Continue reading on DataGuidance with:
Free Member
Limited ArticlesCreate an account to continue accessing select articles, resources, and guidance notes.
Already have an account? Log in
Lower Saxony: LfD Niedersachsen issues warning letters to 20 companies for closing security gaps
On June 14, 2024, the Lower Saxony data protection authority (LfD Niedersachsen) announced that it had issued warning letters to 20 unnamed companies for violation of the General Data Protection Regulation (GDPR).
Background to the decision
The LfD Niedersachsen noted that it conducted an unsolicited audit on the companies.
Findings
The LfD Niedersachsen discovered security gaps in the companies' Microsoft Corporation, Inc.'s Exchange servers and informed them of this discovery, noting possible supervisory measures if the security gaps were not closed. The LfD Niedersachsen issued a final warning to the companies concerned, pointing out that they had violated Article 32 of the GDPR.
Outcomes
All companies contacted by the LfD Niedersachsen closed the security gaps after receiving the letter, and therefore further measures were not necessary.
You can read the press release, only available in German, here.