CSIDB logo
Incident

Katholiekamersfoort.nl

Incident posture

Attack window
Jun 2026
Location
Netherlands
Status
Unknown
CIA posture
Available to members
Updated
2026-08-26 22:28

Linked entities

Victim
Katholiekamersfoort.nl
Threat actors
1 actor
Sources
1 source

Timeline

Occurred
Undetermined
Discovered
Jun 2026
Disclosed
Jun 2026
Resolved
Pending

Summary

The Katholiekamersfoort.nl church website network was breached by the Stormous ransomware group, resulting in the exfiltration of internal data. The incident was listed in a ransomware victims feed with the UPDATE-FOR SALE tag. This tag signals that the stolen data was being offered for sale on underground markets.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

On June 10, 2026, the ransomware.live site published an article titled Recent Victims, which is identified by Source Report ID 95fcd638-1379-43b2-82b0-9812887b1623 and is sponsored by Hudson Rock. The article includes a list of recent cyberattack victims, each entry showing the victim name, the ransomware group involved, and the date of discovery. One of the entries in this list concerns the domain katholiekamersfoort.nl and is marked with an UPDATE‑FOR SALE label. The entry indicates that the incident was discovered on June 9, 2026, which the article notes as yesterday relative to the publication date. The entry is grouped under the Stormous ransomware group in the list.

According to the entry, the victim is the church website associated with katholiekamersfoort.nl, and the compromise involved the website's network. The description states that the breach resulted in the exfiltration of data, although the specific details of what was taken are truncated in the source. No further information about the scope of the exfiltrated data, any ransom demand, or any response actions taken by the victim is provided in the article. The article does not mention any detection methods, containment steps, or mitigation efforts undertaken after the discovery. Consequently, the only confirmed facts are the discovery date, the attacker identity, the victim entity, and the occurrence of data exfiltration from the church website's network.

Sources

Sources available to members: 1 source.

CSIDB