August 16th, 2024

TMobile fined $60M for unauthorized access to data: the largest fine of its type

T-Mobile has been fined $60 million by CFIUS for failing to prevent unauthorized access to sensitive data during its Sprint acquisition, marking the largest penalty ever imposed by the committee.

Read original articleLink Icon
TMobile fined $60M for unauthorized access to data: the largest fine of its type

T-Mobile has been fined $60 million by the Committee on Foreign Investment in the U.S. (CFIUS) for failing to prevent unauthorized access to sensitive data and for not reporting the breach. This penalty is the largest ever imposed by CFIUS, which oversees national security implications of foreign investments in U.S. companies. The fine stems from conditions set during T-Mobile's acquisition of Sprint in 2020, which required the company to ensure proper data protection. U.S. officials indicated that the unauthorized access occurred in 2020 and 2021, with T-Mobile acknowledging technical issues during the merger integration that affected a small number of law enforcement information requests. T-Mobile asserted that the data remained within the law enforcement community and was reported promptly. The fine reflects CFIUS's increasing enforcement efforts to hold companies accountable for data security failures, emphasizing the need for transparency and compliance in protecting customer data.

- T-Mobile fined $60 million for data security failures.

- The fine is the largest ever issued by CFIUS.

- Breach occurred during T-Mobile's acquisition of Sprint.

- T-Mobile claims data remained within law enforcement and was reported timely.

- CFIUS is increasing penalties to enhance corporate accountability for data protection.

Link Icon 8 comments
By @maccard - 8 months
On $43bn profit in 2021 (when this happened), or 0.1% of their profit.

I'm sure they're crying.

By @anvil-on-my-toe - 8 months
How does that compare to the CEO's annual comp?
By @ssahoo - 8 months
It will work only if it's paid from upper managements paycheck.

They must have signed off this as their acceptance during risk assessment, if not they should take this as lesson to do more evaluation in the future.

By @MaxikCZ - 8 months
You know the conversation went like: "You can give us 600M fine and we will pay it, or you can give us 60M fine and we will forward another 20M to you."
By @rychco - 8 months
Still falls pathetically short of what it should be.
By @CatWChainsaw - 8 months
Wish that M was a B, then it would actually hurt.