Talk Talk, Chit Chat, Natter Natter

You name your company the same as a 80s/90s band whose last album (1991) was called “Laughing Stock”.

For some reason, as yet undisclosed, you store all of your customer details, past and present, in the buff, unencrypted (accessible through your clearly vulnerable) Internet-facing web servers.

No matter the root cause, which will be forthcoming in very exquisite detail, you have to ask yourself did the IT infra folks at TalkTalk know about their exposure? Do they do vulnerability management? Do they do risk assessments? Do they understand what might go horribly wrong?

Four million customers have had their names, addresses and bank account details lifted. Over five percent of the UK population. In fact, TalkTalk are struggling to quantify the breach.

This is not acceptable.

