner’s office, which protects data privacy, said in a statement on Monday. BA parent IAG SA said the fine amounts to 1.5% of the airline’s 2017 revenue.

The ICO said the hack involved BA’s website traffic being diverted to a fraudulent site through which customer details were harvested, adding that security was compromised by poor protection of functions related to log-in, payment card, and travel booking details, as well name and address information. 

“We are surprised and disappointed in this initial finding from the ICO,” British Airways chairperson and chief executive officer Alex Cruz said in the statement.

IAG shares fell 1.5% to 449.8 pence at 8:06am in London.

BA had initially said its systems were compromised from August 21 through September 5 and that about 380 000 transactions had been affected, with Cruz describing the attack as sophisticated, malicious and criminal. At the time, it advised people to contact credit card providers to manage the breach and said stolen data didn’t include travel or passport details.

Cruz said on Monday the airline responded quickly and hasn’t found any evidence of fraud on accounts linked to the theft.

“We intend to take all appropriate steps to defend the airline’s position vigorously, including making any necessary appeals,“ IAG CEO Willie Walsh said in the statement.

The EU’s General Data Protection Regulation allows, which took effect on May 25, 2018, requires companies to take technical precautions such as encryption to ensure customer data is protected. It also states that firms must notify authorities about breaches within 72 hours after learning about them.

Violations may lead to fines of as much as 4% of a company’s annual sales.

We live in a world where facts and fiction get blurred
Who we choose to trust can have a profound impact on our lives. Join thousands of devoted South Africans who look to News24 to bring them news they can trust every day. As we celebrate 25 years, become a News24 subscriber as we strive to keep you informed, inspired and empowered.
Join News24 today
heading
description
username
Show Comments ()
Rand - Dollar
19.04
-0.1%
Rand - Pound
23.84
-0.2%
Rand - Euro
20.44
-0.2%
Rand - Aus dollar
12.45
-0.4%
Rand - Yen
0.12
+0.5%
Platinum
923.10
-0.3%
Palladium
981.50
-0.9%
Gold
2,349.09
+0.7%
Silver
27.69
+0.9%
Brent Crude
89.01
+1.1%
Top 40
69,181
+1.1%
All Share
75,123
+1.1%
Resource 10
62,964
+1.4%
Industrial 25
103,843
+1.3%
Financial 15
15,879
+0.5%
All JSE data delayed by at least 15 minutes Iress logo
Company Snapshot
Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on News24.

LEARN MORE
Government tenders

Find public sector tender opportunities in South Africa here.

Government tenders
This portal provides access to information on all tenders made by all public sector organisations in all spheres of government.
Browse tenders