U.K. data protection regulator fines Bupa Insurance Services $228,000 for failing to stop employee stealing 547,000 records. Stolen records included names, birth dates, nationalities, policy-related data including membership numbers, email addresses, phone numbers and fax numbers. The stolen records were extracted from the health insurer’s customer relationship management system, dubbed SWAN, which contained 1.5 million records. The employee placed an ad on the dark web site AlphaBay offering more than 500,000 customer records from a “well-known international blue chip medical insurance company””]
Source: https://www.bankinfosecurity.com/bupa-fined-175000-after-data-leak-offered-on-dark-web-a-11576

