CSIDB logo
Incident

Vlaamse Dienst voor Arbeidsbemiddeling en Beroepsopleiding

Incident posture

Attack window
Jun 2024
Location
Belgium
Status
Historical
CIA posture
Available to members
Updated
2025-12-29 22:43

Linked entities

Victim
Vlaamse Dienst voor Arbeidsbemiddeling en Beroepsopleiding
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Jun 2024
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

The Flemish employment agency VDAB experienced a cyberattack that disrupted its online services and applications after hackers overloaded its systems for several hours. The organization's IT team resolved the incident in collaboration with telecommunications provider Telenet, restoring normal operations to its website and internal/external platforms without evidence of compromised personal data. This marked the most significant security breach since a comparable incident years prior.

Motives

Detailed motive labels are available to members.

2 motives

TTPs

Detailed technique labels are available to members.

1 technique

Description

On June 11, 2024, the Flemish Employment and Vocational Training Service (VDAB) experienced a cyberattack that disrupted its online services for several hours. The attack began on Tuesday, with hackers overwhelming VDAB’s systems through sustained assault methods, causing significant operational interruptions. The agency’s website and external applications became inaccessible due to the traffic surge, while internal systems also faced parallel disruptions. VDAB confirmed the incident publicly on Wednesday, clarifying that the attack constituted an external attempt to compromise service availability rather than a data breach. No evidence indicated unauthorized access to or theft of personal information belonging to users or employees. The disruption temporarily hindered job seekers and employers from accessing VDAB’s digital platforms during the attack window.

VDAB’s IT personnel initiated countermeasures immediately upon detecting the anomalous activity, collaborating with telecommunications provider Telenet to mitigate the attack’s impact. By Tuesday evening, the agency restored full functionality to its website and all internal and external applications, confirming operational normalization. The response involved traffic filtering and infrastructure adjustments to withstand the attack vectors, though specific technical details of the mitigation were not disclosed. This incident marked the most severe cybersecurity event affecting VDAB since 2019, when the organization last faced comparable disruption. Service continuity was maintained for offline operations and physical locations throughout the incident, with no residual effects reported after system restoration. The agency did not identify the attackers or disclose whether law enforcement investigations were underway.

Sources

Sources available to members: 1 source.

CSIDB