/
/
Data leak in Liechtenstein
The recent cyberattack on the Principality of Liechtenstein is one of the most serious data protection incidents of recent years. According to the government, unknown perpetrators gained illegal access to the Register of Beneficial Owners (VwbP) and copied data records of around 31,000 legal entities. This affects one of the most sensitive registers of the Liechtenstein financial center.
Why is this incident particularly highly explosive?
The Register of Beneficial Owners serves to combat money laundering and terrorist financing. It contains information on which natural persons are actually behind companies, foundations, and trust structures. According to the information known so far, names, dates of birth, and nationalities in particular were recorded. There is currently no evidence that bank accounts, account balances, or classic bank customer data are affected.
Nevertheless, the scope of the incident is significant. The disclosed information may allow conclusions to be drawn about financial circumstances, shareholding structures, and family asset successions. Especially in Liechtenstein, whose financial center is traditionally built on trust, discretion, and legal certainty, the attack raises fundamental questions regarding the protection of sensitive data.
What are the risks for those affected?
Even though the investigations are still ongoing, data protection and cybersecurity experts are already warning of potential consequential dangers:
Identity theft and phishing attacks
Targeted fraud attempts against beneficial owners
Blackmail attempts based on sensitive financial information
Misuse of personal data in an international environment
Reputational damage for companies, foundations, and family structures
Under the General Data Protection Regulation (GDPR), the competent authorities are obliged to investigate the incident and inform the affected individuals.
What rights do affected persons have?
Anyone affected by the data leak should have an early assessment made regarding:
which specific personal data was compromised,
whether rights to access and information exist,
whether claims for damages under the GDPR can be considered,
which measures to protect against identity theft are advisable,
and whether further legal action against responsible parties is necessary.
Particularly in the case of international corporate, foundation, and trust structures, complex cross-border issues can arise.
Our Offer: Legal Advice and Representation
Maier Attorneys & Notaries supports affected private individuals, entrepreneurs, founders, beneficiaries, family offices, and companies in the legal processing of the incident.
Our services include in particular:
Verification of affected status and analysis of the legal situation
Enforcement of access requests
Assertion of potential claims for damages
Advice on data protection and reputational risks
Representation before authorities and responsible bodies
Cross-border advice in Liechtenstein, Austria, Switzerland, and Germany
If you suspect that your data or the data of your company, foundation, or trust structure might be affected, we are at your disposal for a confidential initial assessment.
Maier Attorneys & Notaries
Your contact partner for asset protection and international disputes in the DACHLI region.