cross-user-data-leak

1 article
sort: new top best
clear filter
0 3/10

Lloyds Banking Group's banking apps (Lloyds, Halifax, Bank of Scotland) exposed other customers' transaction data and sensitive information including National Insurance numbers to random users due to a data display glitch on March 12, 2026. The vulnerability allowed authenticated users to view full transaction histories, payment details, and personal identifiers belonging to other accounts for approximately 2 hours before being resolved.

Lloyds Bank Halifax Bank of Scotland Lloyds Banking Group Information Commissioner's Office (ICO) Financial Conduct Authority (FCA) Department of Work and Pensions (DWP) Downdetector
bbc.co.uk · ColinWright · 1 day ago · details · hn