The British Library, custodian of 170 million items, dating back 4,000 years, suffered a data breach back in Oct 2023.
A few days ago, they published a transparent review of the attack. The review includes details of complexities introduced back in 2013, performance benchmarking since 2015, and accreditations from 2019. It gives hour by hour details of the initial response to the detection and looks forward to the restoration of full service.
I know what it's like to be the first to discover suspicious activity - trying to establish how bad the day / week / month is going to get. It's not a good way to start your day.
If you or your company has "reliance on a significant number of ageing legacy applications", have storage which uses "certain sensitive keywords in its naming convention, such as ‘passport’ or ‘confidential'", or work in an environment with exceptions to security recommendations "for reasons of practicality, cost and impact" you should read the review.
We should also thank the Library leadership for making the review available so we can all benefit from their terrible experience.
Today we’ve published a paper about the cyber-attack that took place last October.
Its goal is to share our understanding of what happened and to help others learn from our experience.
You can read the paper on our website, and hear from our CEO, Sir Roly Keating, in this accompanying blog post: https://lnkd.in/eDa6Q2xx
#BritishLibrary