Dutch police arrested a 40-year-old man from Ridderkerk after he obtained confidential police documents due to a police error and then allegedly attempted to leverage possession of the files for something in return. According to police, the man was taken into custody on Thursday evening, his home was searched, and data storage devices were seized to recover the documents and prevent further dissemination; authorities also reported the incident as a data breach and said the investigation is ongoing.
Reporting indicates the incident began when the man contacted police in connection with a separate matter and was sent a link intended for uploading images; instead, an officer mistakenly sent a download link, granting access to sensitive materials the recipient was not meant to see. While the man reportedly did not exploit a technical vulnerability or “break in” in a traditional sense, police said he was instructed to stop and delete the material and refused unless he “received something in return,” prompting the arrest and evidence seizure to contain the exposure.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
Following the incident, Dutch police formally reported the mistaken disclosure as a data breach and began investigating both the disclosure and the suspect's conduct. Authorities said the man was being investigated on suspicion of computer trespass/unauthorized access under Dutch law.
On Thursday evening, police arrested the 40-year-old man in Ridderkerk, searched his home, and seized data storage devices to recover the confidential files and prevent their dissemination. Authorities said they had no indication the documents were shared further.
After discovering the error, Dutch police instructed the man not to access the documents further and to delete any files he had obtained. Authorities later said he refused to comply and asked for "something in return," which they treated as attempted extortion.
On 2026-02-12, a man contacted Dutch police about images relevant to an investigation, but an officer accidentally sent him a download link to confidential police documents instead of a secure upload link. The mistaken access exposed sensitive law enforcement files to the recipient.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
7 references tracked. Mallory keeps watching after this page renders.
bitdefender.com
Open sourcescworld.com
Open sourcetherecord.media
Open sourcedatabreaches.net
Open sourcepolitie.nl
Open sourcego.theregister.com
Open sourcebleepingcomputer.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.