International Cyber Expo International Cyber Expo
  • About Us
Tuesday, 21 July, 2026
IT Security Guru
International Cyber Expo
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Maze prison records were unwittingly sold at an auction

by The Gurus
June 19, 2014
in Editor's News
Share on FacebookShare on Twitter

Maze prison records “sold at auction”.
 
The Northern Ireland prison service has been warned by the UK data protection regulator after a filing cabinet containing prisoner records was unwittingly sold at an auction. According to the Information Commissioner’s Office (ICO), this incident occurred in 2004 when the cabinet, which officials thought was empty, was sold at a public auction.
 
However it contained files about the closure of the prison, including the details of staff and a high profile prisoner. The Northern Ireland Office, which was responsible for prisons at that time, retrieved the information but failed to report the matter to the Information Commissioner’s Office (ICO).
 
The prison was notorious in the 1970s and 1980s for holding political prisoners of the Northern Ireland troubles, including republican hunger striker Bobby Sands.
 
ICO assistant commissioner for Northern Ireland, Ken Macdonald, said: “The loss of this information represents not only an embarrassing episode for the prison service in Northern Ireland, but a serious breach of the Data Protection Act that could have had damaging repercussions for the individuals affected.
 
“The incident went unreported for eight years and the same mistakes were allowed to occur. It is only now that we have seen a commitment from the Department of Justice Northern Ireland to tackle these problems and keep people’s information secure.”
 
Jonathan Armstrong, partner at Cordery, told IT Security Guru that he thought that they were “very fortunate” in that the buyer of the cabinet at auction behaved very responsibly, closed the cabinet and called the police once they worked out its contents.
 
“Other organisations may not be quite so lucky and it is easier to see how this could have been far worse if the cabinet had got into the wrong hands,” he said. “The fine is also lower because the information was contained so again there was a lot to thank the buyer for. In cases like this the ICO does take into account it’s the public purse (including the victim’s taxes) which pay the fine. Large companies in a similar situation cannot expect that leniency.”
 
In February, a civil monetary penalty of £185,000 was issued to the Department of Justice Northern Ireland (DoJ NI) after another filing cabinet, which contained personal information relating to victims of a terrorist incident, was also sold at an auction. The files included in the cabinet contained information about the injuries suffered, family details and the amount of compensation offered, as well as confidential ministerial advice.
 
 
This seems to be a light let off for the Northern Ireland prison service, as this is one of the most sensitive “sales” of data that the Information Commissioner has had to deal with. Yes there is the case that the ICO’s fining powers came into force many years after this incident, but surely there should be a case for powers being adapted for later cases. It has to be one rule for all, but in this case, the repercussions upon the affected are too terrifying to consider – Editor

ShareTweet
Previous Post

Problem with privileged users should be reversed to show benefits

Next Post

Nokia paid multi-million Euro ransom demand in 2007

Recent News

privileged access management

KeeperPAM strengthens privileged access management for global construction SaaS provider Asite

July 21, 2026
Forescout 2026 H1 Threat Review

Forescout Report Reveals Surge in AI-Driven Cyber Threats

July 21, 2026
secure-software-supply-chain-feature

1 in 4 businesses hit by cyber attacks through their supply chain in the last year

July 21, 2026
partnership

DigiCert expands its EMEA channel strategy with Ignition Technology

July 21, 2026

Eskenzi PR banner ad

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2026 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2026 IT Security Guru - Website Managed by Dessol