CIO

Morrisons employee arrested in Leeds in connection with massive pay-roll breach

Firm still evasive on scale of breach

British supermarket Wm Morrison has confirmed that one of its employees has been arrested in connection with last week's huge data breach in which most or all of its pay-roll was leaked to a website.

According to West Yorkshire Police, which is leading the investigation, the employee was arrested within the last day in Leeds, about 10 miles from Morrison's Bradford HQ. No further details have been released.

Morrisons revealed the leak of its payroll data on Friday morning after it was alerted to the database having been posted on a website the previous evening. At the time it said it the incident was the result of an internal security issue rather than an external hack.

Internal incidents of this level of seriousness are rare, or at least few are publically disclosed compared to more common external breaches. The size of the latest incident has yet to be confirmed but was reported by the BBC to involve most of the firm's 130,000 employees.

Attention focused last week on the timing of the theft, coming as it did at the end of a week in which the firm announced very poor financial results.

A 2010 study rated them as being rare compared to external attacks but as defences are tightened against common vulnerabilities the balance could be changing. Numbers also don't tell the whole story; internal databases not connected to the Internet are less likely to be encrypted, which means that the effect of a breach is multiplied.