logo

Dutch data watchdog snitches on itself after getting caught in Ivanti zero-day attacks

ID: 7b295986-c7e2-5712-9c51-b4f152fe3102

STIX ID: report--7b295986-c7e2-5712-9c51-b4f152fe3102

Feed Name: The Register (Security)

Threat Score
80/100

Date Published: 2026-02-09

Date Updated: 2026-04-26

Author: Connor Jones

...
...

The Dutch Data Protection Authority and the Council for the Judiciary were compromised after attackers rapidly exploited Ivanti EPMM zero-day vulnerabilities (CVE-2026-1281, CVE-2026-1340) on January 29; personal data including names, business email addresses, and phone numbers may have been accessed. National and international agencies (NCSC-NL, CISA) and Ivanti have acknowledged active exploitation and are investigating, with warnings that internet-exposed EPMM instances should be considered compromised and remediated immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.