Privacy Law Updates EDPB news

Swedish DPA fines Miljödata i Karlskrona approximately EUR 160 000 for insufficient technical and organisational measures to ensure information security

The headline and the excerpt are the source’s own words.

Read it at imy.se · via EDPB

Source
European Data Protection Board
Published by the source
Type
Enforcement action
The source's category
Cybersecurity, Personal data breaches

Status: not tracked by DeSpy · checked 2026-10-08 · the source's record

In EDPB’s words

In August 2025, the IT service provider Miljödata was targeted in a cyberattack, during which a malicious actor gained access to a large volume of personal data and subsequently published data on the darknet. According to the company, the incident affected 2.2 million individuals. Among Miljödata’s customers affected by the attack are a majority of Sweden’s municipalities, several regions, and government agencies, as well as a large number of private companies. The compromised data included personal identity numbers, contact details, and sensitive data related to sick leave, rehabilitation, and student-related incidents in schools.

Source: European Data Protection Board, edpb.europa.eu — excerpted; the headline is reproduced without alteration

Documents the source links

Source: European Data Protection Board, edpb.europa.eu — excerpted; the headline is reproduced without alteration. EDPB reuse notice (acknowledge the source; do not distort it).

Source record Collected from European Data Protection Board · First read at the source 2026-10-08 (automated)

Spotted a mistake in how this entry is shown? Email privacy@despy.app and quote edpb-20261008-42fde7.