Skip to content

Cyberattack on Romanian Land Registry Authority: Entire Database Deleted

The point: Cyberattackers penetrated Romania’s cadastral authority, stole data, and deleted the entire land registry database of the country.

Romania’s cadastral authority fell victim to a cyberattack in which attackers accessed critical systems and performed both data exfiltration and deletion of records.

The Romanian cadastral authority suffered a cyberattack in which attackers penetrated critical systems and were able to perform both data theft and deletion of database records. The land registry database, a central register for real estate ownership and property relationships, was completely deleted.

For a CISO or head of information security, this incident represents a critical scenario: an attacker was not only able to exfiltrate confidential data but also destructively impact the database inventory. This indicates insufficient segregation of read and write access as well as missing or bypassed backups — core controls in a defense-in-depth approach.

The attack underscores the relevance of the NIS2 Directive: critical infrastructures such as land registry offices require robust access controls, network segmentation, backup and recovery strategies, and incident response capabilities. Such a compromise requires immediate forensic analysis, notification of the responsible supervisory authorities, and if necessary, reporting to national cyber security centers.


Source: www.golem.de · Published July 21, 2026
Lumi AI News — AI-assisted curation pursuant to Article 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.

Share on: