<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
  xmlns:content="http://purl.org/rss/1.0/modules/content/"
  xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>#CyberWeekly — Weekly Cybersecurity News for Belgian SMEs</title>
    <link>https://easycyberprotection.com/cyberweekly</link>
    <description>Weekly cybersecurity news curated for Belgian SMEs. Covers NIS2, CyberFundamentals, ransomware trends, and practical security tips.</description>
    <language>en</language>
    <managingEditor>info@easycyberprotection.com (Easy Cyber Protection)</managingEditor>
    <lastBuildDate>Tue, 16 Jun 2026 19:24:51 GMT</lastBuildDate>
    <atom:link href="https://easycyberprotection.com/cyberweekly/rss.xml" rel="self" type="application/rss+xml" />
    <image>
      <url>https://easycyberprotection.com/images/shield-icon.png</url>
      <title>#CyberWeekly</title>
      <link>https://easycyberprotection.com/cyberweekly</link>
    </image>
    <item>
      <title>#CyberWeekly - Week 24</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-24</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-24</guid>
      <description>#CyberWeekly Jun 5 - Jun 11, 2026: a German court rules Google owns what its AI Overviews say, with real consequences for businesses misdescribed by AI search. Plus a CCB patch watch starring your backup server and firewall VPN, the anatomy of an 871 GB municipal breach, EU rules for labelling AI content, and Platform Spotlight: evidence that names exactly which devices it covers.</description>
      <content:encoded><![CDATA[
        <h2>Their Own Words</h2>
        <p>A court made Google own what its AI says. Your backup server, VPN and emergency accounts deserve the same scrutiny.</p>
        <ul><li><strong>A German court just made Google answer for what its AI says about your business</strong>: 
      If Google's artificial intelligence (AI) summary tells the world your company is a scam, that is now Google's problem, not just yours. The Regional Court of Munich ruled that AI Overviews, the ...</li>
<li><strong>Platform Spotlight: evidence that names exactly which devices it covers</strong>: 
      "We have a config snapshot" is not the same as "we have a config snapshot for these 13 laptops". This week the platform learned the difference: every piece of evidence can now carry a precise s...</li>
<li><strong>CCB patch watch: your backup server, your firewall VPN, and a record Patch Tuesday</strong>: 
      The Centre for Cybersecurity Belgium (CCB) had a loud week, and two of its warnings point at the exact systems that decide whether a ransomware incident is an annoyance or a catastrophe: the ba...</li>
<li><strong>One cracked password and a forgotten emergency account: anatomy of an 871 GB breach</strong>: 
      The Dutch municipality of Epe published the post-mortem of its March cyberattack this week, and it reads like a checklist of small gaps that added up: 871 gigabytes and roughly 550,000 files wa...</li>
<li><strong>Using AI to write content? The EU's labelling rules land on 2 August</strong>: 
      On 10 June the European Commission published the final Code of Practice on marking and labelling AI-generated content, the practical how-to for transparency duties under the EU AI Act that star...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-24">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 10 Jun 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-24-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 23</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-23</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-23</guid>
      <description>#CyberWeekly May 29 - Jun 4, 2026: a hotel-booking breach turned real reservation details into euro-draining phishing across Belgian and Dutch hotels, and Belgium&apos;s Safeonweb has a standing warning about exactly this scam. Plus a CCB patch watch (an actively exploited Palo Alto VPN, a wide-open FreePBX phone system), and Platform Spotlight: we put our full pricing in the open.</description>
      <content:encoded><![CDATA[
        <h2>Looks Legit</h2>
        <p>Your real booking details, an exploited firewall, a forgotten phone system: this week the familiar was the way in.</p>
        <ul><li><strong>Your booking details became the bait: a hotel data breach turns into euro-draining phishing</strong>: 
      Hundreds of Flemish hotel guests were scammed this week after a data breach exposed hotel reservation details across Belgian and Dutch hotels. Criminals used the real booking information to sen...</li>
<li><strong>Platform Spotlight: we put our full pricing in the open</strong>: 
      Most NIS2 compliance tools hide their price behind a "contact sales" button. We just published ours in full: every tier, every per-client bracket, on one page, with no form and no sales call to...</li>
<li><strong>CCB patch watch: an actively exploited firewall VPN and a wide-open phone system</strong>: 
      The Centre for Cybersecurity Belgium flagged a cluster of critical fixes around 1 June. Two matter most for Belgian small and medium-sized enterprises (SMEs): a Palo Alto VPN flaw already under...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-23">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 03 Jun 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-23-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 22</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-22</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-22</guid>
      <description>#CyberWeekly May 22-28, 2026: the security tools meant to protect you became the target (Trend Micro Apex One and Microsoft Defender flaws under active attack, Centre for Cybersecurity Belgium advisory May 26). Plus a Belgian waste authority knocked offline through its IT supplier, a SharePoint and cPanel patch wave, and Platform Spotlight: audit-readiness now names the exact devices missing from your scope.</description>
      <content:encoded><![CDATA[
        <h2>Inside Job</h2>
        <p>Your antivirus, a town&apos;s IT supplier, a control panel you forgot you had: this week the trusted layer was the way in.</p>
        <ul><li><strong>Your security tools were the target this week, not your shield</strong>: 
      Two stories this week share one theme: the security software meant to protect you was the thing under attack. Trend Micro Apex One is being actively exploited, and two Microsoft Defender zero-d...</li>
<li><strong>Platform Spotlight: audit-readiness stops being vague and starts naming the devices missing from your scope</strong>: 
      This week the audit-readiness view stopped saying "something is missing" and started naming names. Instead of telling you a control is under-covered, it now points at the exact devices missing ...</li>
<li><strong>Breached through the back office: a Belgian waste authority loses its recycling parks via its IT supplier</strong>: 
      On Monday May 18, the recycling parks of Beerse and Merksplas, run by IOK, the inter-municipal waste authority for the Kempen, were knocked offline by a cyberattack. IOK confirmed its own syste...</li>
<li><strong>CCB patch watch: a SharePoint remote-code-execution flaw and a perfect-10 cPanel bug</strong>: 
      The Centre for Cybersecurity Belgium issued a cluster of advisories this week. Two stand out for Belgian SMEs: a SharePoint Server remote-code-execution (RCE) flaw to patch immediately, and a L...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-22">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 27 May 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-22-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 21</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-21</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-21</guid>
