INFRA Signal 587
DDoS against Norwegian government IT infrastructure – status
Engineers relying on these authentication and service‑integration APIs must expect increased latency or timeouts during the incident. The event highlights the need for robust DDoS defenses and clear incident‑communication channels when critical infrastructure is outsourced to a partner.
Written by elseif from the cluster below · every claim links back to a sourceThe three things worth knowing
The attack targeted ID-porten, affecting MinID, eFormidling, ELMA, Selvbetjening, Altinn and related services.
Mitigation efforts are being carried out jointly with the hosting partner Vivicta, with traffic beginning to recover around mid‑afternoon.
Status updates are being published via Atlassian Statuspage, offering email, Slack, Teams and webhook notifications for ongoing monitoring.
THE CLUSTER