24th Mar 2018

Hackers dump EU staff passwords and credit card details onto net

A number of people working for the EU institutions have had their emails, passwords and credit card details hacked and released to the general public over the Christmas break.

A partial list was recently published online by Anonymous, a loose network of cyber activists campaigning against the so-called 'New World Order'.

Thank you for reading EUobserver!

Subscribe now for a 30 day free trial.

  1. €150 per year
  2. or €15 per month
  3. Cancel anytime

EUobserver is an independent, not-for-profit news organization that publishes daily news reports, analysis, and investigations from Brussels and the EU member states. We are an indispensable news source for anyone who wants to know what is going on in the EU.

We are mainly funded by advertising and subscription revenues. As advertising revenues are falling fast, we depend on subscription revenues to support our journalism.

For group, corporate or student subscriptions, please contact us. See also our full Terms of Use.

If you already have an account click here to login.

  • Confidential details of EU institution staff were hacked and released (Photo: MyTudut)

Among the victims are administrators and officials at the European Commission, Eurojust (an EU body fighting organised crime), the European External Action Service, the European Parliament and Brussels-based think-tank the European Policy Centre (EPC).

Some have yet to be informed of the breach.

EUobserver on Monday (9 January) spoke to EPC analyst Amanda Paul who was unaware that her credit card number, password, mobile telephone number, mail address and email are floating in the public domain.

This website read her credit card number to her over the phone to confirm authenticity. After a very brief phone interlude, she promptly called her credit card company to cancel her card and change her email password.

All together, some 850,000 confidential details were released when Anonymous hacked into the Texas-based Stratfor Global Intelligence security firm.

Stratfor is a widely used private security research company. About 75,000 of its paying subscribers also had their credit card details disclosed, including some working for the EU institutions.

The leaked database has 19,000 email addresses ending in the .mil domain of the US military according to the Guardian newspaper. The list also included 242 Nato staff members.

"This company has suffered a blow to its reputation," Andreas Hartmann of the European Parliament's policy department on Citizens' Rights and Constitutional Affairs told this website.

Hartmann's confidential details were also breached, but he said "numerous actors" immediately informed him. He would not go into further detail.

"I immediately blocked my account. I didn't suffer any problems," he said, adding that he was satisfied by Stratfor's prompt response and communication on the matter.

Last year, Hartmann headed a study on the parliamentary oversight of security and intelligence agencies in the European Union.

For his part, Fred Burton, Stratfor's vice president of intelligence made a YouTube address on 28 December assuring paid subscribers they would be informed of the breach with details on how to protect their data. The company's website is still offline and has since been replaced by a page informing customers they will be entitled to a free one-year data identity coverage from a partner firm as compensation.

"Perhaps the reason Stratfor's taking its time to get back online is because they simply have no infrastructure anymore," anonymouSabu, one of the alleged masterminds behind Anonymous, tweeted on Saturday (7 January). According to Anonymous, the details were easily hacked because Stratfor did not run routine encryption on the data.

The entire operation could cast a long shadow over intense US lobbying against a leaked draft proposal for a Data Protection Regulation from the European Commission this past December.

Among the US complaints are the European Commission's views on data breach requirements, which they consider as "overly" severe and could undermine corporate data security practices.

"It is interesting to note that the US document tends to oppose specific proposals, such as the notification deadline and fines, in support of the vague issues such as not distracting businesses from improving corporate data security practices," wrote Joe McNamee in an email to EUobserver.

McNamee is an EU advocacy co-ordinator at European Digital Rights.

Public consultation of the draft ends on 15 January, with European Commissioner Viviane Reding, in charge of fundamental rights, expected to release a final draft of the directive before the end of the month.

A previous version of this article gave Andreas Hartmann of the European Parliament's policy department on Citizens' Rights and Constitutional Affairs the wrong job description. This mistake has since been corrected.

EU firms among targets in epic-scale hack

An unnamed state actor, believed by some experts to be China, has plundered data from three EU companies, on top of 69 other victims worldwide.

Hackers stole Van Rompuy's emails

Hackers last summer raided the emails of EU Council chief Herman Van Rompuy and 10 other senior EU officials.

