Description

Announced GPDP investigation into CrowdStrike regarding effects of IT blackout

On 23 July 2024, the Italian Guarantor for the Protection of Personal Data (GPDP) announced an investigation into the cybersecurity company CrowdStrike. The investigation focuses on the potential impact of a recent IT system blackout on users' personal data, particularly in relation to public services. The incident, reportedly caused by a malfunction in CrowdStrike's security software, has disrupted numerous online services. GPDP may take further action if specific violations are identified.

Original source

Scope

Policy Area
Data governance
Policy Instrument
Cybersecurity regulation
Regulated Economic Activity
software provider: other software
Implementation Level
national
Government Branch
executive
Government Body
data protection authority

Complete timeline of this policy change

Hide details
2024-07-23
under deliberation

On 23 July 2024, the Italian Guarantor for the Protection of Personal Data (GPDP) announced an inve…