Top
Best
New

Posted by clan 1 day ago

Denmark data breach exposes 8.8M people's personal data(www.cpr.dk)
501 points | 350 commentspage 3
cimi_ 1 day ago|
Denmark's population is 6 million [0], where does the diff of 2.8M come from? :)

[0] https://www.dst.dk/en/Statistik/emner/borgere/befolkning/bef...

cimi_ 1 day ago||
Answering my own question, from here[0]: 'approximately 8.8 million registered persons (living, departed, deceased, etc.)'

[0] https://ufm.dk/aktuelt/pressemeddelelser/2026/oktober/omfatt...

pelagicAustral 1 day ago||
It's explained in the article, the dataset includes foreign nationals/temporary residents and some deceased people as well.
eric4smith 1 day ago||
Wait... wait wait... I thought the EU "protection" laws was supposed to prevent all of this?
pampas 1 day ago||
People need to be paid out whenever there is a leak. If the institution hides the leak make it 10x more. The status quo is not working for people.
neongod 12 hours ago||
Sweden just gave it all to Palantir voluntarily.
panzi 1 day ago||
8.8 million people? Wikipedia says Denmark only has 6 million people! Historical data too? People from other countries that had any treatment in Denmark?
still-learning 1 day ago||
Need to pay your cybersecurity people
hoppp 1 day ago||
Probably everyone in Denmark got breached. That sucks but 2FA identity verification already exists to access personal info
HenrikPontoppid 1 day ago||
I live in Denmark.

The 2FA verification system in place now has not had any reported breaches but is nevertheless an absolute joke. I use GrapheneOS on my personal phone which cannot use the government 2FA due to the arbitrary Android integrity API. I therefore use my old phone on which it works perfectly. The catch is that it hasn't been updated in over three years lol.

When the ministry responsible for the 2FA system was asked to allow it to be run on degoogled OSes, they refused saying it would be too costly to develop for "other systems". The responsible authority doesn't even know degoogled Android is still Android. And you expect these people to protect your private information and health records.

It was also leaked some time back that the Danish government let the NSA spy on every citizen in the country for literally nothing in return. Unconstitutional? Yes.

hoppp 1 day ago||
Its the MitId app that don't run on Graphene OS?

Yeah, it's probably easy to bypass too, if they are not actively maintaining it there are definitely holes in the system.

I think bad and expensive government software systems are a global norm, still the Danish system is more private than the Swedish where all it takes is a name and everyone's home address can be searched for.

sgt 1 day ago||
Maybe even dhh got breached. If only this system had been vibe coded in rust, this would have never happened /s
bryanrasmussen 1 day ago||
here's an English language report

https://cphpost.dk/2026-10-05/life-in-denmark/cpr-data-breac...

drchaim 1 day ago||
yeah, a this rate, we can assume all digital information will be public at some point.
chrisjj 1 day ago|
And unofficially - giving free rein to malicious misinformants everywhere.

Not long now before people get extorted for correction of doctored leaked sensitive personal details.

More comments...