Hey there, tech lovers! Today, let’s dive into the latest scoop about 23andMe and a hefty UK fine. Buckle up for a fun and breezy rundown!
Consumer DNA-testing giant 23andMe is caught in some hot water. The UK’s data watchdog, ICO, slapped them with a substantial fine of £2.31 million ($3.1 million) after a 2023 data breach. This breach exposed personal and genetic info of over 155,000 UK residents.
The ICO pointed out that 23andMe struggled with security measures—they lacked additional steps to verify users when accessing their raw genetic data. When hackers attacked, they stole data on over 6.9 million users by hacking into accounts with stolen credentials, mostly because multi-factor authentication wasn’t required at the time.
In response, 23andMe announced it has now added mandatory multi-factor authentication for all its users, aiming to tighten security. The ICO also mentioned it’s working with the company after it filed for bankruptcy protection. A sale of the company is expected to be finalized soon, with further legal proceedings on the horizon.
Beyond the fine, this incident highlights the importance of security in genetic testing services, especially given the highly sensitive nature of DNA data. Folks, secure your info and stay tuned for more updates!