> ## Content Index
> Fetch the complete content index at: https://darkwebinformer.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Full Source Code of Sweden's E-Government Platform Leaked From Compromised CGI Sverige Infrastructure
- URL: https://darkwebinformer.com/full-source-code-of-swedens-e-government-platform-leaked-from-compromised-cgi-sverige-infrastructure/
- Published: 2026-03-12T18:34:47.000Z
- Updated: 2026-03-12T18:36:13.000Z
- Author: Dark Web Informer
- Tags: Leaks

Dark Web Informer - Cyber Threat Intelligence 

# Full Source Code of Sweden's E-Government Platform Leaked From Compromised CGI Sverige Infrastructure

March 12, 2026 - 6:25:21 PM UTC 

![Sweden](https://flagcdn.com/20x15/se.png)Sweden 

Government / IT Services 

Standalone API Access Now Available High-volume threat-intelligence data, automated ingestion endpoints, ransomware feeds, IOC data, and more. 

[ View API](https://darkwebinformer.com/api-details/) 

 Unlock Exclusive Cyber Threat Intelligence

Powered by DarkWebInformer.com

Stay ahead of cyber threats with real-time breach tracking, expert analysis, and high quality evidence - built for security professionals, researchers, journalists, and everyday people who take their privacy seriously.

[ Subscribe Now](https://darkwebinformer.com/pricing) 

## Quick Facts

Date & Time 2026-03-12 18:25:21 UTC 

Threat Actor ByteToBreach 

Victim Country ![Sweden](https://flagcdn.com/20x15/se.png)Sweden 

Industry Government / IT Services 

Victim Organization CGI Sverige AB 

Affected Platform Sweden E-Gov Platform 

Category Source Code Leak 

Severity Critical 

Network Open Web 

Price Free (Source Code) 

##  Incident Overview

A threat actor going by ByteToBreach has leaked the entire source code of Sweden's E-Government platform, claiming it was obtained through a heavily compromised CGI Sverige AB infrastructure. CGI Sverige is the Swedish subsidiary of global IT services giant CGI Group and manages critical government digital services. This is the same actor behind the Viking Line breach posted yesterday.

  
The actor emphasizes this is the full E-Gov platform source code and not just configuration snippets. They state that the Swedish e-government is the most affected party, and note that citizen PII databases and electronic signing documents were also collected but are being sold separately. A staff database, API document signing system, RCE test endpoints, initial foothold details, jailbreak artifacts, and Jenkins SSH pivot credentials are all included in the listing alongside the source code.

  
The disclosed vulnerabilities used in the attack include a full Jenkins compromise, Docker escape via the Jenkins user being in the Docker group, SSH private key pivots, analysis of local .hprof files for reconnaissance, and SQL copy-to-program pivots. The actor makes a pointed note about companies blaming breaches on third parties, explicitly stating that this compromise belongs clearly to CGI infrastructure, referencing Viking Line and Slavia Pojistovna as other examples. The source code is being released for free with multiple backup download links, while citizen databases are sold separately.

##  Compromised Data Categories

 Full E-Gov Platform Source Code  Staff Database  API Document Signing Systems  Jenkins SSH Pivot Credentials  RCE Test Endpoints  Initial Foothold & Jailbreak Artifacts  Citizen PII Databases (Sold Separately)  Electronic Signing Documents (Sold Separately) 

### Claim URL - For Subscribers Only

The claim URL for this listing can be found on the **Threat Feed** or **Ransomware Feed** for subscribers.

[ Subscribe Now](https://darkwebinformer.com/pricing) 

##  Image Preview

[![Forum listing showing Sweden E-Government platform source code leaked from CGI Sverige infrastructure](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/2026/03/35216424822626571061.png)](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/2026/03/35216424822626571061.png) 

Dark Web Informer © 2026 | Cyber Threat Intelligence  
[DarkWebInformer.com](https://darkwebinformer.com/)