Norwegian Government Digital Services Hit by Major DDoS Attack

Norwegian Government Digital Services Hit by Major DDoS Attack

First seen 25 Aug 2026, 19:21 UTC BleepingcomputerSecurityaffairs.CoFeeds.4SysopsHeise.DeInfosecurity-Magazine 60.9

Article Content

Browse articles
ThreatCluster

A significant DDoS attack began on August 24, 2026, at 03:38 CEST, targeting Norway's Digitalization Agency (Digdir) and disrupting numerous public digital services. This attack, described as two to three times larger than previous incidents, affected services including ID-porten, MinID, and Altinn, leading to instability for over 30 hours. Digdir confirmed that while many systems have stabilized, some services remain partially inaccessible. There is no evidence of data compromise or unauthorized access. This incident marks the third DDoS attack on Digdir in recent months, following attacks in June and August 3. Speculation about potential Russian involvement has arisen, although no official attribution has been made.

Key Points: • Norway's government digital services faced a massive DDoS attack lasting over 30 hours. • The attack targeted the Norwegian Digitalization Agency, affecting critical public services. • No evidence of data breach or personal data theft has been reported.

Timeline

2026-08-24
DDoS attack initiated
A large-scale DDoS attack began at 03:38 CEST, targeting Norway's digital government infrastructure.
Heise.De
2026-08-25
Digdir confirms attack details
Digdir announced the attack's impact on various public services and confirmed ongoing stabilization efforts.
Bleepingcomputer
2026-08-25
Third DDoS attack reported
This incident is noted as the third DDoS attack on Digdir in recent months, following previous attacks in June and August.
Feeds.4Sysops