      <description>#CyberWeekly May 15-21, 2026: an Outlook Web Access zero-day (CVE-2026-42897) is being exploited in the wild via crafted email — Centre for Cybersecurity Belgium advisory on May 18. Plus: Easy Cyber Protection on the Cybersec Europe main stage, a Microsoft 365 self-service-password-reset campaign, a Belgian patch wave, and Platform Spotlight: evidence uploads + bounded integrations.</description>
      <content:encoded><![CDATA[
        <h2>Open Mail</h2>
        <p>An Outlook Web Access zero-day turns an opened email into a hijacked mailbox. Mitigations only — no permanent patch yet.</p>
        <ul><li><strong>Open mail, open inbox: Outlook Web Access zero-day actively exploited (CVE-2026-42897)</strong>: 
      Microsoft confirmed on May 14 that CVE-2026-42897 — a cross-site-scripting flaw in Outlook Web Access on on-premises Exchange Server 2016, 2019, and Subscription Edition — is under active explo...</li>
<li><strong>Platform Spotlight: evidence uploads ship end-to-end, integrations get bounded and tier-aware</strong>: 
      Five things shipped that change how an MSP runs an engagement: a long-asked-for upload, a smarter integration data lifecycle, sharper endpoint cards, friendlier CSV imports, and a hardened Chec...</li>
<li><strong>Easy Cyber Protection on the Cybersec Europe 2026 main stage — pitched, jury deliberating</strong>: 
      On Tuesday May 20 at Brussels Expo, Easy Cyber Protection's pitch for the Cybersec Europe 2026 "Best Cybersecurity Innovation Europe" jury award was delivered on the Mainstage. The award ceremo...</li>
<li><strong>The Microsoft 365 self-service-password-reset campaign — the back door is the front door</strong>: 
      Researchers flagged on May 19 an active campaign abusing Microsoft 365 / Entra ID self-service password reset and administrative tooling to take over mailboxes without ever phishing the user. W...</li>
<li><strong>Belgian patch week: a critical advisory every working day</strong>: 
      Between May 18 and May 20 the Centre for Cybersecurity Belgium published seven critical advisories on enterprise software that a lot of Belgian SMBs and their managed service providers sit down...</li>
<li><strong>CCB ships a 'First Aid' incident playbook — what every NIS2-scope org needs in place before the call</strong>: 
      On Sunday May 18, the Centre for Cybersecurity Belgium published "First Aid in the event of a cyber incident" (EN / NL / FR / DE). It is a concise operational checklist of what an organisation ...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-21">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 20 May 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-21-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 20</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-20</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-20</guid>
      <description>#CyberWeekly May 8-14, 2026: Easy Cyber Protection shortlisted for the Cybersec Europe 2026 Best Innovation award. Plus: the co-branded client micro-learning newsletter + Ed25519-signed audit bundles, the Verizon DBIR 2026, and CCB&apos;s 2025 incident figures.</description>
      <content:encoded><![CDATA[
        <h2>Shortlisted</h2>
        <p>ECP shortlisted for the Cybersec Europe 2026 Best Innovation award. Plus: a weekly client micro-learning newsletter.</p>
        <ul><li><strong>Cybersec Europe 2026: Easy Cyber Protection on the 'Best Innovation' shortlist</strong>: 
      The Cybersec Europe 2026 jury has shortlisted Easy Cyber Protection for the "Best Cybersecurity Innovation Europe" award. The pitch is May 20 at Brussels Expo, the ceremony May 21. Tickets free...</li>
<li><strong>Platform Spotlight: co-branded weekly micro-learning + Ed25519-signed audit bundles</strong>: 
      Two things shipped this week that change the shape of an MSP engagement: a co-branded weekly micro-learning newsletter you send to your clients' employees under your own brand, and an Ed25519-s...</li>
<li><strong>Verizon DBIR 2026 lands — the small-business pattern holds, the access vectors barely move</strong>: 
      The annual Verizon Data Breach Investigations Report is the most-cited corpus in the industry, and the 2026 edition published this week. The headline is the lack of headline: small organisation...</li>
<li><strong>CCB published its 2025 annual figures — 635 incident notifications, +70% YoY</strong>: 
      The Centre for Cybersecurity Belgium's 2025 numbers, surfaced again this week alongside the post-April-18 NIS2 audit cycle: 635 incident notifications across the year, a 70% jump on 2024. The l...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-20">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 13 May 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-20-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 19</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-19</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-19</guid>
      <description>#CyberWeekly May 4-10, 2026: ECP ships the audit-readiness cockpit, integration marketplace, /demo and a recalibrated 5-tier MSP price with a new Studio tier. SafePay claims another Belgian SMB. CCB drops a critical advisory every weekday. Belgium publishes a free network logging baseline.</description>
      <content:encoded><![CDATA[
        <h2>Audit-Ready Arc</h2>
        <p>ECP ships an end-to-end audit-prep arc. SafePay claims another Belgian SMB. CCB drops a fresh advisory daily.</p>
        <ul><li><strong>Platform Spotlight: audit-readiness cockpit, integration marketplace, /demo, 5-tier pricing</strong>: 
      The MSP audit-prep loop is end-to-end: a self-resetting /demo to show your clients, an integration marketplace that lights up what they already run, a sharper audit-readiness page that tells yo...</li>
<li><strong>SafePay lists another Belgian SMB — ETTP on May 6, the fourth Belgian victim in five weeks</strong>: 
      SafePay added ETTP, a Belgian technology-consulting and training firm, to its leak site on May 6 — the fourth named Belgian victim in five weeks (Fountain, Anderlues, Van Heyghen + ISoSL, now E...</li>
<li><strong>Patch week: CCB drops a critical advisory every weekday — MOVEit, n8n, Apache HTTP, Ivanti EPMM</strong>: 
      Belgium's Centre for Cybersecurity issued a fresh "patch immediately" advisory every weekday from May 4 to May 7. Four products, four critical-class flaws, three already exploited or trivially ...</li>
<li><strong>CCB ships a free network device logging baseline — the boring control that auditors always ask about</strong>: 
      On May 5, the Centre for Cybersecurity Belgium published a practical Network Device Logging Recommendations guide — exactly what switches, routers, firewalls and load balancers should log, wher...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-19">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 06 May 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-19-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 18</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-18</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-18</guid>
      <description>#CyberWeekly Apr 27 - May 3, 2026: Two Belgian SMEs land on APT73&apos;s wall in 24 hours, Easy Cyber Protection ships an Excel round-trip audit deliverable, UK retail meets its category-2 cyber hurricane, and Cisco ISE plus ConnectWise hit the CISA KEV catalogue.</description>
      <content:encoded><![CDATA[
        <h2>After the Deadline</h2>
        <p>NIS2 D-Day passed. The audit deliverable becomes an Excel round-trip, and two Belgian SMEs land on APT73&apos;s wall.</p>
        <ul><li><strong>Two Belgian SMEs on APT73's wall in 24 hours — Van Heyghen Staal and ISoSL both listed April 27</strong>: 
      Within the same April 27 window the APT73 (also known as Bashe) ransomware leak site added two Belgian victims: Van Heyghen Staal, a family-owned steel-service centre in Evergem in the Ghent ca...</li>
<li><strong>Platform Spotlight: the audit deliverable goes round-trip — Excel, .ecpbundle.zip, Aikido</strong>: 
