Desk live·
ForensicPost
Nation-state/Public sector/File 26-0217

Identity Card Issuance Stopped While the Claim Was Assessed

A group claimed 139 terabytes from Senegal’s national identity infrastructure in early 2026, and card issuance was halted. When the claim involves biometrics, the state cannot simply reissue.

Constructed geometry · not a chart of case data
TargetSenegal national ID system
ActorGreen Blood
S. Rosler9 min readConfidence: low1 source reviewed

A group operating as Green Blood claimed a server compromise affecting Senegalese national identity infrastructure, describing 139 terabytes including biometric and identity records, with the incident dated to January 2026. Identity card issuance was reported halted.

The volume claim originates entirely with the group and we grade this file low. The operational response is established and is the more useful fact.

Halting Issuance Is A Costly, Correct Instinct

Stopping identity card issuance has immediate civic consequences: people cannot obtain documents they need for banking, employment, travel and voting. It is not a step taken lightly.

It is also the right instinct where the integrity of the underlying register is uncertain. Continuing to issue documents against a database that may have been altered risks producing genuine credentials for false identities — a harm that outlasts and outweighs the disruption.

Biometric National Systems Have No Rollback

This desk has filed the biometric problem before, at NYC Health + Hospitals in 26-0324. At national scale it compounds: the enrolment is compulsory, the population is everyone, and the register is the root of trust for every downstream verification the state performs.

There is no remediation path that resembles reissuing a card. If a national biometric register is genuinely compromised, the state has lost the ability to distinguish enrolled individuals from anyone holding the register — permanently.

That is why the correct response to an unverified claim of this kind is to stop and assess, and why we are publishing the file with the claim clearly marked as a claim rather than declining to cover it.

How we reported this

Compiled from public reporting, listed below. The volume figure and the description of the data originate with the claiming group and are not corroborated. We have not reviewed any listed material. Corrections: corrections@forensicpost.com.

Sources
  1. List of recent data breaches in 2026Bright Defense
S. Rosler
Covers extortion groups and leak-site economics. Verifies our sample sets.
// the chain of custody — tuesdays

Get the next file first.

One incident a week, taken apart properly. Logs, timelines, and what the filing left out.

PGP-signed edition · no tracking pixels · one-click unsubscribe
© 2026 ForensicPost Media · the desk · newsletter · searchGlossary