The Det Centrale Personregister (CPR), Denmark's Central Person Register, has confirmed a significant security incident. Unauthorized parties gained access to the personal data of approximately 8.8 million registered citizens by misusing a Danish company's authorized access to the CPR system. The exposed data includes names, addresses, and CPR numbers.
An initial review indicates that individuals who had registered for name and address protection were not affected by this unauthorized access. The breach specifically targeted general citizen data available through the compromised company's access.
The CPR administration has revoked the involved company's access to the system. They are currently working with specialists and authorities to map out the incident. The breach has been reported to the Danish Data Protection Agency (Datatilsynet), and the police are investigating the matter in collaboration with relevant authorities.
Additional details regarding this security incident are available on the website of the Ministry of Higher Education and Science (Forsknings-, Uddannelses- og Digitaliseringsministeriet).
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Denmark's Central Person Register (CPR) experienced a data breach, exposing personal information for approximately 8.8 million citizens. Unauthorized individuals exploited a Danish company's legitimate access to the CPR system to obtain names, addresses, and CPR numbers, prompting an investigation and termination of the company's access.