Cyberattack in Tartu affects online store customer data at library
Lev Shevtsov26
September
2026
15:49
In Estonia, an attacker gained unauthorized access to the online store of the University of Tartu Library and likely downloaded the personal data of its customers. This was
What data may have fallen into the attacker’s hands
According to library director Jaanika Anderson, the security incident was discovered on September 11. Further analysis showed that the attacker likely downloaded store user data: first and last name, email address, phone number, login, an encrypted version of the password, as well as information on the use of the service — including purchase history and IP addresses.
The library recommended that customers change their password as soon as possible if the same login and password combination was used for other accounts. Users were also advised to monitor for possible suspicious activity.
More current news is available on the UA.News Telegram channel Telegram.
The store was temporarily closed
The University of Tartu reported the incident to Estonia’s Information System Authority and the Data Protection Inspectorate. Access to the online store was suspended.
According to the library, the attacker did not gain access to payment data related to purchases. The store will resume operations after a full security analysis and the remediation of identified vulnerabilities.