      This week we shipped the biggest product pivot since launch. The audit deliverable is now a CCB-format Excel that round-trips with the auditor, packaged inside a portable .ecpbundle.zip you can...</li>
<li><strong>UK retail's category-2 cyber hurricane — M&S, Co-op, Harrods all hit, DragonForce claims credit, four arrests</strong>: 
      Marks &amp; Spencer, the Co-op and Harrods are all dealing with active cyber incidents inside a nine-day window. The UK Cyber Monitoring Centre has formally classified the M&amp;S and Co-op pai...</li>
<li><strong>Patch this week: Cisco ISE root RCE (CVE-2026-20160) plus ConnectWise and Microsoft on CISA KEV</strong>: 
      April 28 was a busy day for vulnerability advisories. CISA added two flaws to its Known Exploited Vulnerabilities catalogue, Cisco published critical advisories for Identity Services Engine, an...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-18">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 29 Apr 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-18-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 17</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-17</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-17</guid>
      <description>#CyberWeekly Apr 20-26, 2026: Snapshot your audit readiness and watch it improve over time. Belgian municipalities Temse and Anderlues show two different ways to handle an incident. Bol.com caught in a new AI-fabricated &quot;fake breach&quot; scam.</description>
      <content:encoded><![CDATA[
        <h2>Snapshot Your Audit Readiness</h2>
        <p>The four CyFun tiers are live end-to-end. Audit Readiness now has history, so progress is finally visible.</p>
        <ul><li><strong>Platform Spotlight: snapshot your audit readiness, then watch it improve — across all four CyFun tiers</strong>: 
      Last week was NIS2 D-Day. This week we shipped the tool for what comes next: Audit Readiness now has a Snapshot + History view, so you can capture your compliance state at any moment and see ex...</li>
<li><strong>Two Belgian municipalities, two very different Aprils — Temse stayed calm, Anderlues ended up on a leak site</strong>: 
      Within five days, two Belgian local governments showed exactly how different the outcome of a cyber incident can be. Temse (East Flanders, ~30,000 residents) caught a suspicious tool on its ser...</li>
<li><strong>Bol.com and the rise of AI-fabricated 'fake breaches' — when the database for sale never existed</strong>: 
      On April 21 a seller calling himself "Jeffrey Epstein" listed 400,000 Bol.com customer records on a crime forum for 100 euro. Dutch and Belgian media ran the story. Within 48 hours, researchers...</li>
<li><strong>Patch now: Cisco Webex SSO impersonation (CVE-2026-20184, CVSS 9.8) — CCB advisory out</strong>: 
      The CCB published a Yellow/High advisory on April 17 for CVE-2026-20184, a critical certificate-validation flaw in Cisco Webex Control Hub and SSO integrations. Rated CVSS 9.8, it lets an unaut...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-17">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 22 Apr 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-17-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 16</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-16</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-16</guid>
      <description>#CyberWeekly Apr 13-19, 2026: ChipSoft ransomware knocks Belgian and Dutch hospitals offline. Microsoft Graph now auto-fills your compliance intake. Basic-Fit breach exposes 1M gym members. And NIS2 D-Day is here.</description>
      <content:encoded><![CDATA[
        <h2>Your M365 Now Feeds Compliance</h2>
        <p>Microsoft Graph integration auto-fills your intake. AI drafts policies from your own entity data.</p>
        <ul><li><strong>ChipSoft ransomware knocks Belgian and Dutch hospitals offline — patient data confirmed stolen</strong>: 
      A ransomware attack on ChipSoft, the vendor behind 80% of Dutch hospital patient record systems, forced 11 hospitals to take their systems offline and disrupted patient portals across Belgium a...</li>
<li><strong>Platform Spotlight: Microsoft Graph meets compliance — your M365 data now auto-fills intake forms</strong>: 
      This week we shipped Microsoft Graph integration: connect your Microsoft 365 account and your compliance intake forms auto-fill with real data from your tenant. Combined with a new AI document ...</li>
<li><strong>Basic-Fit breach exposes bank details of 1 million gym members across six countries — Belgium included</strong>: 
      European gym giant Basic-Fit disclosed a data breach on April 13 affecting up to 1 million members across Belgium, the Netherlands, France, Germany, Luxembourg, and Spain. The stolen data inclu...</li>
<li><strong>NIS2 D-Day: the April 18 self-assessment deadline is here — what happens if you miss it</strong>: 
      Tomorrow is April 18, 2026 — the binding deadline for Belgian essential entities to submit their CyFun self-assessment or ISO 27001 documentation to the CCB. This is not a procedural formality....</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-16">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 15 Apr 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-16-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 15</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-15</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-15</guid>
      <description>#CyberWeekly Apr 6-12, 2026: RansomHouse hit 3,500 European museums including the Louvre and Eiffel Tower. Belgian listed company Fountain hit by Dragonforce. And our AI now writes your security policies section by section.</description>
      <content:encoded><![CDATA[
        <h2>Ransom at the Louvre</h2>
        <p>RansomHouse hit 3,500 European cultural sites — Louvre, Eiffel Tower, Notre-Dame. Visitor data stolen.</p>
        <ul><li><strong>RansomHouse hits the Louvre, Eiffel Tower, and 3,500 European cultural sites via one ticketing vendor</strong>: 
      A ransomware attack on Vivaticket's French subsidiary Irec SAS disrupted online reservations at nearly 3,500 museums, monuments, and cultural sites across Europe — including the Louvre, Musée d...</li>
<li><strong>Platform Spotlight: AI writes your security policies — section by section</strong>: 
      This week we shipped the biggest AI upgrade to date: the Policy Wizard now generates your security policies section by section using Cloudflare AI, and TARS can surgically revise any passage wi...</li>
<li><strong>Dragonforce ransomware hits Fountain — a Belgian stock-listed company that serves your office coffee</strong>: 
      Fountain, a Belgian publicly-listed company specialising in workplace coffee services, confirmed a ransomware attack involving unauthorised access and data exfiltration. The company filed a cri...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-15">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 08 Apr 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-15-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 14</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-14</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-14</guid>
      <description>#CyberWeekly Mar 30 - Apr 5, 2026: ShinyHunters breach the European Commission in Brussels — 350GB stolen including DKIM keys. New Assessment Hub launched. Citrix NetScaler actively exploited. And 16 days left on Belgium&apos;s NIS2 clock.</description>
      <content:encoded><![CDATA[
        <h2>Brussels Got Hacked</h2>
        <p>ShinyHunters stole 350GB from the European Commission — including the keys to forge their emails</p>
        <ul><li><strong>ShinyHunters breach the European Commission: 350GB stolen including email signing keys</strong>: 
      ShinyHunters stole 350GB from the European Commission — including DKIM keys that let attackers forge official @ec.europa.eu emails.
