Particle.news

Download on the App Store

Volvo North America Notifies Employees After Miljödata Ransomware Exposes Names and SSNs

A compromise at Swedish HR vendor Miljödata exposed downstream employers to sensitive employee data theft.

Overview

  • Volvo told staff that first and last names together with Social Security numbers were taken, and said its own systems were not breached.
  • Notification letters filed with the Massachusetts Attorney General confirm the attack on Miljödata occurred on August 20 and was detected on August 23, with Volvo informed on September 2.
  • Volvo is offering 18 months of free identity protection and credit monitoring through Allstate Identity Protection Pro+.
  • Ransomware group DataCarry claimed the attack and posted Miljödata files on a dark‑web site, with Have I Been Pwned indexing 870,000 unique email addresses from the leak.
  • Authorities and victims report broad impact across roughly 200 Swedish municipalities and at least two dozen companies, while estimates of total affected people range from 870,000 to 1.5 million.