
Among the affected systems was the main OAuth server of the electronic government (E-Gov), which functions as a trusted authentication center for numerous clients, including universities, government agencies, banking and commercial organizations, as well as systems of the Ministry of Internal Affairs. As a result of this leak, data from the National Social Protection Agency (IHMA.UZ), containing medical records, the Statistics Committee (STAT.UZ), and the Mortgage Refinancing Company (UZMRC.UZ) became potentially accessible.
Each compromised record includes identifying information such as the internal user ID, full name, address, date of birth, phone number, email address, and passport number.
Currently, the Cybersecurity Center of Uzbekistan is investigating the incident and analyzing the reports of the leak of citizens' personal data. The results of the investigation will be communicated later.