Ransomware attack on ChipSoft knocks EHR services offline across hospitals in the Netherlands and Belgium
2026-04-10T14:51:46Z•fefe44107af59d5888370dd4554d6faeb89adac01f1c0c0f299ab63ab4d275e4
Adobe Reader zero-dayAndroid sandbox bypassBitcoin DepotChipSoftDDoS-for-hireEHREngageLabEngageSDKEurailICS exposureIoT botnetIvanti EPMMLua malwareLucidRookMasjesuUAT-10362crypto-walletscryptocurrency theftdata breachindustrial control systemsmalicious PDFmobile securitypassport dataphishingransomware
What happened
Multiple high-impact incidents reported: Dutch healthcare IT firm ChipSoft suffered a ransomware attack that knocked HiX EHR services offline across hospitals in the Netherlands and Belgium. A new Lua-based malware, LucidRook, linked to actor UAT-10362, is being used in targeted phishing against NGOs and universities in Taiwan. Microsoft researchers disclosed a critical EngageLab/EngageSDK flaw allowing apps to bypass Android sandbox protections and expose private data on up to 50M devices (including ~30M crypto wallet installs). Bitcoin Depot was breached via stolen credentials, resulting in~
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- fefe44107af59d5888370dd4554d6faeb89adac01f1c0c0f299ab63ab4d275e4
- Enrichment time
- 2026-04-10T14:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.