Hackers access personal data of 8.8 million people in Danish national register
Denmark's government said unauthorised people accessed the names, addresses and CPR numbers of about 8.8 million people in the Central Person Register, via a Danish company that legitimately had access. An investigation is under way.
1 / 2
The story, neutrally told
Mixed · 2Denmark's government said on 5 October 2026 that unauthorised individuals had illegally accessed the national Central Person Register (CPR), obtaining the names, addresses and CPR numbers of around 8.8 million registered people. The Straits TimesRC “unauthorised individuals obtained illegal access in particular to the names, addresses, and CPR numbers of around 8.8 million registered people” Read at The Straits Times ↗ Anadolu AgencyN “Unauthorized persons gained access to the names, addresses, and personal identification numbers of about 8.8 million people in Denmark” Read at Anadolu Agency ↗ Mixed · 2The register holds about 11 million people, including those who have died or emigrated, while Denmark's population is around six million, which is why the number of affected records exceeds the number of residents. The Straits TimesRC “Denmark has a population of around six million, but the national registry has information on 11 million” Read at The Straits Times ↗ Anadolu AgencyN “The CPR system contains about 11 million registered people, including deceased people and Danish citizens who have moved abroad.” Read at Anadolu Agency ↗ Mixed · 2According to the ministry, the intruders got in through a Danish company that legally had the right to search the register. The Straits TimesRC “They broke into the national registry by hacking into a Danish company that legally had access to it” Read at The Straits Times ↗ Anadolu AgencyN “The unauthorized access was obtained by abusing a Danish company’s legitimate right to search the CPR system” Read at Anadolu Agency ↗
Mixed · 2Digital affairs minister Christina Egelund called it "an extremely serious incident" (rendered by Anadolu as "deeply serious") and said authorities were working to map its full extent. The Straits TimesRC ““This is an extremely serious incident,” Christina Egelund, digital affairs minister said” Read at The Straits Times ↗ Anadolu AgencyN “The Ministry of Research, Education and Digitalization described the incident as “deeply serious”” Read at Anadolu Agency ↗ Right · 1An investigation has been launched and the hackers have not yet been identified, according to the AFP report. The Straits TimesRC “An investigation has been launched into the incident, with the hackers not yet identified” Read at The Straits Times ↗ Centre · 1Anadolu, citing the Danish broadcaster DR and the ministry, reported that the company's access to the register has been suspended and the Danish Data Protection Agency notified, and that people registered for name and address protection were not affected. Anadolu AgencyN “Authorities have suspended the company’s access to the register and notified the Danish Data Protection Agency.”“did not include the names and addresses of people who had registered for name and address protection” Read at Anadolu Agency ↗
Centre · 1Egelund urged the public to stay vigilant and not to disclose passwords or other confidential information in response to calls, emails or other inquiries, even if the contact knows their name, address or CPR number. Anadolu AgencyN “urged people to remain vigilant and warned them not to disclose passwords or other confidential information” Read at Anadolu Agency ↗
Every sentence links to the reporting it rests on. The pill in front of each says where its sources sit: Left, Centre or Right when one side supplies at least half of them, Mixed when they are evenly split. The number is how many outlets it cites.
Left0 outlets
No left outlet in our sources has covered this story yet.
Centre1 outlet
- Framing
- Anadolu reports the incident as a security incident, citing DR and the ministry, with practical details on response and public advice.
- Emphasis
- Suspension of company access, data protection agency notified, exclusion of protected addresses, scam warnings.
- Leaves out or plays down
- Does not say the hackers are unidentified or that an investigation was launched.
- Charged language
- “deeply serious”
- For example
-
“Authorities have suspended the company’s access to the register and notified the Danish Data Protection Agency.” — Anadolu Agency
Right1 outlet
- Framing
- Straits Times runs AFP wire copy that leads with the breach and the minister's quote, stressing the scale and that hackers are unidentified.
- Emphasis
- Scale of the breach, population versus register size, investigation under way.
- Leaves out or plays down
- Does not mention the protected-address exemption, the notification of the data protection agency or the minister's advice to the public.
- Charged language
- “extremely serious incident”
- For example
-
“An investigation has been launched into the incident, with the hackers not yet identified” — The Straits Times
What every side reports
- About 8.8 million people's names, addresses and CPR numbers were accessed without authorisation on the Central Person Register.
- Access came via a Danish company with legitimate access to the register.
- Digital affairs minister Christina Egelund called the incident very serious; authorities are establishing its full extent.
- The register covers about 11 million people, including the dead and emigrants.
Where accounts differ
-
Whether the company's access to the register has been cut off
- Centre
- Anadolu says authorities have suspended the company's access to the register.
- Right
- AFP, carried by the Straits Times, says the government added that the access has not been revoked.
Denmark place
The Danish government, through the digital affairs minister, calls the breach very serious, says it is mapping the full extent with other authorities and warns the public to be vigilant.
“we are in the process of mapping out the full extent of the incident” — The Straits Times
“urged people to remain vigilant” — Anadolu Agency
East and Southeast Asia1 outlet
Straits Times carries AFP's account of a hack via a company with legal access.
“Hackers broke into Denmark’s national registry and gained access to personal information on millions of people” — The Straits Times
The Straits Times
Middle East1 outlet
Anadolu frames it as a security incident and stresses mitigation steps.
“Authorities have suspended the company’s access to the register” — Anadolu Agency
Anadolu Agency
Left0 articles
No coverage yet.
Centre1 article
-
Personal data of 8.8M people accessed in Denmark security incident
Neutral Factual report citing DR and the ministry, with emphasis on response measures and public guidance.

Right1 article
-
The Straits TimesRC · · via AFP
Hackers get personal information on 8.8 million people in Denmark government data leak
Neutral AFP wire report presenting the ministry's statement on the breach and its scale.
- 5 Oct 09:51 First The Straits TimesRC Hackers get personal information on 8.8 million people in Denmark government data leak via AFP
- 5 Oct 11:50 +1h 59m Anadolu AgencyN Personal data of 8.8M people accessed in Denmark security incident
Times are when each article was published, or when we first saw it if the outlet gave no time.