Intelligent CISO Issue 07 | Page 25

threat updates UK The Financial Conduct Authority (FCA) fined Tesco Personal Finance plc (Tesco Bank) £16,400,000 for failing to exercise due skill, care and diligence in protecting its personal current account holders against a cyberattack. The cyberattack took place in November 2016. Tesco Bank said it accepted the settlement and Gerry Mallon, Tesco Bank Chief Executive, said the bank was ‘very sorry’ for the impact that the fraud attack had on its customers. GLOBAL Cathay Pacific, an airline headquartered in Hong Kong, announced it had discovered unauthorised access to some of its information system containing passenger data of up to 9.4 million people. Upon discovery, the company said it took immediate action to investigate and contain the incident. There was no evidence that any personal information had been misused. In a statement, the airline said the IT systems affected were ‘totally separate’ from its flight operations systems and there was no impact on flight safety. Cathay Pacific has notified the Hong Kong Police and is notifying the relevant authorities. www.intelligentciso.com | Issue 07 25