vz-risk / VCDB

VERIS Community Database
Other
576 stars 179 forks source link

MVV Energie AG Reports breach #7447

Open swidup opened 8 years ago

swidup commented 8 years ago

http://www.swr.de/landesschau-aktuell/bw/mannheim/mannheimer-energieversorger-mvv-datenpanne-sorgt-fuer-aufregung/-/id=1582/did=17151118/nid=1582/1xrdo8g/

swidup commented 8 years ago

After the accidental publication of sensitive customer data of the Mannheim energy utility MVV advises affected customers to be vigilant. "Even if we assume that no direct damage can be caused to the data, we recommend that the affected customers to monitor in the coming weeks the movements in their account very carefully and clarify cases of doubt with their bank", said a MVV speaker with.

An employee accidentally sent some 1,000 customer data to a private individual. The data contained at least the names of the customers and also the corresponding bank. The data were attached to two internal MVV-mails. And through the "AutoComplete" in the Outlook e-mail program, the e-mail address of a customer crept into the distributor, explains a MVV spokesman. The function uses once used addresses in order to provide a well-known e-mail address as the destination address by entering the first few characters.

The receiver anyway wondered, went straight to the daily newspaper, which then inquired at the energy company. MVV has made claims to technical measures to ensure that this does not happen again. MVV had informed the State Commissioner for Data Protection, according to a company spokesperson. "We'll look into the matter", the country representative Jörg Klingbeil announced the "Mannheimer Morgen" on.

swidup commented 8 years ago

https://translate.google.com/translate?hl=en&sl=auto&tl=en&u=http%3A%2F%2Fwww.welt.de%2Fregionales%2Fbaden-wuerttemberg%2Farticle154647522%2FBehoerden-nach-Datenpannen-mit-MVV-zufrieden.html