Swissinfo.Ch Data Leak at Swiss Pension Fund Publica Following Cyberattack on Supplier
Article Content
- •Publica confirmed a data leak from a cyberattack on an external software supplier.
- •The investigation by the Office of the Attorney General is currently ongoing.
- •Publica has approximately 70,000 active members and 41,600 pensioners, with assets close to 45 billion Swiss francs.
Publica, the Swiss federal pension fund, confirmed a data leak due to a cyberattack on an external software supplier. The attack was detected in late September, prompting the supplier to file a criminal complaint and notify federal authorities. The extent of the data compromised remains unclear, and an investigation by the Office of the Attorney General is underway. Publica has informed its members of the breach and its potential implications. As of the end of 2025, Publica had approximately 70,000 active members and 41,600 pensioners, with assets nearing 45 billion Swiss francs. The identity of the supplier and the specific data leaked have not been disclosed. This incident follows previous breaches involving federal data in Switzerland, raising concerns about the security of external vendors.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Play and Concevis in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What data was leaked?
Who is the affected software supplier?
What measures is Publica taking in response?
Continue Reading
Ransomware Attacks Target Multiple Companies in September 2026 In September 2026, multiple ransomware groups, including Booba Project and Panzer, launched attacks on various organizations. Atlas Ocean Voyages suffered a breach where 37 GB of sensitive data was stolen, while Cerámicas Kantu S.A.C. was threatened with data release unless negotiations occurred. The attacks highlight…
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…