The security breach occurred between the night of July 29 and July 30, 2026, when unknown perpetrators gained digital access to the VwbP register. Staff at the Office of Justice identified irregularities on July 30, prompting the Office of Information Technology to secure the system and pull it offline. A crisis unit, led by Prime Minister Brigitte Haas and Minister of Justice Emanuel Schädler, is currently investigating the extent of the theft.
Established in 2021 to comply with the 5th EU Anti-Money Laundering Directive, the register catalogs beneficial owners of companies, foundations, and trusts to prevent financial crime. Industry observers warn that as European registries evolve into critical financial infrastructure under frameworks like eIDAS 2.0, they become primary targets for bad actors. The government has confirmed the incident qualifies as a personal data breach under GDPR regulations.

Comments (0)
No comments yet. Be the first!