Dedalus Biologie fined 1.5 million euros for health data breach
On 23 rd February 2021, a massive data breach regarding nearly 500,000 people was revealed in the press, involving the company DEDALUS BIOLOGIE. The name, first name, social security number, name of the prescribing doctor, date of the examination, but also, and above all, medical information (HIV, cancers, genetic diseases, pregnancies, drug therapy of patients, or genetic data) of these people were thus released on the Internet.
French data protection authority CNIL after investigating the breach considered that the company didn’t fulfil several obligations provided for by the GDPR, in particular the obligation to ensure security of personal data. Therefore, tkaing into the account severity of the breaches, CNIL imposed an administrative fine of 1.5 million euros on DEDALUS BIOLOGIE.
Source: Health data breach: DEDALUS BIOLOGIE fined 1.5 million euros