      
        What was stolen: mail server data, databases, ...</li>
<li><strong>Platform Spotlight: Assessment Hub — your compliance roadmap in three views</strong>: 
      This week we launched the Assessment Hub — plan, track, and close compliance gaps from one place, starting with a structured assessment rather than a flat list of 34 controls.
      
        Th...</li>
<li><strong>Citrix NetScaler CVE-2026-3055: actively exploited since March 27 — patch before attackers steal your session tokens</strong>: 
      A critical memory overread bug in Citrix NetScaler ADC and Gateway (CVSS 9.3) has been actively exploited since at least March 27, leaking authenticated session IDs to unauthenticated attackers...</li>
<li><strong>16 days left: the NIS2 self-assessment deadline is April 18 — here is what still needs to happen</strong>: 
      April 18, 2026 is not a suggestion — it is the hard deadline for Belgian NIS2 entities to submit their CyFun self-assessment or ISO 27001 documentation to the CCB. After that date, the CCB can ...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-14">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 01 Apr 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-14-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 13</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-13</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-13</guid>
      <description>#CyberWeekly Mar 23-29, 2026: Europol and Microsoft dismantle Tycoon 2FA — the MFA-bypass phishing platform with 500 Belgian victims. A Belgian ethical hacker infiltrates a live phishing gang and kills 7 campaigns. Plus our biggest platform update: Calm Compliance.</description>
      <content:encoded><![CDATA[
        <h2>Belgium vs. Phishing</h2>
        <p>Europol and a Belgian hacker went after phishers from opposite directions this week — and both won</p>
        <ul><li><strong>Europol and Microsoft kill Tycoon 2FA — the phishing platform that bypassed your MFA</strong>: 
      On March 16, Europol and Microsoft announced the dismantling of Tycoon 2FA — one of the world's largest phishing-as-a-service platforms, with one particularly nasty trick: it bypasses multi-fac...</li>
<li><strong>Platform Spotlight: Calm Compliance — your full NIS2 journey, one step at a time</strong>: 
      This week we shipped the biggest UX change in Easy Cyber Protection's history: Calm Compliance — a guided journey that takes you from your first question all the way to your audit submission, o...</li>
<li><strong>Belgian ethical hacker infiltrates live phishing gang, kills 7 campaigns targeting Belgian banks</strong>: 
      In early March, Belgian ethical hacker Inti De Ceukelaire received a phishing text impersonating Argenta bank — and instead of deleting it, he decided to fight back. What followed was a weeks-l...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-13">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 25 Mar 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-13-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 12</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-12</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-12</guid>
      <description>#CyberWeekly Mar 13 - Mar 19, 2026: EU sanctions Chinese and Iranian state-linked hackers. Plus: Cisco firewall zero-day (CVSS 10.0) actively exploited by ransomware, LeakNet&apos;s ClickFix trap on hacked websites, and the identity protection firm that lost 900,000 records to a single phone call.</description>
      <content:encoded><![CDATA[
        <h2>EU Strikes Back</h2>
        <p>EU sanctions Chinese and Iranian state hackers — while a security firm loses 900,000 records to a single phone call</p>
        <ul><li><strong>EU names and sanctions the Chinese and Iranian companies behind years of cyberattacks on Europe</strong>: 
      On March 16, the EU Council publicly named five actors — three companies, two individuals — responsible for state-sponsored cyberattacks against EU member states and their partners, and placed ...</li>
<li><strong>Cisco firewall zero-day CVSS 10.0: Interlock ransomware had root access 36 days before anyone knew</strong>: 
      The device meant to protect your network from attackers became the attackers' entry point. CVE-2026-20131 is a CVSS 10.0 flaw in Cisco Secure Firewall Management Center (FMC) — the admin consol...</li>
<li><strong>LeakNet ransomware's new trick: you visit a legitimate website, paste one command, and your files disappear</strong>: 
      LeakNet ransomware has a new entry method — and it doesn't require you to click a suspicious email or download a shady file. The group now compromises legitimate websites and injects fake CAPTC...</li>
<li><strong>ShinyHunters hacked an identity protection company — via one phone call to one employee</strong>: 
      Aura is a company that sells identity protection. Its product monitors for breaches, alerts customers when their data appears online, and promises to keep personal information safe. On March 19...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-12">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 18 Mar 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-12-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 11</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-11</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-11</guid>
      <description>#CyberWeekly Mar 6 - Mar 12, 2026: Iranian-linked Handala wipes 200,000 devices at Stryker using Microsoft Intune. Plus: Belgium helps bust stolen-data forum LeakBase (142K users), March Patch Tuesday hits SQL Server with a zero-day, and the ECP learn library now maps every article to CyFun controls.</description>
      <content:encoded><![CDATA[
        <h2>Devices Wiped Worldwide</h2>
        <p>Iranian hackers abused Microsoft Intune to remotely wipe 200,000 devices at medtech giant Stryker across 79 countries</p>
        <ul><li><strong>Iranian hackers wipe 200,000 devices at Stryker — using the IT admin tools you already have</strong>: 
      On March 11, Iran-linked hacktivist group Handala wiped over 200,000 laptops, phones, and servers at medtech giant Stryker — in a single morning — using Microsoft Intune. Not a zero-day, not a ...</li>
<li><strong>Platform Spotlight: Every learn article now shows you which CyFun controls it covers</strong>: 
      Reading a news story about a wiper attack and wondering which CyFun control covers MDM security? You can now find out in one click. This week, 56 articles across the /learn library were updated...</li>
<li><strong>Belgium helped take down LeakBase — the stolen-credential market with 142,000 users</strong>: 
      On March 3-4, Europol coordinated a global law enforcement operation that dismantled LeakBase, one of the internet's largest stolen-credential trading forums. Belgium was among the 14 participa...</li>
<li><strong>March Patch Tuesday: patch your SQL Server now — zero-day actively exploited</strong>: 
