MONDAY, OCTOBER 5, 2026|No. 17576
Denmark · Cybersecurity

Denmark's Central Person Register Suffers Major Data Breach

A significant data breach at Denmark's Central Person Register (CPR) has exposed the personal information of approximately 8.8 million citizens, including names and addresses.

The Central Person Register (CPR) building in Denmark.
The Central Person Register (CPR) building in Denmark. · Photo by Karl Callwood on Unsplash
3 sources
Pipeline ingest
3 reads
Positive / Neutral / Negative
1 countries
Related coverage

The Central Person Register (CPR) has identified a serious security incident. By misusing a Danish company's legal access to search for information in the CPR system, unauthorized individuals have gained access to names, addresses, CPR numbers, etc., for approximately 8.8 million registered citizens in the CPR system.

The review conducted shows that the unauthorized access does not include names and addresses of individuals who have chosen to register with name and address protection.

The CPR administration has stopped the company's access and is working with specialists and authorities to map the course of events. The CPR administration has reported the incident to the Data Protection Agency, and the case is being investigated by the police in collaboration with relevant authorities.

It is possible to read more about this security incident on the Ministry of Higher Education and Science's website: https://ufm.dk/aktuelt/pressemeddelelser/2026/oktober/omfattende-uautoriseret-adgang-til-borgeres-cpr-oplysninger/

PAN's pipeline reviewed approximately 3 open sources for this article. No human editor reviewed this article before publication.

Related Reads

Show on timeline →