UniCredit S.p.A. – €2,800,000 Fine (Italy, 2024)
UniCredit S.p.A. was fined for a data breach caused by vulnerabilities in its mobile banking portal. This is crucial because it shows that financial institutions must secure their systems to protect customers' personal data. Companies should regularly check their security measures to prevent breaches.
What happened
UniCredit S.p.A. experienced a data breach due to security vulnerabilities in its mobile banking portal.
Who was affected
Customers of UniCredit who used the mobile banking portal were affected.
What the authority found
The authority ruled that UniCredit violated GDPR articles related to data security and breach notification.
Why this matters
This case underscores the importance of robust security measures in financial services. Other companies should prioritize cybersecurity to safeguard user data.
GDPR Articles Cited
View original scraped data
Original data from scraper before AI verification against source document.
The case involves a data breach due to vulnerabilities in a mobile banking portal, not related to cookies or consent.
Violations (1)
Non-essential cookies (tracking, advertising) are placed on the user's device before obtaining valid consent.
Art. 6(1) GDPR
Related Enforcement Actions (1)
Other enforcement actions involving UniCredit S.p.A. in IT
Similar Cases
Enforcement actions with similar violations
Details
Fine Date
8 February 2024
Authority
Garante per la protezione dei dati personali
Fine Amount
€2,800,000
GDPRhub ID
gdprhub-7707About this data
Cite as: Cookie Fines. UniCredit S.p.A. - Italy (2024). Retrieved from cookiefines.eu
Last updated: