Tuckers Solicitors LLP – €115,000 Fine (United Kingdom, 2022)

€115,000Information Commissioner's Office10 March 2022United Kingdom
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

The UK law firm Tuckers Solicitors was fined after a ransomware attack exposed sensitive client data. The firm failed to secure its systems, leading to the breach of personal and special category data. This case highlights the need for strong data protection measures to prevent cyberattacks.

What happened

Tuckers Solicitors suffered a ransomware attack that exposed personal and sensitive data due to inadequate security measures.

Who was affected

Clients and individuals involved in court proceedings whose personal and special category data were compromised.

What the authority found

The Information Commissioner's Office found that Tuckers Solicitors failed to implement adequate security measures, leading to a data breach.

Why this matters

This case serves as a reminder for businesses to prioritize cybersecurity and protect sensitive information. Law firms and similar entities should regularly update their security protocols to prevent data breaches.

GDPR Articles Cited

AI-verified

Art. 5(1)(a) f) GDPR
View original scraped data
Art. 5(1)(a) f) GDPR

Original data from scraper before AI verification against source document.

Source verified 6 March 2026
articles corrected
national law identified
amount discrepancy
Full Legal Summary
Detailed

The UK DPA (ICO) has fined law firm Tuckers Solicitors LLP EUR 115,000. Tuckers suffered a ransomware attack on its systems, which resulted in a personal data breach. As part of its investigation, the DPA determined that Tuckers had failed to take appropriate technical and organizational measures to protect personal data. This failure left its systems vulnerable to malicious attacks. The attackers managed to encrypt 972,191 individual files of which 24,712 were related to court proceedings and to siphon off 60 files and publish them in underground data marketplaces. The files contained both personal and special category data, such as medical records, witness statements, names and addresses of witnesses and victims, and the alleged crimes of data subjects.

Related Enforcement Actions (0)

No other enforcement actions found for Tuckers Solicitors LLP in UK

This is the only recorded action for this entity in this jurisdiction.

Details

Fine Date

10 March 2022

Authority

Information Commissioner's Office

Fine Amount

€115,000

Enforcement Tracker ID

ETid-1188

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Tuckers Solicitors LLP - United Kingdom (2022). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: