INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).
Denmark's Central Person Register Experiences Data Breach Incident
| 2026-10-06 09:38 HIGH LOW DATA BREACH
Executive Summary
AI-generated
On October 6, 2026, Denmark's Central Person Register (CPR) notified approximately 8.8 million people that their personal information was stolen in a data breach. The incident occurred when hackers exploited the lawful access granted to CPR by Danish companies under the country's Data Protection Regulation and Data Protection Act. Established in 1968, CPR contains information on about 11 million individuals, including residents, emigrants, and deceased individuals. After discovering the breach, CPR terminated the private company's access, notified the Danish Data Protection Agency, and launched an investigation with authorities. The population register urges individuals to be wary of unsolicited communication requesting personal information, passwords, and other sensitive data, while also reviewing its security policies to prevent similar incidents.
Technical Mitigations AI-generated
• Block or hunt for suspicious login attempts from unknown IP addresses.
• Review and update the Danish company's lawful access to the CPR system, ensuring that all necessary permissions are revoked after the incident.
• Implement additional security measures on the CPR system, such as multi-factor authentication (MFA) for sensitive data requests.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Target & Sectors
NORDICS
NORDICS
Incident Timeline
2026/10/06
Hackers accessed the names, addresses, and CPR numbers of approximately 8.8 million registered individuals through a Danish company's lawful access to Denmark’s Central Person Register.
Click on any entity below to view its context and source!
organisation
Data Breach
8.8 Million Impacted by Data Breach at Denmark’s Central Person Register.
organisation
Denmark’s Central Person Register
8.8 Million Impacted by Data Breach at Denmark’s Central Person Register.
organisation
CPR
Established in 1968, CPR is Denmark’s national civil registration system and contains information on about 11 million people, including residents, emigrants, and deceased individuals.
organisation
Pentagon Personnel Agency Data
Pentagon Personnel Agency Data Breach Impacts 3 Million People
Related:
DC Health Agency Exposes 400,000 Beneficiary Records
Related:
23 Million User Records Compromised in Gyazo Data Breach
organisation
Gyazo Data Breach
Pentagon Personnel Agency Data Breach Impacts 3 Million People
Related:
DC Health Agency Exposes 400,000 Beneficiary Records
Related:
23 Million User Records Compromised in Gyazo Data Breach
data_breach
400,000 Beneficiary Records
Pentagon Personnel Agency Data Breach Impacts 3 Million People
Related:
DC Health Agency Exposes 400,000 Beneficiary Records
Related:
23 Million User Records Compromised in Gyazo Data Breach
data_breach
23 Beneficiary Records
Pentagon Personnel Agency Data Breach Impacts 3 Million People
Related:
DC Health Agency Exposes 400,000 Beneficiary Records
Related:
23 Million User Records Compromised in Gyazo Data Breach
organisation
Social Security
Over the weekend, the organization determined that hackers accessed the names, addresses, and CPR numbers (the equivalent of Social Security numbers) of approximately 8.8 million registered individuals, both living and deceased.
organisation
Texas Healthcare Firms
Related:
250,000 Impacted by Data Breaches at New Jersey, Texas Healthcare Firms
Related:
organisation
the Danish Data Protection Agency
After discovering the incident, CPR immediately terminated the private company’s access, notified the Danish Data Protection Agency, and launched an investigation with the police and other relevant authorities.
Tactical Metrics
Metrics
data_breach
400,000
Beneficiary Records
Click for context!
Pentagon Personnel Agency Data Breach Impacts 3 Million People
Related:
DC Health Agency Exposes 400,000 Beneficiary Records
Related:
23 Million User Records Compromised in Gyazo Data Breach
Metrics
data_breach
23,000,000
Beneficiary Records
Pentagon Personnel Agency Data Breach Impacts 3 Million People
Related:
DC Health Agency Exposes 400,000 Beneficiary Records
Related:
23 Million User Records Compromised in Gyazo Data Breach
Intelligence Sources
SecurityWeek
2026-10-06
Unpublish from Social Media?
Are you sure you want to delete this podcast video from all synchronized social networks (YouTube, Facebook, Threads)?
Important:
Due to Meta API restrictions, Instagram Reels cannot be deleted automatically via API by third-party apps.
View Profile to Delete Manually
View Profile to Delete Manually
Tactical Intelligence
Report Intelligence Issue
Podcast Options
Generate
Incident Version History
CURRENT VERSION
Last Updated: 2026-10-07T07:03
Comprehensive Tactical Telemetry
Highly Correlated Entities
9x
organisation
Identified Entity
Data Breach
entity
3x
general metric
People
8,800,000
people
2x
target region
Target Country
Denmark
country
2x
data breach
Beneficiary Records
400,000
beneficiary records
Contextual Telemetry
Context Block
2 METRICS
tactic
Cyber Operation Type
Data Breach
tactic
general metric
Entities
250,000
entities
Click on any entity below to view its context in the main text!
Selective Unpublish
Selecciona las redes de las que quieres eliminar esta publicación. El sistema intentará borrar el post real de la API y limpiará la base de datos para que puedas volver a lanzarlo.
By navigating this website, you accept the use of strictly necessary technical cookies for session security and basic platform functionality. We do not use tracking or advertising cookies.
Read our Privacy Policy.