      Microsoft's March 2026 Patch Tuesday dropped 84 fixes including two actively exploited zero-days, and one of them is in SQL Server. CVE-2026-21262 (CVSS 8.8) allows an attacker with network acc...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-11">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 11 Mar 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-11-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 10</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-10</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-10</guid>
      <description>#CyberWeekly Feb 27 - Mar 5, 2026: Operation Epic Fury triggers global cyber escalation as 60+ hacktivist groups mobilize. Plus: Google dismantles Chinese espionage network hiding in Google Sheets, LexisNexis confirms 400K-profile breach exposing government data, and your NIS2 countdown hits 6 weeks.</description>
      <content:encoded><![CDATA[
        <h2>Cyber War Goes Live</h2>
        <p>Operation Epic Fury sparks global cyber escalation — 60+ hacktivist groups mobilize as Iran&apos;s internet drops to 1%</p>
        <ul><li><strong>Cyber war goes live — Operation Epic Fury triggers global escalation</strong>: 
      On February 28, the United States and Israel launched a joint military offensive against Iran — and the cyber dimension lit up within hours. Palo Alto Networks' Unit 42 threat brief documents w...</li>
<li><strong>Platform Spotlight: NIS2 countdown — 6 weeks to audit day</strong>: 
      April 18, 2026. That's when essential entities must demonstrate at least CyFun Basic or Important level compliance. As of this week, that's 6 weeks away. If you've registered (4,000+ entities h...</li>
<li><strong>Google dismantles Chinese espionage network hiding in Google Sheets</strong>: 
      A China-linked threat actor breached at least 53 government and telecom organizations across 42 countries — and used Google Sheets as their command-and-control channel. Google's Threat Intellig...</li>
<li><strong>LexisNexis confirms breach — 400K profiles, government emails exposed</strong>: 
      Legal data giant LexisNexis confirmed this week that hackers breached its AWS infrastructure and leaked 2 GB of stolen data. The threat actor "FulcrumSec" published the data on underground foru...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-10">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 04 Mar 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-10-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 9</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-9</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-9</guid>
      <description>#CyberWeekly Feb 20 - Feb 26, 2026: WEF warns fraud now outranks ransomware as the top CEO concern — SMEs are 2.5x more vulnerable. Plus: ECP launches flat €25/client/month pricing for MSPs, why your compliance data is a hacker&apos;s blueprint, and Qilin ransomware claims IT provider Plan-IT Office.</description>
      <content:encoded><![CDATA[
        <h2>Fraud Is the New Ransomware</h2>
        <p>WEF Global Cybersecurity Outlook 2026: cyber-enabled fraud overtakes ransomware as top CEO concern — and SMEs are 2.5× more exposed</p>
        <ul><li><strong>Fraud is the new ransomware — WEF Global Cybersecurity Outlook 2026</strong>: 
      Forget ransomware for a moment — your CEO is already more worried about fraud. The World Economic Forum's Global Cybersecurity Outlook 2026, based on 800 global leaders surveyed, confirms a str...</li>
<li><strong>Platform Spotlight: Flat pricing, MSP-first — compliance at €25/client/month</strong>: 
      We've simplified everything. This week we completed our pivot to a clean, MSP-first model: flat €25/client/month, all features included, across all tiers. No per-seat tiers. No feature gates. N...</li>
<li><strong>Your compliance data is a hacker's blueprint — and it's probably stored in a US data center</strong>: 
      The top 5 compliance platforms by market share — Vanta, Drata, Sprinto, Secureframe, Tugboat Logic — are all US-headquartered, with US-based cloud infrastructure as their default. Most people r...</li>
<li><strong>Qilin ransomware claims IT provider — when your MSP gets hit, your clients do too</strong>: 
      On February 23, Qilin ransomware group added Plan-IT Office Solutions to their leak site — another IT provider in the crosshairs. Qilin entered 2026 on a rampage: 55 victims posted in the first...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-9">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 25 Feb 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-9-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 8</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-8</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-8</guid>
      <description>#CyberWeekly Feb 13 - Feb 19, 2026: Russian hackers target Milano Cortina Winter Olympics with 120+ DDoS attacks, our guided compliance Navigator ships, Dutch telecom Odido loses 6.2M customer records to social engineering, BeyondTrust CVSS 9.9 vulnerability exploited in the wild, and Belgium hits NIS2 milestone with 2,410 organizations registered.</description>
      <content:encoded><![CDATA[
        <h2>Olympic Cyberwars: Russia Targets the Winter Games</h2>
        <p>NoName057(16) launches 120+ DDoS attacks on Milano Cortina — Italy fires up its biggest-ever cyber command center</p>
        <ul><li><strong>Olympic cyberwars: Russia targets Milano Cortina with 120+ DDoS attacks</strong>: 
      The Winter Olympics got a cyberattack before the first medal was awarded. Pro-Russian hacktivist group NoName057(16) launched over 120 DDoS attacks targeting Italy's Milano Cortina 2026 Winter ...</li>
<li><strong>Platform Spotlight: Your compliance GPS has arrived</strong>: 
      Imagine opening the app and knowing exactly what to do next — every single time. This week we shipped the guided compliance Navigator, a todo-driven workflow that turns audit readiness from a v...</li>
<li><strong>Odido breach: 6.2 million Dutch customers exposed by a phone call</strong>: 
      The Netherlands' largest mobile operator just lost 6.2 million customer records — and the attackers didn't exploit a single vulnerability. Dutch telecom giant Odido confirmed on February 13 tha...</li>
<li><strong>BeyondTrust scores a near-perfect 9.9 — on the CVSS vulnerability scale</strong>: 
      When your remote access tool scores 9.9 out of 10 on the vulnerability scale, "critical" doesn't quite capture it. CVE-2026-1731, a command injection flaw in BeyondTrust Remote Support and Priv...</li>
<li><strong>Belgium's NIS2 milestone: 2,410 organizations registered — and counting</strong>: 
      Belgium just pulled off the largest cybersecurity compliance operation in its history. The Centre for Cybersecurity Belgium (CCB) announced that 2,410 organizations from critical sectors have r...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-8">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 18 Feb 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-8-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 7</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-7</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-7</guid>
