











Threat Insight
In early August 2026, an unknown actor accessed the IT environment of the Norwegian company Ryde, and managed to copy customer data. Ryde is a large micromobility company and provides electric scooters and e-bikes to countries across Northern Europe. [1]
The scale of the incident is notable as it affected Ryde’s entire user base of 4.5 million accounts. Users are located in Norway, Sweden, Finland, Germany and other Ryde markets. According to Swedish Television as many as 1.3 million of the affected accounts belonged to users in Sweden. [2]
Ryde states that the exposed data included phone numbers, email addresses, dates of birth, partial card numbers and in some cases also payment history for ride purchase and fees. Journey history was not included in the affected data. [1]
Assessment
As of today, no threat actor has been publicly identified, and Ryde has not disclosed how the intruder gained access. The incident is however in line with the pattern of opportunistic cybercrime activity that Truesec has observed in the past. Cybercriminals often steal personal data and resell it to other criminals that use them to fuel more criminal activities, such as fraud and new breaches.
A breach affecting a widely used digital service creates cascading risks beyond the initial attack.
Organizations that handle large customer databases must understand that this data is highly valuable and a prime target for cybercriminals, even if it doesn’t include full credit card information or other payment information. This data needs to be protected.
Organizations that may have had employee’s account information leaked should use the Ryde breach as an opportunity to review and strengthen relevant security controls.
Affected users that have had their personal data stolen in this breach should follow the following guidelines
If you or your organization have concerns about the topic above or need support, please reach out to your Truesec contact for further assistance.
[1] https://www.ryde-technology.com/security-incident-2026-08-02
[2] https://www.svt.se/nyheter/lokalt/norrbotten/efter-dataintranget-hos-ryde-sa-manga-berors-i-sverige
[3] https://www.datatilsynet.no/aktuelt/aktuelle-nyheter-2026/vi-har-mottatt-avviksmelding-fra-ryde/
Stay ahead with cyber insights
Stay ahead in cybersecurity! Sign up for Truesec’s newsletter to receive the latest insights, expert tips, and industry news directly to your inbox. Join our community of professionals and stay informed about emerging threats, best practices, and exclusive updates from Truesec.
此内容由惯性聚合(RSS阅读器)自动聚合整理,仅供阅读参考。 原文来自 — 版权归原作者所有。