Cybersecurity Law: What Changes From Aug 15, 2026
The Cybersecurity Law is in the final stage of approval in the Dutch Eerste Kamer. If adopted, it is expected to take effect on 15 August 2026 with new cybersecurity duties for covered organizations.
The Cybersecurity Law is in the final stage of approval in the Dutch Eerste Kamer. If adopted, it is expected to take effect on 15 August 2026 with new cybersecurity duties for covered organizations.
Cyber threats spread across many organizations, so sharing threat intelligence quickly matters. STIX/TAXII 2.1 enables more automated, bidirectional exchange—now available for Dutch public bodies.
From July 1, 2026, Dutch municipalities, provinces, central government, water boards and implementing organizations must apply STIX and TAXII 2.1. Other public-sector organizations are strongly advised to adopt the update as well.
From 15 August 2026, the Netherlands will apply a new cybersecurity law alongside the critical entities resilience act. About 8,000 organizations face new duties—starting with registration and incident reporting.
Russian state actors—along with hacktivists and criminals—abuse IP cameras for spying and attacks. Discover practical steps for organizations and home users.
Dora Horjus is per 1 juli benoemd als programmamanager bij NCSC. In die rol stuurt ze bestuurlijke samenwerking én de weg naar een fysiek House of Cyber rond 2030.
A new Office update alert warns of multiple Microsoft Office vulnerabilities across Word, Excel, PowerPoint, and SharePoint. One SharePoint flaw is actively exploited, so installing updates fast is critical.
The NCSC reports severe WordPress Core vulnerabilities that have already been exploited. If you run WordPress, install the security updates as soon as possible.
The NCSC reports multiple critical vulnerabilities in Oracle Fusion Middleware components. Because they can be exploited remotely without authentication, organizations should install Oracle security updates immediately.
The GoSerpent backdoor campaign targeted government and diplomatic entities in Southeast Asia, combining stealthy remote access with staged credential dumping and file exfiltration.