‘123456’ Password Used in Massive Danish CPR Data Breach
At least three accounts at the Funen-based IT company Pays — including an administrator account — used the password ‘123456’ when hackers gained access to Denmark’s Central Person Register, DataBreaches.net reports. The attackers had access to the CPR register, holding data on millions of Danes, for 21 days and 17 hours.