      <description>#CyberWeekly Feb 6 - Feb 12, 2026: Microsoft&apos;s February Patch Tuesday fixes 6 actively exploited zero-days just before Friday the 13th, our wiki-centric compliance engine ships, ransomware surges 49% targeting SMEs, first malicious Outlook add-in steals 4,000 credentials, and University of Hawaii Cancer Center hit by ransomware.</description>
      <content:encoded><![CDATA[
        <h2>Friday the 13th: Patch Tuesday Edition</h2>
        <p>Microsoft fixes 6 actively exploited zero-days — just in time for the unluckiest day of the year</p>
        <ul><li><strong>Microsoft's Friday the 13th: 6 zero-days patched just before the unluckiest day of the year</strong>: 
      Jason's got nothing on Microsoft's February Patch Tuesday. While the horror franchise scares with a hockey mask, Redmond delivered real terror on February 11 with six actively exploited zero-da...</li>
<li><strong>Platform Spotlight: The wiki-centric compliance engine is here</strong>: 
      Turning wiki pages into audit-ready documentation just got stupid simple. This week we shipped the wiki-centric compliance engine — a system that lets MSPs make clients audit-ready without ever...</li>
<li><strong>Ransomware surges 49% — and two-thirds of victims are SMEs</strong>: 
      The ransomware business is booming, and SMEs are paying the price — literally. BlackFog's State of Ransomware 2026 report, released February 12, shows a 49% increase in attacks year-over-year. ...</li>
<li><strong>First malicious Outlook add-in found in the wild — 4,000 credentials stolen</strong>: 
      Someone finally weaponized the Outlook add-in ecosystem. Cybersecurity researchers discovered the first malicious Microsoft Outlook add-in deployed in the wild — a supply chain attack that hija...</li>
<li><strong>University of Hawaii Cancer Center hit by ransomware — research data exposed</strong>: 
      Ransomware just disrupted cancer research, and the damage goes beyond data. The University of Hawaii Cancer Center confirmed a ransomware attack that compromised research servers, encrypted fil...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-7">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 11 Feb 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-7-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 6</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-6</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-6</guid>
      <description>#CyberWeekly Jan 30 - Feb 5, 2026: Russian hackers spoof Brussels VUB event to steal Microsoft 365 credentials, our platform gets AI-powered CSV import, EU SECURE project offers €30K grants for SME cybersecurity, Fortinet zero-day exposes 3.2M devices, and BASF/Dassault/Honeywell hit by same threat actor.</description>
      <content:encoded><![CDATA[
        <h2>Dangerous Invitations</h2>
        <p>Russian hackers spoof Brussels university event to steal Microsoft 365 credentials</p>
        <ul><li><strong>Russian hackers spoof Brussels VUB event to steal Microsoft 365 credentials</strong>: 
      Russian state-linked threat group UTA0355 impersonated staff from the Centre for Security, Diplomacy, and Strategy at Vrije Universiteit Brussel, sending fake invitations to the "Brussels Indo-...</li>
<li><strong>Platform Spotlight: Import your asset inventory with AI-powered CSV mapping</strong>: 
      You can now import CSV files directly into Easy Cyber Protection — and the AI figures out which columns map to which fields. Upload your device list, user inventory, or any spreadsheet, and our...</li>
<li><strong>EU SECURE project offers up to €30,000 for SME cybersecurity</strong>: 
      The EU-funded SECURE project — with Belgium's CCB as a consortium partner — opened its first call for proposals on January 28, offering European SMEs grants of up to €30,000 to prepare for the ...</li>
<li><strong>Fortinet FortiCloud SSO zero-day exposes 3.2 million devices</strong>: 
      Fortinet confirmed active exploitation of CVE-2026-24858 (CVSS 9.4), an authentication bypass in FortiCloud SSO that allowed any FortiCloud account holder to log into other users' Fortinet devi...</li>
<li><strong>BASF, Dassault Systèmes, and Honeywell breached by same threat actor</strong>: 
      On February 3, threat actor "0APT" claimed breaches of three major industrial companies in a single day: BASF (2TB of data), Dassault Systèmes, and Honeywell. The coordinated timing suggests ei...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-6">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 04 Feb 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-6-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 5</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-5</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-5</guid>
      <description>#CyberWeekly Jan 23 - Jan 29, 2026: Ransomware cases surge 45% in 2025 with 12,000+ predicted for 2026, our Learn section launches with 50 articles, LockBit takedown hero honored by King Charles, ESA data breach investigation escalates, and Belgium&apos;s NIS2 self-assessment deadline approaches.</description>
      <content:encoded><![CDATA[
        <h2>The Ransomware Reckoning</h2>
        <p>45% surge in 2025 signals tougher year ahead for Belgian SMEs</p>
        <ul><li><strong>Ransomware surge: 45% increase in 2025, SMEs in the crosshairs</strong>: 
      NordStellar research reveals a staggering 9,251 ransomware cases in 2025 — a 45% jump from 2024's 6,395 cases. Experts predict the number will exceed 12,000 incidents in 2026. For Belgian SMEs,...</li>
<li><strong>Platform Spotlight: Knowledge base goes live with 50 articles</strong>: 
      This week we launched the Learn section — 50 articles covering NIS2, CyberFundamentals, security basics, practical guides, and industry-specific advice. Every article is available in English, D...</li>
<li><strong>LockBit takedown hero honored by King Charles in New Year Honours</strong>: 
      Gavin Webb, the UK National Crime Agency officer who led Operation Cronos, received an OBE in King Charles III's New Year Honours list. Operation Cronos was the 2024 international effort that d...</li>
<li><strong>European Space Agency opens criminal investigation after 500GB data theft</strong>: 
      The European Space Agency confirmed a criminal investigation after hackers claimed they stole 500GB of sensitive data, including operational procedures, spacecraft details, and proprietary cont...</li>
<li><strong>Belgium NIS2: Self-assessment deadline approaching (April 18, 2026)</strong>: 
      Belgian entities subject to NIS2 must submit their CyFun® AL Basic or Important self-assessment — or their ISO 27001 documentation — to the CCB by April 18, 2026. That's 12 weeks from today.
