logo

NordVPN Data Breach 2019

ID: 5a354da5-a711-59dd-ba9c-b6f4d3ff658e

STIX ID: report--5a354da5-a711-59dd-ba9c-b6f4d3ff658e

Feed Name: Arctic Wolf Blog

Threat Score
50/100

Date Published: 2019-11-26

Date Updated: 2026-04-26

...
...

NordVPN confirmed that a contracted Creanova datacenter server in Finland was breached in March 2018, resulting in theft of a TLS key and an OpenVPN CA key; although NordVPN says only one of roughly 3,000 servers was affected and no customer data was confirmed stolen, the keys could be used to create rogue VPN servers and intercept individual users. The company destroyed the affected server, terminated the contract, initiated audits, plans to move to diskless servers, engage penetration testers, and raise security standards for providers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.