“Latvijas valsts meži” Notice to Clients and Partners on a Cybersecurity Incident and an Identified Personal Data Protection Breach - Zeme un valsts

“Latvijas valsts meži” Notice to Clients and Partners on a Cybersecurity Incident and an Identified Personal Data Protection Breach

AS “Latvijas valsts meži” (LVM) has already reported that a cybersecurity incident was identified on 22 June this year, which may have allowed third parties unauthorised access to the personal data of clients, partners and other individuals held in LVM's information systems.

Work is currently under way to investigate the incident, and the necessary technical and organisational measures have been taken to contain it, prevent any further unauthorised access, and reduce its possible impact.

Personal data that, based on information currently available, may have been affected:

  • first name, surname,
  • personal identity number, contact details,
  • other personal data held in the affected systems, depending on the services provided or the nature of the partnership.

Recommended action to reduce possible risks:

  • be especially wary of suspicious emails, text messages and phone calls,
  • do not disclose passwords, internet banking access details or authentication codes (neither banks nor law enforcement agencies ever call to ask for access to your internet banking).

Actions taken by LVM:

  • an investigation into the incident was launched immediately,
  • measures were taken to stop the cyberattack, including disconnecting the network from the internet and taking control of infrastructure management,
  • close cooperation with the relevant authorities.

LVM thanks its clients and partners for their understanding, and confirms that the security of personal data is a key priority for the company, and that everything possible is being done to mitigate the consequences of the incident and strengthen the security measures protecting LVM's infrastructure.

Add a comment