Denmark Says Attackers Accessed CPR Data for 8.8 Million People via Company Account
Overview
On October 5, Denmark's digitalization ministry reported that unauthorized individuals accessed sensitive data from the Central Person Register (CPR), affecting approximately 8.8 million people, both living and deceased. The attackers exploited a private Danish company's legal right to access these records. The compromised information includes names, addresses, and personal identification numbers, raising serious privacy concerns. The ministry has urged citizens to remain vigilant and take precautions to protect their personal information. This incident highlights vulnerabilities in data access protocols and the potential for misuse of legitimate access rights.
Key Takeaways
- Affected Systems: Central Person Register (CPR) data of 8.8 million individuals
- Action Required: Citizens advised to be vigilant and protect personal information.
- Timeline: Disclosed on October 5, 2023
Original Article Summary
Unauthorized parties have gained access to the names, addresses, and personal identification numbers of about 8.8 million people, living and dead, in Denmark's national population register, the country's digitalization ministry said on October 5. They used a private Danish company's lawful right to look up records in the Central Person Register (CPR). The ministry has told people never to
Impact
Central Person Register (CPR) data of 8.8 million individuals
Exploitation Status
The exploitation status is currently unknown. Monitor vendor advisories and security bulletins for updates.
Timeline
Disclosed on October 5, 2023
Remediation
Citizens advised to be vigilant and protect personal information.
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to Data Breach.