An anonymous hacker claimed responsibility for a Danish CPR register breach affecting 8.8 million citizens, stating the attack succeeded because a former employee's password was simply '123456'. The hacker expressed shock at the inadequate security and has no plans to sell or leak the data, while the Danish government acknowledged the security failures and initiated a system review.