DTU breach may have exposed data of up to 200,000 users
The Technical University of Denmark disclosed that attackers used compromised credentials to access DTUBasen, its identity and access management system, downloading over two decades of user data. The system holds records for roughly 40,000 active users and 160,000 former users, including Danish civil registration numbers, addresses, profile pictures and next-of-kin contact details. DTU says it cannot yet determine exactly what data was taken or how many people are affected.