Knowledge

2015 TalkTalk data breach

Source 📝

56:
accounts. On 6 November, TalkTalk stated that the impact of the breach was "much more limited than initially suspected", adding that 156,959 customer accounts were involved, from which 15,656 sort codes and bank account numbers had been taken. Partial data on 28,000 credit and debit cards was also stolen, but that data was insufficient for carrying out transactions on those cards. TalkTalk stated that the lost data had not been encrypted, and that they had not been legally required to encrypt it.
55:
It was initially thought that up to 4 million customers could be affected by the breach. On 24 October, TalkTalk issued a statement saying that a "materially lower" amount of customers’ financial information was stolen, and that the stolen data was not sufficient for money to be taken from bank
43:
In September 2016, hacker Daniel Kelley was charged with blackmail, computer hacking, and fraud in connection with the TalkTalk data breach and various other attacks. He pleaded guilty to 11 of the offences later that year. He was sentenced to 4 years jail time in 2019.
23:
In the course of the attack, TalkTalk received a ransom demand from a group claiming to be responsible. Some customers complained that they were targeted by criminals before TalkTalk disclosed the cyber-attack, and the Chair of the
157: 292: 194: 20:
experienced a cyber attack that resulted in a data breach. As a consequence, personal and banking details of around 160,000 customers were illegally accessed.
429: 125: 149: 255: 401: 343: 476: 276: 28:
said "Suggestions that TalkTalk has covered up both the scale and duration of this attack ... must be thoroughly investigated."
178: 69: 451: 226: 103: 47:
In November 2018, two further suspects were found guilty of cybercrime charges in connection with the data breach.
321: 25: 425: 247: 481: 471: 8: 402:"TalkTalk attack: 'No legal obligation to encrypt customer bank details', says chief" 351: 284: 186: 150:"How an outdated database led to a data breach: Unpicking the TalkTalk cyber attack" 64:
The direct and indirect costs of the attack for TalkTalk have been estimated at
443: 65: 17: 465: 375: 355: 288: 218: 190: 37: 89: 313: 426:"TalkTalk's Cyber Security Negligence Gets Hit With £400,000 ICO Fine" 94: 68:
77 million. On 5 October 2016, TalkTalk was fined £400,000 by the
344:"TalkTalk cyber-attack not as bad as first thought, company says" 90:"TalkTalk cyber-attack: Boss 'very sorry for security breach'" 99: 248:"TalkTalk hack attack: Friends jailed for cyber-crimes" 219:"TalkTalk hacker Daniel Kelley sentenced to four years" 179:"Teenager appears in court over TalkTalk cyber-attack" 314:"TalkTalk cyber-attack: Boss 'receives ransom email'" 16:
In October 2015, British telecommunications provider
277:"Two men jailed for involvement in TalkTalk hacking" 463: 126:"TalkTalk faces new questions over cyber attack" 376:"TalkTalk hack 'affected 157,000 customers'" 72:for its negligence on securing client data. 444:"TalkTalk fined £400,000 over cyber theft" 31: 82: 464: 454:from the original on 22 November 2016. 432:from the original on 8 December 2016. 341: 213: 211: 106:from the original on 23 October 2015 399: 13: 14: 493: 477:2015 crimes in the United Kingdom 283:. Press Association. 2018-11-19. 208: 185:. Press Association. 2016-09-27. 70:Information Commissioner's Office 36:The attack was carried out using 436: 418: 393: 368: 324:from the original on 2022-11-27 295:from the original on 2022-11-26 258:from the original on 2023-02-05 229:from the original on 2022-11-01 197:from the original on 2023-06-14 160:from the original on 2023-03-14 335: 306: 269: 240: 171: 142: 118: 1: 75: 26:Home Affairs Select Committee 342:Gayle, Damien (2015-10-24). 