{"id":18193,"date":"2022-11-15T10:00:00","date_gmt":"2022-11-15T09:00:00","guid":{"rendered":"https:\/\/www.rosello-mallol.com\/?p=18193"},"modified":"2022-11-15T10:42:11","modified_gmt":"2022-11-15T09:42:11","slug":"security-breach","status":"publish","type":"post","link":"https:\/\/www.rosello-mallol.com\/en\/security-breach\/","title":{"rendered":"What should I do if I have suffered a security breach?"},"content":{"rendered":"\n
Computer attacks, such as the one recently recognised by Orange<\/a><\/strong> at the beginning of this November, have increased substantially in recent times<\/strong> or at least their knowledge by citizens.\u00a0The fact that, since the entry into force of the GDPR, there is a dual obligation<\/strong> to notify<\/strong> the Spanish Agency for Data Protection and those affected of a security breach<\/strong> has resulted in greater knowledge of these facts, which does not necessarily mean that it did not occur before.<\/p>\n\n\n\n Not only has Orange been the recent victim of cybercriminals. Large companies with thousands or millions of customers have suffered: Netflix<\/a><\/strong>, Zoom<\/a><\/strong>, or Wallapop<\/a><\/strong> are just a few recent examples.<\/p>\n\n\n\n Regardless of the measures taken by the companies affected, the question really is:<\/p>\n\n\n\n If my personal data has been exposed as a result of a security breach, what can I do? There are four basic recommendations:<\/p>\n\n\n\n As soon as you know that you are a client of a company that has been affected by a security breach, if you access private areas with passwords or other types of identifiers, change them immediately<\/strong>. <\/p>\n\n\n\n Even if such a breach does not occur, changing credentials on a regular basis<\/strong> (at least every 6 months) should be common practice to maintain good internet “health”.<\/p>\n\n\n\n Depending on the type of attack, there are different routes that can be taken:<\/p>\n\n\n\n If you can prove moral or patrimonial damage, the answer is certainly yes<\/strong>. That said, to date there is no case law in Spain on compensation related to computer damage, so the case should be studied well because, as a judicial procedure, legal representation is required and you run the risk of assuming the costs if your claim is dismissed.<\/p>\n\n\n\n Furthermore, we must add that in most cases the counterparty will be a large company with almost unlimited resources. We already discussed this topic<\/a><\/strong> in a blog in 2014 and, in essence, not much has changed.<\/p>\n\n\n\n As we have said, computer attacks can seek to steal personal data<\/strong> that companies process, all this in order to carry out social engineering practices (deceit), such as phishing<\/em>.<\/p>\n\n\n\n If you find yourself in this situation, pay special attention to emails, SMS or calls that you may receive after the attack, as it may be fraudulent communications<\/strong> posing as the attacked companies in an attempt to make you carry out unwanted activities: provide passwords, bank details or, for example, provide data from third parties.<\/p>\n\n\n\n If you have been a victim of a security breach or want more information on this subject, do not hesitate to contact us!<\/p>\n\n\n\n <\/p> How do I protect myself from a security breach? Modify your access credentials:<\/strong><\/h2>\n\n\n\n
Can I report?<\/strong><\/h2>\n\n\n\n
Am I entitled to compensation for a security breach?<\/strong><\/h2>\n\n\n\n
And what else?<\/strong><\/h2>\n\n\n\n
<\/ul><\/div>\n