Skip to main content

Hack involved the data of a nation’s entire population

Hackers are well known to nab customer data held by companies, but obtaining the personal data of pretty much all of the residents of a single nation in one fell swoop takes the nefarious practice to a whole new level.

The remarkable feat was allegedly performed by a 25-year-old Dutch hacker who, when arrested by police, had in his possession personal data linked to pretty much every resident of Austria — about nine million people.

The suspect was actually arrested in November, Reuters reported, but Austrian police only revealed details of the case this week to protect its long-running investigation.

Nine million data sets linked to Austrian residents were offered for sale on an online forum in May 2020. The data included the full name, gender, complete address, and date of birth “of presumably every citizen,” the police said.

According to Reuters, the information is what’s known as “registration data,” which residents of Austria are required to give to the authorities. The alleged hacker obtained the data after exploiting a glitch at a Viennese IT company that had temporary access to the information, local media reported.

The accused was apparently also trying to sell similar data sets linked to the populations of Italy, the Netherlands, and Colombia, though it’s not clear how many residents in each of these countries were caught up in the hacks.

Police arrested the suspect in an apartment in Amsterdam. According to reports, he is already known to international police and is currently being investigated by the Dutch authorities.

“Since this data was freely available on the internet, it must absolutely be assumed that these registration data are, in full or in part, irrevocably in the hands of criminals,” Austrian police said.

Editors' Recommendations

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
Google just thwarted the largest HTTPS DDoS attack in history
A depiction of a hacker breaking into a system via the use of code.

Google has confirmed that one of its cloud customers was targeted with the largest HTTPS distributed denial-of-service (DDoS) attack ever reported.

As reported by Bleeping Computer, a Cloud Armor client was on the receiving end of an attack that totaled 46 million requests per second (RPS) at its peak.

Read more
Elon Musk’s Starlink satellites hacked by $25 homemade device
A Starlink dish next to an RV.

A $25 hacking tool that can seemingly breach Starlink’s internet terminals has been revealed by a security researcher.

As reported by Wired and Gizmodo, Lennert Wouters, who works at Belgian university KU Leuven, showcased how to infiltrate the satellite dishes at the Black Hat Security Conference.

Read more
Hacking-as-a-service lets hackers steal your data for just $10
A depiction of a hacker breaking into a system via the use of code.

A new (and cheap) service that offers hackers a straightforward method to set up a base where they manage and perform their cyber crimes has been discovered -- and it’s gaining traction.

As reported by Bleeping Computer, security researchers unearthed a program called Dark Utilities, effectively providing a command and control (C2) center.

Read more