Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Meta Tests Muse AI Agent Calls That Are Actually Made By Humans in a Call Center

    September 22, 2026

    Sweden fines Miljödata $183,000 over breach affecting 2.2 million

    September 22, 2026

    The OSINT Newsletter – Issue #123

    September 22, 2026
    Facebook X (Twitter) Instagram
    • Demos
    • Technology
    • Gaming
    • Buy Now
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Canadian Cyber WatchCanadian Cyber Watch
    • Home
    • News
    • Alerts
    • Tips
    • Tools
    • Industry
    • Incidents
    • Events
    • Education
    Subscribe
    Canadian Cyber WatchCanadian Cyber Watch
    Home»News»Sweden fines Miljödata $183,000 over breach affecting 2.2 million
    News

    Sweden fines Miljödata $183,000 over breach affecting 2.2 million

    adminBy adminSeptember 22, 2026No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Sweden fines Miljödata $183,000 over breach affecting 2.2 million

    Sweden’s data privacy regulator, IMY, has imposed a $183,000 (SEK 1.8 million) fine on IT systems provider Miljödata for inadequate security measures leading to a breach in August 2025 affecting 2.2 million people.

    Miljödata is a Swedish software company that develops and provides work environment and HR management systems used by 80% of Sweden’s municipal systems.

    Last year, on August 25, the company suffered a cyberattack that disrupted IT services in over 200 regions and compromised residents’ sensitive data.

    The threat actor demanded a ransom of 1.5 Bitcoin (valued at $168,000 at the time) to prevent leaking the stolen information, but published it on the dark web under the name “Datacarry.”

    The information included personal identity numbers, contact information, sickness absence, rehabilitation, and even school incidents involving underage individuals.

    IMY launched an investigation in November 2025 to determine whether any security shortcomings violated the company’s obligations under the European Union’s General Data Protection Regulation (GDPR).

    The agency has now confirmed that the company failed to adequately check newly installed software and lacked automated, real-time monitoring  mechanisms to detect intrusions and suspicious activity.

    “IMY’s investigation shows that the company did not maintain a sufficiently high level of technical and organizational security, considering the types of personal data it processed,” reads the announcement.

    “The company did not perform sufficient checks when installing new software and did not have automated real-time monitoring of its systems to detect intrusions and suspicious activity.”

    The negligence constitutes a violation of Article 32(1) of the GDPR, for which the agency imposed a penalty of $183,000.

    Threat actors sometimes use the prospect of regulatory penalties to pressure victims into paying, and may set demands below what they believe an incident would ultimately cost, to incentivize victims to pay the ransom.

    IMY noted that it has also launched investigations into two municipalities and one region in connection with the attack on Miljödata, which are ongoing, so additional penalties may be imposed in the future.


    article image

    Join Mikko Hyppönen and security leaders from the NFL, CHANEL, and Atlassian for a two-hour digital summit on what AI-speed attacks change, what defenders should stop doing, and how to validate, decide, fix, and re-validate at machine speed.

    Save your seat



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleThe OSINT Newsletter – Issue #123
    Next Article Meta Tests Muse AI Agent Calls That Are Actually Made By Humans in a Call Center
    admin
    • Website

    Related Posts

    News

    Meta Tests Muse AI Agent Calls That Are Actually Made By Humans in a Call Center

    September 22, 2026
    News

    The OSINT Newsletter – Issue #123

    September 22, 2026
    News

    Rogue external MFA providers can steal passwords during logins

    September 22, 2026
    Add A Comment

    Comments are closed.

    Demo
    Top Posts

    Catchy & Intriguing

    March 17, 202679 Views

    How fraudsters target credit unions

    May 4, 202644 Views

    IP Address Investigations and Local OSINT

    March 20, 202641 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    85
    Featured

    Pico 4 Review: Should You Actually Buy One Instead Of Quest 2?

    January 15, 2021 Featured
    8.1
    Uncategorized

    A Review of the Venus Optics Argus 18mm f/0.95 MFT APO Lens

    January 15, 2021 Uncategorized
    8.9
    Editor's Picks

    DJI Avata Review: Immersive FPV Flying For Drone Enthusiasts

    January 15, 2021 Editor's Picks

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Demo
    Most Popular

    Catchy & Intriguing

    March 17, 202679 Views

    How fraudsters target credit unions

    May 4, 202644 Views

    IP Address Investigations and Local OSINT

    March 20, 202641 Views
    Our Picks

    Meta Tests Muse AI Agent Calls That Are Actually Made By Humans in a Call Center

    September 22, 2026

    Sweden fines Miljödata $183,000 over breach affecting 2.2 million

    September 22, 2026

    The OSINT Newsletter – Issue #123

    September 22, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • Home
    • Technology
    • Gaming
    • Phones
    • Buy Now
    © 2026 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.