The IBM-SLA data breach highlights a clear weakness in conventional cybersecurity. Protecting systems is not enough when sensitive data remains readable inside them.
Around 70,000 individuals were reportedly affected after unauthorised access to a dataset created for vendor development and testing. The exposed information included names, NRIC numbers and previous property addresses.
The dataset was intended to contain mock or anonymised information. Instead, it included real personal data. This turned a breach of a non-production environment into a significant data security incident.
Sensitive information can exist across production systems, testing platforms, development environments, backups and vendor-managed infrastructure. If that information is readable, gaining access to any one of those environments may be enough to expose it.
SLA said its live property ownership and lodgement records within STARS and ELS remained secure and unaffected. That reduced the operational impact, but it did not remove the risk created by the compromised test dataset.
The incident shows why organisations need to assess data exposure across their entire technology estate, not only within core systems. Copies of information used for testing, development or external projects can carry the same regulatory and reputational risk as data held in production.
GSTechnologies plc (LON:GST) is a global technology company listed on the Main Market of the London Stock Exchange under the ticker, GST. The group operates three core businesses across blockchain payments and financial services, forex, as well as cryptoasset exchange. The group has operations in the UK, Lithuania, Singapore, and Australia.





