EU parliament blocks websites 'to protect' staff

The EU parliament is routinely blocking websites such as Reddit or even the BBC in what internet security experts see as an exaggerated response to a virus which uses social networks.

EU data chiefs rally behind UK over Cambridge Analytica

EU leaders at a Brussels summit demand social networks and digital platforms guarantee transparency and privacy. Their call comes amid growing backlash against Facebook and Cambridge Analytica over voter manipulation.


Why has central Europe turned so eurosceptic?

Faced with poorer infrastructure, dual food standards and what can seem like hectoring from western Europe it is not surprising some central and eastern European member states are rebelling.

News in Brief

  1. EU wants 'Paris' climate strategy within 13 months
  2. Workload of EU court remains high
  3. Spain's supreme court charges Catalan separatist leaders
  4. EU calls for 'permanent' exemption from US tariffs
  5. Summit backs guidelines for future EU-UK talks
  6. Macron support drops as public sector workers go on strike
  7. EU leaders condemn Turkey for illegal actions in Aegean Sea
  8. Parliament must publish 'trilogue' documents, court says

Stakeholders' Highlights

  1. EUobserverStart a Career in EU Media. Apply Now to Become Our Next Sales Associate
  2. EUobserverHiring - Finance Officer With Accounting Degree or Experience - Apply Now!
  3. ECR GroupAn Opportunity to Help Shape a Better Future for Europe
  4. Counter BalanceControversial Turkish Azerbaijani Gas Pipeline Gets Major EU Loan
  5. World VisionSyria’s Children ‘At Risk of Never Fully Recovering', New Study Finds
  6. Macedonian Human Rights MovementMeets with US Congress Member to Denounce Anti-Macedonian Name Negotiations
  7. Martens CentreEuropean Defence Union: Time to Aim High?
  8. UNESDAWatch UNESDA’s President Toast Its 60th Anniversary Year
  9. AJC Transatlantic InstituteAJC Condemns MEP Ana Gomes’s Anti-Semitic Remark, Calls for Disciplinary Action
  10. EPSUEU Commissioners Deny 9.8 Million Workers Legal Minimum Standards on Information Rights
  11. ACCAAppropriate Risk Management is Crucial for Effective Strategic Leadership
  12. EPSUWill the Circular Economy be an Economy With no Workers?

Latest News

  1. Nordic states discuss targeted Russia sanctions
  2. Commission sticks to its line on Barroso case
  3. Germany and France promise new Russia sanctions
  4. EU rejects US trade 'gun to the head'
  5. Tariffs and Turkey will top This WEEK
  6. EU leaders roll over Brexit talks amid Trump and Russia fears
  7. Europe needs corporate tax reform - a digital tax isn't it
  8. EU data chiefs rally behind UK over Cambridge Analytica

Stakeholders' Highlights

  1. European Jewish CongressThe 2018 European Medal of Tolerance Goes to Prince Albert II of Monaco
  2. FiscalNoteGlobal Policy Trends: What to Watch in 2018
  3. Human Rights and Democracy NetworkPromoting Human Rights and Democracy in the Next Eu Multiannual Financial Framework
  4. Mission of China to the EUDigital Cooperation a Priority for China-EU Relations
  5. ECTACompetition must prevail in the quest for telecoms investment
  6. European Friends of ArmeniaTaking Stock of 30 Years of EU Policy on the Nagorno-Karabakh Conflict: How Can the EU Contribute to Peace?
  7. ILGA EuropeCongratulations Finland!
  8. UNICEFCyclone Season Looms Over 720,000 Rohingya Children in Myanmar & Bangladesh
  9. European Gaming & Betting AssociationEU Court: EU Commission Correct to Issue Guidelines for Online Gambling Services
  10. Mission of China to the EUChina Hopes for More Exchanges With Nordic, Baltic Countries
  11. Macedonian Human Rights MovementCondemns Facebook for Actively Promoting Anti-Macedonian Racism
  12. Nordic Council of MinistersGlobal Seed Vault: Gene Banks Gather to Celebrate 1 Million Seed Collections