LIVE · cybersecurity feed
Live wire
Australia Warns of Active Exploitation of Critical TeamCity Server FlawCVE-2026-21962 · Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical DataUS sanctions Iranian cyber actors as UK discloses power plant attackHackers target WordPress sites in miniOrange auth bypass attacksFake GTA 6 Extended Look and demo sites deliver an infostealerCVE-2026-63520 · Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)Fake Microsoft security scans trick victims into uninstalling their antivirusCVE-2026-19478 · ⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and MoreThe Vulnerability Gap: Why Discovery Is Outrunning RepairCISA’s logging guidance works beyond government
ddos

Norway ’s Digital Government Infrastructure Hit by a new DDoS Attack

Norway ’s shared government infrastructure suffered a third DDoS attack, disrupting digital services but showing no signs of data compromise. Norway ‘s shared digital government infrastructure has been hit by another distributed denial-of-service (DDoS) attack that disrupted services used by citizens, businesses and public agencies. The incident began at 03:38 CEST on Monday, August 24, […]

zeroday.news ·

Norway's shared digital government infrastructure has been subjected to a third distributed denial-of-service (DDoS) attack, causing widespread disruption to public services. The latest incident, which began at 03:38 CEST on Monday, August 24, targeted infrastructure operated by the Norwegian Digitalisation Agency (Digdir) and its service provider, Vivicta.

Digdir confirmed that several shared services experienced complete unavailability for short periods, while others suffered from connection failures, slow responses, and extended login times. The agency operates critical components of Norway's public-sector infrastructure, including ID-porten, MinID, Maskinporten, eFormidling, eInnsyn, the Contact and Reservation Register, and Ansattporten.

The impact of the attack extended beyond Digdir's direct services. Altinn, Norway's central platform for communication between citizens, businesses, and government, was also affected. Other public services relying on ID-porten experienced login problems, demonstrating how disruption to a shared authentication service can propagate throughout the digital government ecosystem. Previous attacks this summer similarly affected access to Helsenorge, NAV, and Skatteetaten.

Digdir has emphasized that the incident primarily concerns service availability and has found no indication of a successful intrusion or compromise of personal data. Director Frode Danielsen stated that there is no evidence the attack led to a security breach or that personal data was exposed. The agency has notified Norway's National Security Authority (NSM) and the Data Protection Authority (Datatilsynet) as part of its response.

This latest attack marks the third such incident in a short timeframe. Previous DDoS attacks against Digdir's services occurred in June and on August 3. The June incident specifically targeted ID-porten through Vivicta's network infrastructure, temporarily affecting services including ID-porten, MinID, Maskinporten, eInnsyn, and eFormidling. While Digdir and Vivicta have been able to mitigate these attacks and restore services, the repeated nature of the incidents suggests a persistent challenge for the wider public sector.

The ongoing campaign highlights how repeated attacks against shared infrastructure can create significant operational friction, forcing defenders to continuously adjust traffic controls, filtering rules, and protection measures. Digdir's status updates on August 24 reflected this dynamic, reporting initial improvements followed by complete outages for some solutions, and subsequent stabilization efforts.

There has been no official attribution for the attacks. While Norwegian media has speculated about potential Russian involvement, this remains unconfirmed. The motivation behind the DDoS campaign could range from political or financial objectives to simply demonstrating capability. Without technical evidence and an official attribution process, assigning responsibility to a specific state or group would be premature.

ddos
ShareXLinkedInWhatsAppFacebook

More News

view all →
ddos

Massive DDoS attack disrupts Norway’s government digital services

A large distributed denial-of-service (DDoS) attack has disrupted Norway's shared government digital infrastructure since Monday, affecting services used by the public sector. [...]

security

Arrested man allegedly impersonated NSA elite hacking unit, Supreme Court chief justice

Joshua Culver, aka “Maverick Young,” is accused of imitating the head of the NSA’s Tailored Access Operations unit during a time it wasn’t called that. The post Arrested man allegedly impersonated NSA elite hacking unit, Supreme Court chief justice appeared first on CyberScoop.

security

Water sector passes, government sector fails attempts to spot and halt simulated CISA attack

Agency red-teamers got initial access to both organizations they tested, but one quickly isolated and shut down the attempts from going further. The post Water sector passes, government sector fails attempts to spot and halt simulated CISA attack appeared first on CyberScoop.

ai

When the Algorithm Fires You: Uber Faces €825M Fine

Uber faces an €825M GDPR fine for automatically suspending drivers without human review, highlighting the risks of AI decisions affecting workers. The Dutch Data Protection Authority handed Uber its largest privacy fine yet, and this one isn’t about data transfers or cookie consent. The regulator imposed an 825 million euro penalty, roughly $964 million, over […]

ai

Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation

TRACE was developed by AMD, Intel, Microsoft, OPAQUE, and TII and contributed to the Linux Foundation. The post Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation appeared first on SecurityWeek.

patch

You could've applied all 1,449 Oracle patches and still been hit by this attack

Attackers now ready to exploit how things work, rather than just break them, says Oracle support expert