  ...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-5">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 28 Jan 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-5-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 4</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-4</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-4</guid>
      <description>#CyberWeekly Jan 16 - Jan 22, 2026: EU rewrites cybersecurity rules with revised Cybersecurity Act, 50 Learn articles go live on our platform, LastPass customers targeted by phishing, and Clop&apos;s Oracle zero-day hits 100+ organizations.</description>
      <content:encoded><![CDATA[
        <h2>Europe Rewrites the Rules</h2>
        <p>EU proposes revised Cybersecurity Act to secure supply chains and simplify NIS2 compliance</p>
        <ul><li><strong>EU proposes revised Cybersecurity Act to secure supply chains</strong>: 
      January 20: The European Commission proposed a sweeping revision of the EU Cybersecurity Act, targeting ICT supply chain security and simplifying compliance for businesses across Europe. The pa...</li>
<li><strong>Platform Spotlight: 50 Learn articles go live</strong>: 
      Big week for the platform. We published 50 articles across the Learn section — covering NIS2, CyberFundamentals, security basics, practical guides, and industry-specific advice. Every article i...</li>
<li><strong>LastPass customers targeted by phishing campaign stealing master passwords</strong>: 
      January 19: A phishing campaign launched over the US holiday weekend targeted LastPass users with fake maintenance emails, trying to steal their master passwords. The attackers sent emails from...</li>
<li><strong>Clop's Oracle zero-day rampage hits 100+ organizations worldwide</strong>: 
      The Clop ransomware gang exploited a critical Oracle E-Business Suite zero-day (CVE-2025-61882) to steal data from over 100 organizations — including Dartmouth College, Harvard, The Washington ...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-4">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 21 Jan 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-4-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 3</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-3</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-3</guid>
      <description>#CyberWeekly Jan 9 - Jan 15, 2026: Belgian hospital AZ Monica hit by ransomware, BlackBasta leader added to EU Most Wanted, Under Armour breach exposes 72M customers, and our new activity log tracks every change.</description>
      <content:encoded><![CDATA[
        <h2>When Hackers Hit Home</h2>
        <p>Belgian hospital AZ Monica shuts down after ransomware attack</p>
        <ul><li><strong>Belgian hospital AZ Monica forced offline by cyberattack</strong>: 
      January 13, 6:32 AM: AZ Monica hospital in Antwerp disconnected all servers after detecting a cyberattack. The incident forced Belgium's largest private hospital to cancel 70 operations, postpo...</li>
<li><strong>Platform Spotlight: Activity log & incident tracking</strong>: 
      Big week for the platform. We shipped a complete activity tracking system — so you always know what changed, when, and by whom.
      
        Activity log for controls & tasks — every checklis...</li>
<li><strong>BlackBasta ransomware leader added to EU Most Wanted</strong>: 
      January 15: German and Ukrainian police raided homes of BlackBasta ransomware suspects, and Germany named the group's alleged leader. Oleg Nefedov, a 35-year-old Russian national, was placed on...</li>
<li><strong>Under Armour breach exposes 72 million customer accounts</strong>: 
      January 18: The Everest ransomware group dumped data from 72.7 million Under Armour customer accounts on a cybercrime forum. Have I Been Pwned confirmed the breach — making it one of the larges...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-3">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 14 Jan 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-3-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 2</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-2</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-2</guid>
      <description>#CyberWeekly Jan 2 - Jan 8, 2026: ClickFix phishing hits European hotels via fake Booking.com emails, CyFun Basic goes live with 34 controls, Ledger supply chain breach via Global-e, and ALPHV/BlackCat insiders unmasked.</description>
      <content:encoded><![CDATA[
        <h2>Check-In to Malware</h2>
        <p>Fake Booking.com emails deploy infostealers across European hotels</p>
        <ul><li><strong>ClickFix phishing targets European hotels via fake Booking.com emails</strong>: 
      Late December: A phishing campaign dubbed PHALT#BLYX hit the European hospitality sector with fake Booking.com reservation cancellations. Securonix researchers tracked the multi-stage operation...</li>
<li><strong>Platform Spotlight: CyFun Basic goes live</strong>: 
      This was our biggest platform update yet. CyFun Basic — 34 CyberFundamentals controls — is now live on Easy Cyber Protection.
      
        34 Basic controls — the complete CyberFundamentals B...</li>
<li><strong>Ledger customers hit by third-party Global-e breach</strong>: 
      January 5: Hardware wallet maker Ledger confirmed that customer data was exposed through a breach at Global-e, its third-party payment processor. The attack didn't touch Ledger's platform, hard...</li>
<li><strong>ALPHV/BlackCat insiders unmasked — cybersecurity pros turned ransomware operators</strong>: 
      January 2: Two U.S. cybersecurity professionals pleaded guilty to running ransomware attacks using the ALPHV/BlackCat platform. This is one of the rarest things in cybercrime: actual names and ...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-2">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 07 Jan 2026 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-2-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 1</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-1</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-1</guid>
      <description>#CyberWeekly Dec 29, 2025 - Jan 4, 2026: Russia&apos;s Sandworm hits Poland&apos;s power grid, MongoBleed exploited in the wild, 2026 cybersecurity predictions, and we launch EasyHabits.</description>
      <content:encoded><![CDATA[
        <h2>New Year, Same Threats</h2>
        <p>Russia attacks NATO power grid as holiday cyberattacks escalate</p>
        <ul><li><strong>Russia hits Poland's power grid — first Sandworm attack on NATO</strong>: 
      December 29-30: Russia's GRU launched a data-wiping attack on Poland's energy infrastructure. ESET researchers now confirm it was Sandworm — the same unit behind Ukraine's 2015 blackout. This m...</li>
<li><strong>Platform Spotlight: EasyHabits & fresh branding</strong>: 
      New year, new tools. We kicked off 2026 with a companion app, a new logo, and smarter defaults.
