Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Dutch Telecom Giant Hit by Massive Data Breach via Phone Scam

Dutch Telecom Giant Hit by Massive Data Breach via Phone Scam

Posted on September 8, 2026 By CWS

In one of the most significant data breaches in Dutch history, telecom giant Odido and its subsidiary Ben were compromised by cybercriminals through a single phone call in February 2026. The attackers, identified as the ShinyHunters group, exploited social engineering tactics to infiltrate the company’s systems, affecting over six million customers.

How the Breach Unfolded

The breach was initiated when a man, speaking in Dutch but using specific IT jargon, contacted Odido’s customer service on February 5 and 6. Posing as an IT department colleague, he claimed a critical issue needed resolution. This led the employee to grant access to what appeared to be a legitimate system, which was actually a credential-stealing trap.

During this interaction, the attacker acquired sensitive information, including a username, password, and a multi-factor authentication token, which allowed them to bypass one of Odido’s security measures.

Impact on Customer Data

With the stolen credentials, the attackers accessed Odido’s Salesforce-based customer relationship management system. By February 7 and 8, they had extracted approximately 90 GB of data, comprised of 15 million records, without triggering security alerts.

Odido confirmed the breach, stating that 6.39 million customers, both current and former, were impacted. The stolen information included names, addresses, phone numbers, email addresses, birth dates, customer numbers, and bank details. However, Odido insists that passwords and billing data were not compromised, despite ShinyHunters’ claims to the contrary.

Response and Ongoing Investigation

Following the breach, ShinyHunters demanded a ransom of one million euros, which Odido refused to pay. Consequently, the cybercriminals released the data in stages, starting February 26 and completing by March 1. This led to a surge in phishing attempts, highlighting the immediate risks of leaked personal data.

The Dutch police have been investigating the incident since its disclosure. In July 2026, they announced potential involvement of Dutch nationals, focusing on the individual who made the fraudulent call. After no voluntary confessions, the police aired the caller’s voice on a true-crime program to encourage public identification.

Security experts have identified three critical failures that enabled the breach: lack of callback verification, excessive access privileges, and insufficient monitoring of data transfers. The ShinyHunters group has previously used similar tactics against other organizations globally, often bypassing security measures without technical hacks.

The investigation continues, with authorities urging anyone with information to contact them through various channels. This incident underscores the importance of robust security protocols and highlights the ongoing threat of social engineering attacks in the digital age.

Cyber Security News Tags:Ben, Cybercrime, Cybersecurity, data breach, data security, Dutch telecom, identity theft, Odido, Phishing, police investigation, ransom demand, Salesforce breach, ShinyHunters, social engineering

Post navigation

Previous Post: Adobe Fixes Critical Magento Flaw Used for Backdoor Attacks

Related Posts

AI-Powered npm Malware Reveals Hacker’s GitHub Token AI-Powered npm Malware Reveals Hacker’s GitHub Token Cyber Security News
Critical Vulnerability in MongoDB Risks Data Exposure Critical Vulnerability in MongoDB Risks Data Exposure Cyber Security News
Claude Now Sends Emails and Manages Files on Google Claude Now Sends Emails and Manages Files on Google Cyber Security News
EvilTokens Exposes Browser-Level Phishing Gaps EvilTokens Exposes Browser-Level Phishing Gaps Cyber Security News
BlackSuit Ransomware Servers Attacking U.S. Critical Infrastructure Seized by Law Enforcement Seizes BlackSuit Ransomware Servers Attacking U.S. Critical Infrastructure Seized by Law Enforcement Seizes Cyber Security News
CISA Highlights Exploited Gitea Code Injection Risk CISA Highlights Exploited Gitea Code Injection Risk Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Dutch Telecom Giant Hit by Massive Data Breach via Phone Scam
  • Adobe Fixes Critical Magento Flaw Used for Backdoor Attacks
  • Hackers Compromise Coder Registry for Cloud Credential Theft
  • Grindr Settles U.K. Data Sharing Claims for £26 Million
  • Npm Worm Returns After 111 Days, Evades Detection

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Dutch Telecom Giant Hit by Massive Data Breach via Phone Scam
  • Adobe Fixes Critical Magento Flaw Used for Backdoor Attacks
  • Hackers Compromise Coder Registry for Cloud Credential Theft
  • Grindr Settles U.K. Data Sharing Claims for £26 Million
  • Npm Worm Returns After 111 Days, Evades Detection

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark