Massive DDoS Attack Cripples Norway's Government Digital Services
Norway's vital shared government digital infrastructure has been under a sustained distributed denial-of-service (DDoS) attack since Monday, severely disrupting public sector services. The incident, targeting systems operated by the **Norwegian Digitalization Agency (Digdir)** and its provider **Vivicta**, has led to widespread service outages and accessibility issues for citizens and businesses.
A significant DDoS attack has severely impacted Norway's shared government digital infrastructure, affecting a wide array of public sector services. The assault, which commenced at 03:38 CEST on Monday, has specifically targeted the systems managed by the **Norwegian Digitalization Agency (Digdir)** and its operations provider, **Vivicta**.
**Digdir** is responsible for Norway's critical digital government infrastructure, encompassing essential services such as public-service logins, electronic IDs and signatures, secure digital mail, government forms, public-record access, and inter-agency data exchange.
### Service Disruptions and Stabilization Efforts
**Digdir** initially reported that several services experienced complete unavailability for short durations. While many affected systems have since been stabilized, key services like **ID-porten** and **eSignering** remain partially inaccessible.
Users may encounter various issues, including failed connections, slow server responses, and prolonged login times. For real-time updates on **Digdir** service availability, the public can consult the [services' operating status page](http://status.digdir.no/) and the [incident report page](https://testmiljo.status.digdir.no/incidents/ntvftz0nwhl6).
### No Indication of Data Breach
**Frode Danielsen**, director of **Digdir**, stated that investigations into the incident have found no evidence of a security breach compromising the organization's systems or personal data. This reassurance comes amidst the ongoing disruption.
### Recurring Attacks
This incident marks the third DDoS attack targeting **Digdir** in recent months, following similar events in June and on August 3. The **Norwegian National Security Authority (NSM)** and the **Norwegian Data Protection Authority (Datatilsynet)** have been notified of the ongoing situation.
### Unofficial Attribution and Wider Impact
While there is no official attribution for the attack, Norwegian media have speculated about potential Russian involvement.
The disruption has also spread to services that rely on **Digdir** but were not direct targets. **Altinn**, Norway's central digital platform for citizen, business, and government communication, has issued warnings about login and operational problems, directing users to **Digdir**'s status page. Similarly, **Skatteetaten**, Norwayβs tax administration agency, displays a notice regarding login issues and advises users to try again later.