NIN data breach: NIMC denies claim, orders probe

Hamzat Abdulqudus
3 Min Read

The National Identity Management Commission (NIMC) has denied claims that its National Identity Database (NIDB) was breached, describing a viral video alleging a compromise of the National Identification Number (NIN) database as false.

The commission said its NIDB had not been breached or compromised, stressing that it maintains multi-layered security infrastructure to protect the personal data of registered citizens and legal residents.

In a statement signed by its Head of Corporate Communications, Kayode Adegoke, on Wednesday, NIMC said it had become aware of the video circulating on social media.

“The Commission wishes to state, categorically, that this claim is false and unfounded. This is a recycled news story reported in 2024 and duly disclaimed by the Commission,” it said.

NIMC said it was concerned about the circulation of unverified claims because of their potential to mislead the public and cause unnecessary panic.

It urged members of the public to disregard the video and rely on the commission’s official channels for information concerning the National Identity Management System.

The commission also highlighted its recently launched NIN Authentication (NINAuth), describing it as a suite of web, API and mobile verification services designed to strengthen data security, protect privacy and simplify access to government services.

According to NIMC, NINAuth serves as the commission’s official channel for integrating with its backend infrastructure while providing an additional layer of protection and greater control over personal information.

The agency said NINAuth requires the explicit consent of NIN holders before their data can be shared for Know Your Customer (KYC) processes or other verification purposes.

“With NINAuth, individuals can securely verify their identity for services such as SIM registration, immigration and passport processing, tax filings, and financial transactions—without unnecessarily exposing their raw NIN or personal data,” the commission said.

NIMC said the initiative was part of its compliance with the NIMC Act 2026 and the Nigeria Data Protection Act 2023, which provide for the fair, lawful and transparent handling of personal data.

Meanwhile, NIMC Director-General, Abisoye Coker-Odusote, has ordered a comprehensive investigation into the claims.

The commission said the investigation would establish whether any of its tokenisation verification agents had breached their licensing agreements, either directly or through sub-licensees.

NIMC reiterated its commitment to protecting the identity information of Nigerians and legal residents and said it would continue to work with relevant security and other government agencies to strengthen its systems and public engagement.

The commission also urged members of the public with questions or concerns about their data or NIN to contact it through its official channels.

TAGGED:
Share This Article
Leave a Comment

Leave a Reply

Your email address will not be published. Required fields are marked *