Nltimes.Nl Dutch Hacker Arrested in ShinyHunters Odido Data Theft Case
Article Content
- •Pepijn van der Stap arrested for involvement in ShinyHunters' Odido hack.
- •Over 6 million customer records were exposed in the February 2026 breach.
- •ShinyHunters escalated attacks following Van der Stap's arrest.
Dutch authorities arrested 23-year-old Pepijn van der Stap on September 16, 2026, for suspected involvement with the ShinyHunters hacking group in the February 2026 cyberattack on telecom provider Odido. The breach exposed data of over 6 million customers after a Dutch-speaking hacker deceived an employee into providing login credentials. ShinyHunters claimed responsibility for the attack, demanding a ransom which Odido refused to pay, leading to the public release of the stolen data. Van der Stap, previously convicted for cybercrime, was working as Offensive Security Lead at Neo Security at the time of his arrest. Following his detention, ShinyHunters reportedly escalated their activities, including an attack on the FBI's job application website. Authorities have released an audio recording of a suspect from the Odido breach, seeking public assistance in identifying him. Van der Stap's arrest has raised concerns about the group's operational capabilities and potential for further attacks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Following this threat?
Track Cl0p, ShinyHunters and DIVD in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cleo Harmony Vulnerability Exploited for Privilege Escalation A newly discovered authentication bypass vulnerability in Cleo Harmony, tracked as CVE-2026-84115, allows remote attackers to escalate privileges by manipulating JWT refresh tokens. The flaw, found in the '/api/connections' function, enables attackers to bypass access controls through crafted HTTP headers. An exploit…
Kiteworks Issues Urgent Shutdown Advisory Amid Zero-Day Threat Kiteworks has alerted its customers to shut down their servers due to credible threat intelligence indicating an imminent cyberattack exploiting a zero-day vulnerability. The advisory, which applies globally, recommends a six-hour shutdown window starting September 26, 2026. This precautionary measure comes as…