DNA Oyj

What to do if you suspect your data has been leaked in a breach affecting a service you use

2.10.2026 08:55:00 EEST | DNA Oyj | Press release

Share

There have once again been numerous news reports on data breaches and data leaks in recent weeks. Today, personal data is stored in numerous online services, applications and customer registers. Even well-known and trusted services can become targets of data breaches. The consequences often extend far beyond the breach itself, as leaked information may be exploited for a long time in phishing attempts, account takeovers and identity theft. Heidi Havastila, Director responsible for value-added services in DNA’s Consumer Business, explains how people can reduce the potential impact of a data leak in advance and what to do if they suspect their information has been compromised.

Users usually have little control over whether a service they use becomes the target of a data breach. However, there are steps everyone can take to protect their information. People can also influence what information they provide to different services and how well prepared they are for the consequences of a potential data leak.

“A data breach rarely ends with the breach itself. Leaked information may later be used for targeted phishing attempts, account takeovers and identity theft, meaning that victims or their loved ones can remain targets of criminals long after the original breach,” Havastila says. 

Consider what information you share with services

Many services need personal data about their users. Banks, healthcare services, insurance companies and telecommunications operators, for example, cannot operate without processing personal data. However, the need for information is not equally evident in every service.

“It is worth considering whether a service genuinely needs all the information it requests. You should not provide your date of birth everywhere, for example, but use common sense to assess what the service actually needs. Give services only the information that is necessary, and be especially careful when sharing sensitive information such as your personal identity code or banking details. The less unnecessary personal information you provide, the more limited the potential consequences of a data leak will generally be,” Havastila advises.

The permissions requested by applications should also be proportionate to their intended purpose.

“If, for example, a flashlight application asks for permission to access the photos, contacts or messages on your phone, you should stop and consider why it needs that information,” Havastila says.

How to assess the reliability of a service

It is impossible to assess the security of a service fully from the outside, and no service is completely immune to data breaches. Before providing information, however, it is worth checking a few basic points.

Havastila first recommends checking that the service’s website provides sufficient information about the company, such as its business ID and up-to-date contact details, as well as information on how personal data is processed.

“Reliable services explain openly how personal data is collected, used and stored. Users should review the service’s privacy information to understand what data is collected and how it is used,” Havastila says.

“Information may end up being used in unwanted ways for reasons other than a data breach. It is therefore also worth assessing what kind of company you are providing your information to and what the service says about its use of the data,” Havastila adds.

For websites, make sure the connection is encrypted and the web address begins with https://. Applications should also be downloaded only from official app stores. 

Protect your accounts in case a service suffers a data breach

As no one can know for certain which service will be targeted next, it is important to protect your user accounts.

“One of the most common risks is reusing passwords. If the same password is used for several services, the consequences of a single data leak can quickly spread to the user’s other accounts,” Havastila says.

A unique, strong password should be used for every service. Multi-factor authentication should also be enabled whenever it is available.

“Multi-factor authentication is one of the most effective ways to reduce the risk of account takeover. Even if a criminal obtains the password, it will generally not be enough on its own to sign in to the service,” Havastila says.

Data breach monitoring can help identify whether your personal information appears in known data leaks, allowing you to respond at an earlier stage.

If you suspect your information has been leaked, take these precautions

If you later suspect that your information has been leaked, Havastila recommends acting quickly.

“Changing the password for the service is the first recommended step and should be done without hesitation. If the same password has been used for other services, it should be changed in all of them. Services often allow users to sign out on all devices, and this is advisable when changing the password. Multi-factor authentication should also be enabled if it is not already in use,” Havastila advises.

If you suspect that your online banking credentials or payment card details have fallen into the wrong hands, contact your bank immediately.

Following a data leak, be especially cautious about emails and text messages asking you to sign in to a service or confirm information through a link.

“After a data leak, the scam attempts arriving by email or phone may be more convincing than usual. Instead of following links in messages, access services by typing the address directly into your browser or by using the official application,” Havastila says.

How criminals may use leaked information

What can stolen information be used for? Havastila points out that any information can be valuable to criminals. Even information that appears harmless can become damaging in the wrong hands when combined with other data. Data breaches are often motivated by financial gain, but they may also involve extortion, intelligence gathering or deliberate disruption.

“Data breaches are no longer exceptional events but part of everyday digital life. The better accounts are protected and the faster people respond to a potential data leak, the more likely it is that the damage will remain limited,” Havastila concludes.

Leaked information may be used for purposes including:

  • targeted scams and phishing messages
  • taking over user accounts
  • identity theft
  • payment and credit card fraud
  • applying for loans or entering into other commitments in the victim’s name
  • extortion using personal information
  • planning further scams and crimes.

