Dutch police said a recent breach exposing personal data of officers was likely carried out by a state actor, reviving concerns first raised in an earlier case in which authorities suspected a foreign government was behind the theft of Dutch police personnel data. Reporting indicates the compromised information involved police employee details, and officials treated the intrusion as a serious national-security matter because of the potential risks to officers and ongoing investigations.
Separately, Dutch police announced they had dismantled a major cybercriminal forum in an international operation, underscoring a broader push against both espionage-linked intrusions and financially motivated cybercrime. The takedown was presented as a coordinated global law-enforcement action against a prominent criminal platform, while the data-breach investigation highlighted the parallel threat posed by hostile states targeting sensitive law-enforcement information.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
Dutch police announced they had taken down a major cybercriminal forum as part of a worldwide law enforcement action. The operation represented a separate enforcement event involving disruption of cybercrime infrastructure.
Dutch police later said the recent data breach was likely carried out by a state actor, updating the suspected attribution of the incident. This marked a significant development beyond the initial disclosure of stolen officer data.
Dutch police disclosed that personal data belonging to police officers had been stolen in a data breach. Early reporting indicated authorities were investigating the incident and its scope.
3 references tracked. Mallory keeps watching after this page renders.
politie.nl
Open sourcebleepingcomputer.com
Open sourcebitdefender.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.