Britain’s ACRO Criminal Records Office was reprimanded by the ICO after repeated breaches over nearly two years exposed sensitive personal data, including information linked to domestic violence victims. The incidents involved unpatched Kentico flaws, ignored Trend Micro alerts, and an attempted Mimikatz deployment, with the Medusa ransomware group later claiming responsibility. #ACRO #ICO #Kentico #TrendMicro #Mimikatz #Medusa
Keypoints
- ACRO suffered three intrusions between July 2021 and June 2023.
- The attacks exploited an unpatched public-facing Kentico portal.
- Trend Micro alerts, including Mimikatz detections, were not acted on.
- One incident involved prolonged access and staging data for exfiltration.
- Network segmentation limited movement into the core policing system.
Read More: https://therecord.media/uk-criminal-records-office-acro-data-breaches