# What is a Data Breach?

> A data breach is a security incident in which data’s confidentiality, integrity, or availability is compromised through unauthorized access, disclosure, alteration, destruction, or loss.

- Canonical URL: https://yellowcube.eu/glossary/data-breach/
- Publisher: Yellow Cube
- Language: en
- Contact: hello@yellowcube.eu

## Content

It may result from malicious activity, human error, system failure, or misuse of legitimate access. Whether a particular event is legally a breach depends on the governing law, contract, sector, and type of data involved.

A breach does not require an external attacker or proven data theft. Investigation should establish what happened, which data and people are affected, whether unauthorized parties could access the data, and whether trustworthy versions remain available.

### Key points

- **Event assessment:** Preserve evidence, identify affected systems and records, determine the time and method of compromise, and distinguish verified facts from assumptions or unresolved possibilities.
- **Containment and recovery:** Stop continuing harm, revoke unsafe access, correct the cause, restore trustworthy data and services, and monitor for renewed access or misuse.
- **Obligations:** Evaluate notification, documentation, contractual, insurance, and regulatory duties promptly with qualified legal review in each applicable jurisdiction.
- **Important limitation:** “Data breach” is not defined identically everywhere. Notification thresholds, deadlines, affected-data tests, and risk assessments vary; there is no universal rule that every incident must be reported within 72 hours.

### Related terms

[Data leakage and exposure](<https://yellowcube.eu/glossary/data-leakage-and-exposure/>) · [Data exfiltration](<https://yellowcube.eu/glossary/data-exfiltration/>) · [Incident response (IR)](<https://yellowcube.eu/glossary/incident-response/>) · [Data security](<https://yellowcube.eu/glossary/data-security/>) · [General Data Protection Regulation (GDPR) security](<https://yellowcube.eu/glossary/general-data-protection-regulation-security/>) · [Security incident](<https://yellowcube.eu/glossary/security-incident/>)

### Sources

[NIST SP 1800-29: Data Confidentiality—Detect, Respond to, and Recover from Data Breaches](https://csrc.nist.gov/pubs/sp/1800/29/final) · [European Data Protection Board, Guidelines 01/2021 on Examples regarding Personal Data Breach Notification](https://www.edpb.europa.eu/documents/guideline/guidelines-012021-on-examples-regarding-personal-data-breach-notification_en) · [EU General Data Protection Regulation, Article 4(12)](https://eur-lex.europa.eu/eli/reg/2016/679/oj/eng)

## Attribution and scope

This Markdown representation is generated from the same approved content records as the canonical HTML page. Cite the canonical URL above when referencing this material. Product and service descriptions are informational; confirm project-specific requirements with Yellow Cube.

