Home ยป Singapore mandates an adjustment of a language learning online platform costing 2 million baht after utilizing an admin code as a service name followed by 123.

Singapore mandates an adjustment of a language learning online platform costing 2 million baht after utilizing an admin code as a service name followed by 123.

The Personal Data Protection Commission (PDPC) in Singapore has fined PPLingo Pte, the provider of the online learning platform LingoAce, after a data breach affecting over 550,000 students and parents. This breach was caused by an administrator setting the password as “lingoace123,” a common service followed by the number 123.

The hacked system was the operations support system (OPS) server used to manage classes and schedules, installed since 2020 without changing the password. On April 26, 2022, hackers attempted to breach the system, successfully accessing it within a day.

The company became aware of the breach when hackers accessed another employee’s email, but no additional demands were made. Similar incidents have occurred in Singapore before, such as the case of Re Chizzle Pte Ltd in 2020, where using the company name in a password was deemed unsafe by the PDPC.

The company has taken significant measures, including implementing two-factor authentication for OPS and email logins. Despite requesting a fine not exceeding SGD 35,000, the PDPC has determined the damage to be severe, resulting in a fine of SGD 74,000, or over 2 million baht.

TLDR: PDPC fines PPLingo Pte for a data breach affecting over 550,000 individuals due to a weak password, emphasizing the importance of strong cybersecurity measures.

More Reading

Post navigation

Leave a Comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Quarterly Report: Palo Alto Networks Posts 16% Revenue Growth – Industry Turmoil Looms as Major Challenge

Delta Airlines Sues Crowdstrike Over Cyber Intrusion, Claims $500 Million in Damages Incurred from Sky Screen Update Incident.

Security Breach at Enzo Biochem Exposes Cyber Vulnerabilities Resulting in Data Leak; Shared Passwords Among 5 Individuals Unchanged for 10 Years.