News

Data breach experts issue a notice of potential claim against Optionis Group Limited (Parasol Data Breach)

In January 2022, Parasol – an umbrella company used by contractors across the UK to manage their payments – shut down some of its systems after “malicious activity” on its network. Parasol later admitted that cybercriminals accessed personal data in the ransomware attack. In response, our firm launched an action to help those involved in the security failure claim compensation. 

The compromised information belonged to Parasol’s parent company Optionis. When looking into the data breach, our investigators found that the following businesses could also have been affected by the same cyberattack: Optionis, Optionis Group, Parasol, Arkarius Midco, Arkarius Bidco, Optionis Midco, SJD Accountancy, Nixon Williams, First Freelance, First Umbrella, Optionis Bidco, Clearsky Accountancy and Payroll, Optionis Management, Clearsky Contractor Accounting, Silverline Performance, Wheatley Pearce, Arc Licensed Trade Consultancy, Brian Alfred, and Arnsco.

Together, these businesses provide services to tens of thousands of contractors. Customers of these businesses may also have had their data stolen and, if so, can join our compensation claim.

Optionis is guilty of flagrant GDPR breaches

We have been investigating the Parasol/Optionis data breach to discover what happened, how it happened, and how it affected customers of these businesses. We believe that:

    • The cybercriminals were able to access the personal data due to failings in Options’ computer systems.
    • The hackers published the data stolen in this attack on the dark web.
    • The lost and published data could identify victims of this breach. This leaves them open to the possibility of further attacks.
    • Some of the online files contain words that suggest a leak of a very worrying amount of personal data. For example, 13,000 filenames contain the word “payslip”; others contain words indicating that the files relate to bank account information, tax records, passports, commercial documents, contracts, pension information and company names.
    • Victims of this breach received no more than the barest of information about the circumstances surrounding their data loss. Optionis did not explain how the breach was allowed to happen or what they have done since.

Ultimately, we believe that Optionis is guilty of flagrant breaches of the United Kingdom General Data Protection Regulation (UK GDPR). We also believe that victims of this data breach have a solid and winnable case.

We have already signed up many people involved in the personal data breach, and we encourage anyone else who has been affected to register with us. If you are not sure if you are affected, we can find this out for you.

Keller Postman

Share
Published by
Keller Postman
2 years ago

Recent Posts

Join our Arnold Clark Group Action

We have launched a group action against Arnold Clark. Group actions can be a powerful… Read More

1 week ago

Are you eligible to join our Arnold Clark data breach claim?

If you are an Arnold Clark customer, you could be eligible to join our action… Read More

1 week ago

Join our Southern Water Group Action

We have launched a group action against Southern Water. Group actions can be a powerful… Read More

2 months ago

Keller Postman UK merges with Lanier, Longstaff, Hedar & Roberts to form specialist collective redress law firm KP Law Limited

Today Keller Postman UK Limited and Lanier, Longstaff, Hedar & Roberts LLP announce their merger… Read More

2 months ago

Claim compensation for Southern Water data breach

Register to receive updates on our Southern Water data breach investigation and to find out… Read More

2 months ago

Join our Fresca Data Breach Action

Have you been affected by the Fresca Group data breach? KP Law can help victims… Read More

3 months ago