Politics · Switzerland · 1 day ago

Possible Publica data leak raises questions about software provider access

Possible Publica data leak raises questions about software provider access

Publica, a large Swiss pension fund, says a cyberattack may have exposed sensitive information about its members.

The attack targeted its software supplier, PK Softtech AG, rather than Publica directly.

The data may include names, addresses, Swiss social security numbers, salaries and pension balances.

It is not yet clear how much data was exposed or who was affected.

A cybersecurity expert says software suppliers may access client data to run systems or carry out tests and repairs.

Using real personal data for testing can increase the harm if a supplier is attacked, although anonymising data takes time and can be error-prone.

Exposed details could help criminals create convincing scam messages or misuse people’s identities.

Publica has urged members to be cautious about unusual calls or messages, and the investigation into the possible leak’s scale is ongoing.

Sources

Related news