Ransomware attack on ChipSoft knocks EHR services offline across hospitals in the Netherlands and Belgium

2026-04-10T14:51:46Zfefe44107af59d5888370dd4554d6faeb89adac01f1c0c0f299ab63ab4d275e4
Adobe Reader zero-dayAndroid sandbox bypassBitcoin DepotChipSoftDDoS-for-hireEHREngageLabEngageSDKEurailICS exposureIoT botnetIvanti EPMMLua malwareLucidRookMasjesuUAT-10362crypto-walletscryptocurrency theftdata breachindustrial control systemsmalicious PDFmobile securitypassport dataphishingransomware

What happened

Multiple high-impact incidents reported: Dutch healthcare IT firm ChipSoft suffered a ransomware attack that knocked HiX EHR services offline across hospitals in the Netherlands and Belgium. A new Lua-based malware, LucidRook, linked to actor UAT-10362, is being used in targeted phishing against NGOs and universities in Taiwan. Microsoft researchers disclosed a critical EngageLab/EngageSDK flaw allowing apps to bypass Android sandbox protections and expose private data on up to 50M devices (including ~30M crypto wallet installs). Bitcoin Depot was breached via stolen credentials, resulting in~

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
fefe44107af59d5888370dd4554d6faeb89adac01f1c0c0f299ab63ab4d275e4
Enrichment time
2026-04-10T14:51:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.