59: 7: 10: 498: 50: 32:Attack and perpetrators 406:www.theregister.com 130:www.telegraph.co.uk 102:. 23 October 2015. 450:. 5 October 2016. 428:. 5 October 2016. 489: 456: 455: 440: 434: 433: 422: 416: 415: 413: 412: 400:Fiveash, Kelly. 397: 391: 390: 388: 387: 372: 366: 365: 363: 362: 339: 333: 332: 330: 329: 310: 304: 303: 301: 300: 273: 267: 266: 264: 263: 244: 238: 237: 235: 234: 215: 206: 205: 203: 202: 175: 169: 168: 166: 165: 146: 140: 139: 137: 136: 122: 116: 115: 113: 111: 86: 497: 496: 492: 491: 490: 488: 487: 486: 462: 461: 460: 459: 442: 441: 437: 424: 423: 419: 410: 408: 398: 394: 385: 383: 374: 373: 369: 360: 358: 340: 336: 327: 325: 312: 311: 307: 298: 296: 275: 274: 270: 261: 259: 246: 245: 241: 232: 230: 217: 216: 209: 200: 198: 177: 176: 172: 163: 161: 148: 147: 143: 134: 132: 124: 123: 119: 109: 107: 88: 87: 83: 78: 62: 53: 34: 12: 11: 5: 495: 485: 484: 479: 474: 458: 457: 435: 417: 392: 367: 334: 320:. 2015-10-23. 305: 268: 254:. 2018-11-19. 239: 225:. 2019-06-10. 207: 170: 154:cyberstart.com 141: 117: 80: 79: 77: 74: 61: 58: 52: 49: 33: 30: 9: 6: 4: 3: 2: 494: 483: 482:Data breaches 480: 478: 475: 473: 470: 469: 467: 453: 449: 445: 439: 431: 427: 421: 407: 403: 396: 381: 377: 371: 357: 353: 349: 345: 338: 323: 319: 315: 309: 294: 290: 286: 282: 278: 272: 257: 253: 249: 243: 228: 224: 220: 214: 212: 196: 192: 188: 184: 180: 174: 159: 155: 151: 145: 131: 127: 121: 105: 101: 97: 96: 91: 85: 81: 73: 71: 67: 57: 48: 45: 41: 39: 38:SQL injection 29: 27: 21: 19: 472:Cyberattacks 447: 438: 420: 409:. Retrieved 405: 395: 384:. Retrieved 382:. 2015-11-06 379: 370: 359:. Retrieved 348:The Guardian 347: 337: 326:. Retrieved 317: 308: 297:. Retrieved 281:The Guardian 280: 271: 260:. Retrieved 251: 242: 231:. Retrieved 222: 199:. Retrieved 183:The Guardian 182: 173: 162:. Retrieved 153: 144: 133:. Retrieved 129: 120: 108:. Retrieved 93: 84: 63: 54: 46: 42: 35: 22: 15: 466:Categories 411:2023-08-01 386:2023-08-01 361:2023-08-01 328:2023-07-13 299:2023-07-13 262:2023-07-13 233:2023-07-13 201:2023-07-13 164:2023-07-13 135:2023-08-01 110:23 October 76:References 356:0261-3077 289:0261-3077 191:0261-3077 60:Aftermath 452:Archived 448:BBC News 430:Archived 380:BBC News 322:Archived 318:BBC News 293:Archived 256:Archived 252:BBC News 227:Archived 223:BBC News 195:Archived 158:Archived 104:Archived 95:BBC News 18:TalkTalk 354:  287:  189:  51:Scope 352:ISSN 285:ISSN 187:ISSN 112:2015 100:BBC 468:: 446:. 404:. 378:. 350:. 346:. 316:. 291:. 279:. 250:. 221:. 210:^ 193:. 181:. 156:. 152:. 128:. 98:. 92:. 40:. 414:. 389:. 364:. 331:. 302:. 265:. 236:. 204:. 167:. 138:. 114:. 66:£

Index

TalkTalk
Home Affairs Select Committee
SQL injection
£
Information Commissioner's Office
"TalkTalk cyber-attack: Boss 'very sorry for security breach'"
BBC News
BBC
Archived
"TalkTalk faces new questions over cyber attack"
"How an outdated database led to a data breach: Unpicking the TalkTalk cyber attack"
Archived
"Teenager appears in court over TalkTalk cyber-attack"
ISSN
0261-3077
Archived


"TalkTalk hacker Daniel Kelley sentenced to four years"
Archived
"TalkTalk hack attack: Friends jailed for cyber-crimes"
Archived
"Two men jailed for involvement in TalkTalk hacking"
ISSN
0261-3077
Archived
"TalkTalk cyber-attack: Boss 'receives ransom email'"
Archived
"TalkTalk cyber-attack not as bad as first thought, company says"
ISSN

Text is available under the Creative Commons Attribution-ShareAlike License. Additional terms may apply.