Particle.news

DDoS Attack Disrupts Norway's Shared Government Services

Targeting the nation's shared login and data‑exchange layer, the incident shows the vulnerability of public services to availability attacks.

Overview

  • A large distributed denial-of-service campaign began in the early hours of Monday, August 24, and targeted infrastructure run by the Norwegian Directorate for Digitalisation (Digdir) and its operator Vivicta.
  • The attack caused outages, failed connections and lengthy login times for many shared platforms, with key services including ID-porten, eSignering, Maskinporten, eFormidling and Altinn experiencing partial or full disruption.
  • Digdir and Vivicta say they have mitigated much of the impact and restored many systems but report that ID-porten and the e-signature service remained partially inaccessible while investigations found no sign of personal data compromise.
  • Because Digdir provides a single authentication and data-exchange layer for many agencies, an availability attack on that layer produces cascading outages for downstream services such as Skatteetaten, Helsenorge and NAV by blocking or slowing logins.
  • There is no official attribution and media speculation about Russian involvement remains unconfirmed, and security teams warn that repeated DDoS campaigns can force constant changes to traffic filtering and degrade service access for legitimate users.