      
        EasyHabits — A new companion app that helps you build better security habits. It r...</li>
<li><strong>MongoBleed exploited hours after PoC release</strong>: 
      CVE-2025-14847 went from patched to exploited in less than 48 hours. The vulnerability — dubbed "MongoBleed" — allows unauthenticated attackers to leak sensitive data from MongoDB servers by ab...</li>
<li><strong>2026 security predictions: what the experts see coming</strong>: 
      As we roll into 2026, the cybersecurity industry is unified on one thing: AI will dominate both attacks and defenses. But beyond that headline, the predictions get more specific — and more alar...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2026/week-1">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 31 Dec 2025 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2026/week-1-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 4</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-4</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-4</guid>
      <description>#CyberWeekly Dec 19 - Dec 25, 2025: La Poste DDoS before Christmas, Romania&apos;s energy grid hit by ransomware, ESA data breach, 2025 year review, and platform team management goes live.</description>
      <content:encoded><![CDATA[
        <h2>Silent Night, Dangerous Night</h2>
        <p>Hackers hit La Poste before Christmas — and Romania&apos;s energy grid is next</p>
        <ul><li><strong>La Poste knocked offline before Christmas</strong>: 
      France's national postal service was hit by a DDoS attack on December 23, right before Christmas. Pro-Russian hacking group NoName057(16) claimed responsibility, and French intelligence agency ...</li>
<li><strong>Platform Spotlight: invite your team, manage your partners</strong>: 
      Our biggest collaboration update yet. You can now invite team members, assign roles, and — if you're a security partner — manage client organizations from one place.
      
        User & acces...</li>
<li><strong>Romania's energy grid hit next</strong>: 
      On December 26 at 01:40, the "Gentlemen" ransomware group struck Romania's Oltenia Energy Complex — the country's largest coal-based power producer, responsible for 30% of Romania's electricity...</li>
<li><strong>European Space Agency data breach</strong>: 
      A threat actor known as "888" claims to have stolen 200GB of sensitive data from the European Space Agency (ESA). The alleged haul includes source code, confidential documents, and internal sys...</li>
<li><strong>2025: the year cyber got personal</strong>: 
      As 2025 wraps up, the numbers tell a brutal story. This was the year cybersecurity stopped being an abstract IT problem and became a real business threat for companies of every size.
      The ...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-4">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 22 Jan 2025 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2025/week-4-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 3</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-3</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-3</guid>
      <description>#CyberWeekly Dec 12 - Dec 18, 2025: Romania&apos;s water authority ransomware, German SMBs under attack, holiday hacking season, the Cyber Resilience Act, and our platform gets a new name and passwordless login.</description>
      <content:encoded><![CDATA[
        <h2>Water Under Siege</h2>
        <p>Romania&apos;s water authority hit by ransomware — and hackers gear up for the holidays</p>
        <ul><li><strong>Romania's water authority hit by ransomware</strong>: 
      On December 20, Romania's national water authority had 1,000 systems encrypted in a ransomware attack. The attackers hit 10 of 11 river basin management offices across the country.
      The cl...</li>
<li><strong>Platform Spotlight: new name, passwordless login, three languages</strong>: 
      Big week for the platform. We rebranded to Easy Cyber Protection, shipped passwordless login, and launched full trilingual support.
      Here's what changed:
      
        Passwordless login ...</li>
<li><strong>German SMBs are getting hammered</strong>: 
      Two more German SMBs made headlines this month — and not in a good way.
      Klingele Paper & Packaging Group, a mid-sized manufacturer, had 450GB of data stolen by the INC ransomware group. C...</li>
<li><strong>Hackers love the holidays</strong>: 
      52% of ransomware attacks in the past year happened on a weekend or holiday. And 78% of organizations reduce their security staff during the holiday period.
      Do the math. Fewer defenders +...</li>
<li><strong>Cyber Resilience Act: the clock is ticking</strong>: 
      The EU's Cyber Resilience Act hit its first milestone on December 11, with the Commission adopting a delegated act on vulnerability notification delays.
      If you sell or use products with d...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-3">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 15 Jan 2025 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2025/week-3-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 2</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-2</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-2</guid>
      <description>#CyberWeekly Dec 5 - Dec 11, 2025: Germany activates NIS2, France&apos;s ministry gets hacked, and holiday phishing hits record levels.</description>
      <content:encoded><![CDATA[
        <h2>Germany Goes NIS2</h2>
        <p>Europe&apos;s largest economy activates its cybersecurity law — and hackers don&apos;t take holidays</p>
        <ul><li><strong>Germany activates its NIS2 law</strong>: 
      On December 6, Germany's NIS2 Implementation Act came into force. Europe's largest economy is now enforcing stricter cybersecurity obligations on essential and important entities.
      Why thi...</li>
<li><strong>France's Interior Ministry gets hacked</strong>: 
      Overnight on December 11-12, hackers compromised the email servers of France's Ministry of the Interior. Yes, the ministry responsible for national security.
      The irony isn't lost on anyon...</li>
<li><strong>Holiday phishing hits record levels</strong>: 
      51% of all Christmas-themed emails are now scams. Researchers detected over 33,000 phishing emails in just two weeks — and that's only what they caught.
      The most common tricks this season...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-2">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 08 Jan 2025 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2025/week-2-og.webp" type="image/webp" />
    </item>
    <item>
      <title>#CyberWeekly - Week 1</title>
      <link>https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-1</link>
      <guid isPermaLink="true">https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-1</guid>
      <description>#CyberWeekly Nov 28 - Dec 4, 2025: Platform launch, CyFun 2025 release, and why SMBs are now the primary target for hackers.</description>
      <content:encoded><![CDATA[
        <h2>We Launched</h2>
        <p>Easy Cyber Protection is here to help Belgian SMEs secure their business</p>
        <ul><li><strong>We launched Easy Cyber Protection</strong>: 
      This week marks the beginning of Easy Cyber Protection. We built a platform to help Belgian SMEs get their cybersecurity in order — without needing an IT department or expensive consultants.
  ...</li>
<li><strong>CyFun 2025: Belgium updates its cybersecurity framework</strong>: 
      Big news from the Centre for Cybersecurity Belgium (CCB): they just released CyFun 2025, a major update to the CyberFundamentals framework.
      What changed?
      
        Aligns with NIST C...</li>
<li><strong>SMBs are now the #1 target for hackers</strong>: 
      70.5% of data breaches in 2025 targeted small and medium businesses. Not large enterprises — SMBs.
      Why the shift?
      
        Large companies invested heavily in cybersecurity and stop...</li></ul>
        <p><a href="https://easycyberprotection.comhttps://easycyberprotection.com/cyberweekly/2025/week-1">Read full issue →</a></p>
      ]]></content:encoded>
      <pubDate>Wed, 01 Jan 2025 18:00:00 GMT</pubDate>
      <enclosure url="https://easycyberprotection.com/images/cyberweekly/2025/week-1-og.webp" type="image/webp" />
    </item>
  </channel>
</rss>