Queensland police accidentally released details of hundreds of firearms owners in a privacy and security breach.
The breach exposed the email addresses of all 500 recipients alon with the physical addresses and other details of firearms owners.
The breach was a result of an email sent by mistake, the police department sent another email requesting all the firearms owners to delete the earlier email.
TPRM report: https://scoringcyber.rankiteo.com/company/queensland-police-service
"id": "que02217622",
"linkid": "queensland-police-service",
"type": "Breach",
"date": "01/2021",
"severity": "80",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 500,
'industry': 'Law Enforcement',
'location': 'Queensland, Australia',
'name': 'Queensland Police',
'type': 'Government'}],
'attack_vector': 'Email',
'data_breach': {'number_of_records_exposed': 500,
'personally_identifiable_information': ['Email addresses',
'Physical addresses'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Email addresses',
'Physical addresses',
'Other details of firearms '
'owners']},
'description': 'Queensland police accidentally released details of hundreds '
'of firearms owners in a privacy and security breach. The '
'breach exposed the email addresses of all 500 recipients '
'along with the physical addresses and other details of '
'firearms owners. The breach was a result of an email sent by '
'mistake, the police department sent another email requesting '
'all the firearms owners to delete the earlier email.',
'impact': {'data_compromised': ['Email addresses',
'Physical addresses',
'Other details of firearms owners']},
'motivation': 'Accidental',
'post_incident_analysis': {'root_causes': ['Human Error']},
'response': {'communication_strategy': ['Sent another email requesting '
'deletion of the earlier email'],
'containment_measures': ['Requested deletion of the email']},
'threat_actor': 'Internal',
'title': 'Queensland Police Firearms Owners Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Human Error'}