Dramatic illustration of a darknet leak of Swedish government IT data by hackers, showing computer screens with source code, passwords, and personal files.
Dramatic illustration of a darknet leak of Swedish government IT data by hackers, showing computer screens with source code, passwords, and personal files.
Imagem gerada por IA

Swedish government IT data leaked on darknet

Imagem gerada por IA

A hacker group called ByteToBreach has leaked sensitive information from a government IT system on the darknet. The leak includes source code, passwords, and personal data from a platform managed by IT consultant CGI Sweden. Authorities like Cert-SE confirm they are aware of the reports but decline to comment.

On the evening of Thursday, March 12, 2026, large amounts of sensitive information were posted on the darknet, according to reports from Dagens Nyheter, Expressen, and SVT Nyheter. The data stems from a breach at IT consultant CGI Sweden, which manages critical digital services for Swedish authorities. The hacker group ByteToBreach claims responsibility, stating they exploited flaws in the digital infrastructure.

The leaked material includes the full source code for Sweden's e-government platform, email passwords, personnel data, configurations for an e-signature portal, and a representatives' register. The platform is used for digital identity management, including BankID logins for agencies like Skatteverket. The group has made the source code available for free download, while databases containing personal data on Swedish citizens and electronic signing documents are sold separately.

The leak was reported by the site Darkwebinformer and the cybersecurity account International Cyber Digest. Cyber Digest describes it as ”a serious exposure of the trust anchors and identity solutions that power Sweden's digital state.” ByteToBreach is also suspected in a prior breach at Viking Line, where passenger data was leaked.

Cert-SE, tasked with preventing IT security incidents under MSB, confirms: ”We are aware of the reports but cannot comment at this time.” DN has reviewed the alleged leak and published details on how the breach was carried out on a cybercriminal forum. CGI Sweden has been sought for comment.

O que as pessoas estão dizendo

Cybersecurity accounts on X are sharing alerts and analyses of the ByteToBreach leak of Swedish e-government source code, passwords, PII, and configs from CGI Sweden's infrastructure. Reactions highlight supply chain risks, exposed vulnerabilities like RCE PoCs, and concerns over government vendor security practices.

Artigos relacionados

Illustration of ANCI-confirmed cyber infiltration in Chilean public agency due to stolen credentials, featuring hacker screens and government imagery.
Imagem gerada por IA

ANCI confirma infiltração em órgão público devido a credenciais roubadas

Reportado por IA Imagem gerada por IA

A Agencia Nacional de Ciberseguridad (ANCI) do Chile detectou uma infiltração em um órgão público após o roubo das credenciais de acesso de um funcionário. A ministra da Segurança, Trinidad Steinert, descreveu o alerta como delicado e encaminhou a investigação para a ANCI. O problema foi resolvido com o bloqueio dos acessos, embora a maior parte dos dados em circulação seja proveniente de vazamentos anteriores.

Gym chain Sats has confirmed a data breach affecting employees and members after a mid-March cyberattack. Sensitive HR data and member information have surfaced on the darknet, according to IT expert Karl Emil Nikka. The company is still investigating the full scope.

Reportado por IA

Gagnef municipality has used the same general password for officials and politicians for several years, recently leading to a security incident. The issue involves the Netpublicator service. The municipality is now tightening security.

A Comissão Europeia revelou um ataque cibernético que afetou sua infraestrutura de nuvem que hospeda os sites Europa.eu. Autoridades afirmaram que dados foram subtraídos dos sites e o incidente foi contido enquanto as investigações prosseguem. O Bleeping Computer relatou que hackers acessaram mais de 350 GB de dados, incluindo informações de funcionários.

Reportado por IA

Bancos colombianos enfrentam um possível ciberataque indireto por meio de um fornecedor externo de cobrança de dívidas, comprometendo dados de clientes como nomes, números de documentos e telefones. BBVA e Nu Colombia confirmaram o incidente e ativaram protocolos de segurança. Nenhuma entidade relatou acesso a senhas ou depósitos.

Este site usa cookies

Usamos cookies para análise para melhorar nosso site. Leia nossa política de privacidade para mais informações.
Recusar