Find notable cyber news and cases, enriched with sources, timelines, and signals.

European Commission hit by cyberattack

Incident
First reported
Last updated
Happening score
H score 29
1 unique sources, 3 articles

Summary

Hide ▲

The European Commission is investigating a security breach after a threat actor gained access to its Amazon cloud infrastructure. At least one account used to manage the compromised environment was affected, and the incident response team is now handling the case. The attacker claims to have stolen over 350 GB of data, including multiple databases. That claim raises the risk of a later data leak and broader exposure of employee information.

Related Happenings

Unnamed organization stolen data published on DLS

Data Leak
First: 06.05.2026 16:00 Last: 06.05.2026 16:00 Sources 1

About this happening: **Stolen data** from an **unnamed organization** was later posted on a **data leak site (DLS)**, confirming exposure and increasing extortion pressure. The publication followed an...

Eurail B.V. hit by network compromise

Incident
First: 09.04.2026 13:31 Last: 09.04.2026 13:31 Sources 1

About this happening: **Eurail B.V.** confirmed a **customer-database breach** after an unauthorized actor transferred files from its network on **December 26, 2025**. The compromise exposed sensitive...

AFC Ajax hit by network compromise

Incident
First: 26.03.2026 22:37 Last: 26.03.2026 22:37 Sources 1

About this happening: **AFC Ajax** disclosed a **systems compromise** that exposed fan data and created **ticketing-integrity risk** for **a few hundred people**. The club said a hacker in the Netherla...

Latest development: 27.05.2026 12:09

Dutch National Police arrested a 35-year-old man from the municipality of Buren on Tuesday, May 26, 2026 for computer trespassing at AFC Ajax after he was suspected of repeatedly gaining unauthorized access to the club's computer systems. The arrest followed an investigation into exploitation of vulnerabilities in AFC Ajax systems that exposed data belonging to a few hundred individuals and enabled changes to stadium bans and ticket transfers.

Europol-led Operation Leak takedown of LeakBase

Law Enforcement
First: 05.03.2026 11:45 Last: 05.03.2026 11:45 Sources 1

About this happening: **Russian police** in the **Rostov region** arrested a **Taganrog resident** believed to be the owner and administrator of **LeakBase**, a cybercrime forum used to buy and sell **...

Wynn Resorts hit by cyberattack

Incident
First: 24.02.2026 23:51 Last: 24.02.2026 23:51 Sources 1

About this happening: **Wynn Resorts** confirmed an **employee data breach** after an unauthorized third party stole data from its systems, creating exposure risk for staff records. The company said it...

Timeline

  1. 03.04.2026 09:33 1 articles · 1mo ago

    ShinyHunters leaks European Commission data on the dark web

    Victim Impact Update

    CERT-EU attributes the European Commission cloud breach to TeamPCP, and ShinyHunters published a 90GB archive of documents on a dark web leak site on March 28, exposing names, email addresses, and email content. CERT-EU says the exfiltrated data relates to websites hosted for up to 71 clients of the Europa web hosting service, including 42 internal European Commission clients and at least 29 other Union entities, and no websites were taken offline.

    Show sources
  2. 27.03.2026 14:22 1 articles · 2mo ago

    European Commission proposes new cybersecurity legislation

    Legal Policy Action Update

    The European Commission proposes new cybersecurity legislation on January 20 to strengthen defenses against state-backed actors and cybercrime groups targeting Europe’s critical infrastructure.

    Show sources
  3. 27.03.2026 14:22 1 articles · 2mo ago

    European Commission detects hacked device-management platform

    Detection Ioc Update

    The European Commission discovers on January 30 that the mobile device management platform used to manage staff devices has been hacked, and the breach is later disclosed in February; the incident appears linked to similar code-injection attacks on other European institutions, including the Dutch Data Protection Authority and Valtori.

    Show sources
  4. 27.03.2026 14:22 2 articles · 2mo ago

    European Commission Amazon cloud breach investigation

    Initial Disclosure

    The European Commission investigates a security breach after a threat actor gained access to its Amazon cloud infrastructure, affecting at least one account used to manage the compromised environment. The actor claims to have stolen over 350 GB of data, including multiple databases, showed screenshots of European Commission employee information and an email server, and says the data may be leaked online later.

    Show sources
  5. 27.03.2026 14:22 2 articles · 2mo ago

    European Commission Amazon cloud breach investigation

    Initial Disclosure

    The European Commission investigates a security breach after a threat actor gained access to its Amazon cloud infrastructure, affecting at least one account used to manage the compromised environment. The actor claims to have stolen over 350 GB of data, including multiple databases, showed screenshots of European Commission employee information and an email server, and says the data may be leaked online later.

    Show sources