#Nordnet - nordic digital platform for savings and investments - had an issue where people could see each others information. The website has been taken down for now.
#infosec #infosecurity #cybersecurity #privacy
#Nordnet services appear to be back.
Nordnet has a lot of technical issues to sort out. If the malfunction allowed unauthorized parties to operate the accounts it will be quite messy to sort out.
Among with technical part, they will have to deal with the regulatory issues, in particular the Financial Supervisory Authority. They will demand answers.
“#Nordnet admits that it was possible to trade in other people’s depots during the IT breakdown”
@harrysintonen@infosec.exchange Cannot really say Im that surprised. Their history with first resisting MFA and now pushing everyone to MFA with their own app as the only solution doesnt really fill me with hope.
Feeling from them has always been that speed and business push has been more important then putting the needed time in to build things.
@harrysintonen@infosec.exchange Yes, it’s not only Finland. There were people here in Denmark who could see other people’s accounts. One Dane could even see someone’s account from Finland. I’m looking forward to seeing how my assets are when I log in again.