Media enquiries:

Heidi Havastila, Director, Value-Added Services, DNA Plc, tel. +358 44 044 3224, heidi.havastila@dna.fi

DNA Corporate Communications, tel. +358 44 044 8000, communications@dna.fi

More info:

Images

Heidi Havastila, Director, Value-Added Services, DNA Plc
Heidi Havastila, Director, Value-Added Services, DNA Plc
Download

DNA is one of the leading telecommunications companies in Finland. With you, we face forward to a safer and smarter future. We offer connections, services and devices for homes and workplaces, contributing to the digitalisation of society. Already for years, DNA customers have been among the world leaders in mobile data usage. DNA has about 3.7 million subscriptions in its fixed and mobile communications networks. The company has been awarded numerous times as an excellent employer and family-friendly workplace. In 2025, our total revenues were EUR 1,128 million and we employ about 1,600 people around Finland. DNA is a part of Telenor Group, a leading telecommunications company across the Nordics. More information: www.dna.fi, Facebook @DNA.fi, Instagram and Threads @dna_fi and LinkedIn @DNA-Oyj.

Alternative languages

Subscribe to releases from DNA Oyj

Subscribe to all the latest releases from DNA Oyj by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from DNA Oyj

DNA:n syyskuun 2026 myydyimmät puhelimet, älykellot ja tietokoneet1.10.2026 08:00:00 EEST | Tiedote

Applen iPhone 17 Pro 5G piti kärkisijaa syyskuussa DNA:n yritys- ja kuluttaja-asiakkaiden myydyimpien puhelinten listojen kärjessä. Android-puhelimissa kysyntä jakautui kuluttaja-asiakkaiden listalla Samsungin, Honorin ja realmen kesken. Samsungilta listalla nähtiin laitteita edullisista Galaxy A -sarjan malleista aina Galaxy S26 -sarjan huippupuhelimiin asti. Myös lasten kellopuhelimet säilyttivät vahvan asemansa syyskuussa. ZTE K2 vei kärkisijan myydyimpien älykellojen listalta, ja kaksi muutakin kellopuhelinmallia ylsi myydyimpien listalle.

DNA brings real-time interpretation to business voice services30.9.2026 08:45:00 EEST | Press release

DNA is expanding its portfolio of AI-assisted communication and availability services with the new DNA AI Tulkki interpretation service. The service enables real-time interpretation between people speaking different languages directly during a phone call. DNA AI Tulkki interpretation service helps companies and public sector organizations provide smoother and more accessible customer service without the need for separate interpretation arrangements.

Kysely: Suomalaisilta selvä linjaus millainen on paras etätyömalli – DNA kulkee vastavirtaan viimeaikaisen kehityksen kanssa23.9.2026 08:30:00 EEST | Tiedote

Samalla kun moni työnantaja kiristää toimistovaatimuksiaan, DNA on päättänyt pitää kiinni mallista, jota yhtiö on noudattanut jo pitkään. DNA:lla ei ole lähityöpakkoa, eikä yhtiö seuraa toimistolla vietettyjen päivien määrää. DNA on myös tutkinut aihetta sekä sisäisesti että laajemmin ulkoisesti. DNA:n teettämän Digitaalinen elämä -tutkimuksen mukaan 41 prosenttia niistä suomalaisista, joiden on mahdollisuus tehdä etätöitä, työskentelee suurimman osan ajasta työpaikalla. Noin joka viides ilmoittaa työskentelevänsä yhtä paljon sekä toimistolla että etänä, ja 23 prosenttia kertoo työskentelevänsä suurimman osan ajasta etänä. 61 prosenttia niistä, joiden on mahdollista tehdä etätöitä, kertoo, että hybridityö olisi heille sopivin tapa tehdä töitä.

Survey: Finns Clearly Favor a Specific Remote Work Model, DNA Is Going Against the Recent Trend23.9.2026 08:30:00 EEST | Press release

While many employers are tightening their return-to-office requirements, DNA has chosen to stick with the model it has followed for years. At DNA, there is no office attendance mandate, and the company does not track the number of days employees spend in the office. DNA has also researched the topic both internally and through broader external studies. According to the Digital Life survey commissioned by DNA, 41% of Finns who have the opportunity to work remotely spend most of their working time at their workplace. Around one in five report working equally from the office and remotely, while 23% say they work remotely most of the time. Among those who have the possibility to work remotely, 61% state that hybrid work would be the most suitable way for them to work.

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye