UPS forced to encrypt devices after data breach
The United Parcel Service encrypts all of its laptops and smartphones after a serious data breach.
UPS, the parcel service and global transportation business, has encrypted all of its British laptops and smartphones after it breached the Data Protection Act last year.
It has also signed an undertaking' with the Information Commissioner's Office (ICO), promising that it will keep personal information more securely.
It comes less than a year after an incident where an unencrypted password-protected laptop was stolen from a UPS employee while abroad. It was never recovered.
It contained the payroll information of around 9,000 British UPS employees, together with confidential data including names, addresses, dates of birth, national insurance numbers, salary and bank details.
"Password protected laptops are not secure. I urge all organisations to restrict the amount of personal information that is taken off secure sites," said assistant information commissioner Mick Gorrill in a statement.
The ICO said that the UPS was also updating its security policies and making changes to protect personal information better than it has done.
Sign up today and you will receive a free copy of our Future Focus 2026 report - the leading resource for IT decision-maker insight on priorities and investment areas in AI, security and more.
-
The OpenAI and Anthropic containment breaches are a bit spooky, but also quite sillyOpinion An AI leaving notes to future versions of itself is pure sci-fi; forgetting to lock down an environment is prosaic
-
Bringing data to the heart of AISponsored AI is changing our approach to data, find out how HPE Alletra Storage can help your business
-
1Password teams up with Anthropic to give Claude access to your credentialsNews A new ‘zero-exposure’ security framework allows agents to use stored credentials in the 1Password vault
-
We need to do something about passwordsPasswords are a fundamental aspect of access security, but recent password leaks have undermined their ability to protect data
-
Dashlane lifts the lid on attack that saw hackers download encrypted user vaultsNews The company said it has now informed all affected customers, and taken action to shut down the operation
-
The NCSC says it’s time to switch to passkeysNews UK security organization calls for companies to step up and offer more secure ways to login
-
AI agents are creating new identity security risks: 1Password wants to solve thatNews The Unified Access system from 1Password will help enterprises manage AI agent access across different devices and users
-
Using AI to generate passwords is a terrible idea, experts warnNews Researchers have warned the use of AI-generated passwords puts users and businesses at risk
-
Researchers called on LastPass, Dashlane, and Bitwarden to up defenses after severe flaws put 60 million users at risk – here’s how each company respondedNews Analysts at ETH Zurich called for cryptographic standard improvements after a host of password managers were found lacking
-
LastPass hit with ICO fine after 2022 data breach exposed 1.6 million users – here’s how the incident unfoldedNews The impact of the LastPass breach was felt by customers as late as December 2024