Skip to content
See the World Through Science

Norway Says 12 Shared Public Services Were Disrupted by a Denial-Of-Service Attack

AI & Technology

Republish this story

Our work is licensed under Creative Commons BY-NC 4.0. You may republish this piece for free — with credit to ALLATRA Media and a link to the original, unedited beyond length trims, and not for commercial use.

Read the full license

The Altinn front page displayed on a screen while a man points at it.
The front page of Altinn, one of the shared national services Digdir operates. Altinn and the ID-porten login service were the systems taken offline by the attack."Altinn-forside på skjerm med mann som forklarer 1920x1080" by digdir, via flickr, CC-BY-2.0 · CC-BY-2.0

A distributed denial-of-service attack that began at 3:38 a.m. on Monday, Aug. 24, disrupted twelve shared digital services run by the Norwegian Digitalisation Agency, the agency said in a statement issued at 12:27 p.m. local time on Tuesday. The services are the common login, messaging and filing systems used across Norway's public sector.

The agency, known as Digdir, named the affected services as ID-porten, MinID, Maskinporten, the Contact and Reservation Register, eFormidling, ELMA, eInnsyn, Ansattporten and its self-service solution, together with Altinn, eSignering and Digital postkasse. They were completely unavailable for short periods, Digdir says, and partly available for most of the time, with logins taking longer than usual.

Digdir says the services are now stable, that some are still seeing disruption, and that work will continue until the situation is over.

"There is no indication that the attack has led to a security breach or that personal data has gone astray," director Frode Danielsen said in the statement, which was issued in Norwegian and is translated here. He said the purpose of this type of attack is to hit availability rather than to break into the systems.

This is the third time in a short period that this type of attack has been directed at Digdir's services, the agency says. It says it is working with its supplier Vivicta on measures to shield the services, and that it has notified NSM, Norway's national security authority, and the data protection authority Datatilsynet. Operating status is being published at status.digdir.no.

Digdir says it will evaluate the incident closely once it is over and consider further measures to reduce the risk of it happening again. Its statement does not say who was behind the attack.

Sources

Spot an error?

Spot an error?

Report an error

Spotted a mistake on this page? Tell us what's wrong and our editors will take a look.

What kind of problem?

Only if you'd like us to be able to follow up. We won't use it for anything else.

We correct mistakes openly. Select any text to flag it. Fixes are logged under our Corrections Policy.

Report an error

Reporting on

Norway Says 12 Shared Public Services Were Disrupted by a Denial-Of-Service Attack

What kind of problem?

Only if you'd like us to be able to follow up. We won't use it for anything else.

We read every report. Corrections are logged publicly.