Denmark Central Person Register (CPR) Breach: Cyberattack Exposes Data of 8.8 Million
Attackers exposed names, addresses, and ID numbers of 8.8 million people in Denmark's national register.
On October 5, 2026, Danish authorities disclosed a breach of the Central Person Register, Denmark's national population database. Attackers used a legitimate company account to access names, addresses, and CPR numbers of about 8.8 million people. Rescana published a summary of the public disclosure.
- Denmark disclosed the CPR breach on October 5, 2026.
- About 8.8 million names, addresses, and CPR numbers were exposed.
- Attackers abused a legitimate company account to reach the register.
Rescana’s new report on a breach affecting the Denmark Central Person Register (CPR) summarizes the situation: On October 5, 2026, Danish authorities publicly disclosed a significant data breach affecting the Central Person Register (CPR), Denmark’s national population database. Attackers exploited a legitimate company account to access the names, addresses, and CPR numbers of approximately 8.8... Source
The full text could not be extracted from this site (paywall, bot protection or heavy scripting). Read it at databreaches.net.