Close Menu
NCIJ Network NCIJ Network
    What's Hot

    What is the triple lock and why are people talking about it?

    September 29, 2026

    Burnham to signal willingness to look at scrapping pension triple lock to fund social care | Labour conference 2026

    September 29, 2026

    How to Beat Surveillance Pricing Before It Bleeds You Dry

    September 29, 2026
    Facebook X (Twitter) Instagram
    Trending
    • What is the triple lock and why are people talking about it?
    • Burnham to signal willingness to look at scrapping pension triple lock to fund social care | Labour conference 2026
    • How to Beat Surveillance Pricing Before It Bleeds You Dry
    • Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials
    • Canada’s ‘Crypto King’ Aiden Pleterski to Represent Himself at Fraud Trial
    • ‘The Deep End’ podcast is back to explore what makes your voice yours
    • Rain eases in Bangkok but persistent flooding forces thousands to leave home
    • What Putin’s Sham Elections Say About Russia
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Tuesday, September 29
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Dutch Police Arrest 24-Year-Old Amsterdam Man in ShinyHunters Investigation

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 29, 2026 Cybersecurity No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Ravie LakshmananSep 29, 2026United States

    Dutch authorities have confirmed that they arrested a 24-year-old man from Amsterdam in connection with the ShinyHunters group.

    “It is true that this month a 24-year-old man from Amsterdam was arrested in an investigation into the hacker group ShinyHunters,” the Politie Landelijke Opsporing en Interventies said in an X post Monday.

    Police said the individual is expected to appear before the Rotterdam District Court on September 29, 2026.

    Although law enforcement officials did not disclose any additional details, independent security journalist Brian Krebs and DataBreaches.Net identified the arrested man as Pepijn van der Stap (aka Umbreon), who was previously apprehended in 2023 for his role in a series of data thefts and extortions.

    Per DataBreaches.Net, van der Stap was arrested on September 15, 2026. In 2023, it emerged that the individual worked at cybersecurity company Hadrian and volunteered at the Dutch Institute for Vulnerability Disclosure (DIVD).

    “Working at Hadrian and volunteering at DIVD made me more paranoid about keeping up appearances, and I actually felt more pressure and paranoia because I was working such long hours,” van der Stap told DataBreaches.Net in June 2023.

    “So yes, I was doing more lawful work and much less illegal work but I became more paranoid about getting caught. The paranoia became so extreme that I was expecting a knock on the door at any time.”

    He is presently employed as the offensive security lead at the Dutch company Neo Security, according to LinkedIn.

    In his profile, van der Stap acknowledged his journey “hasn’t been a straight line” and that “I’ve seen security from both sides of the terminal, an experience that taught me hard lessons but ultimately gave me clarity: knowledge is for building and protecting, not breaking.”

    The development comes as ShinyHunters claimed credit for its brazen hack of the U.S. Federal Bureau of Investigation’s (FBI) job application site apply.fbijobs.gov, stealing terabytes of sensitive data.

    “This was all a marketing campaign to protect our business and actively combat disinformation,” a ShinyHunters representative told 404 Media. “If we made this statement normally then this much attention to our words and intentions would’ve never been this widespread.”

    “We’d have been ignored and disregarded. However, now everyone knows what the issue is and what we are doing. Everyone is reading about it. We proved our points on several occasions. We do not care what the public says and we are not affected by it nor do we cloud our judgement by external opinions and thoughts.”

    In a statement shared with The Hacker News, the group reiterated again that the attack on the FBI’s systems was not extortion and that it’s not financially motivated.

    “We understand why many misinterpreted this as extortion and are convinced we would publish this data and/or misuse it such as selling to third parties due to our history in past operations which has never involved a government entity of prominence,” the spokesperson said.

    “We again want to emphasise that this is not extortion, it was never one to begin with, not a threat, not a ransom, and not financially motivated. Nothing will happen. We are way past this situation in our business operations and we confidently believe we have been successful due to seeing a recent influx of success in our operations.”

    Although the group said it exploited a new zero-day flaw in Oracle PeopleSoft to gain unauthorized access and siphon the data, it’s now assessed that ShinyHunters employed a URL-encoding trick to bypass web application firewall (WAF) rules designed to mitigate CVE-2026-35273.

    24YearOld Amsterdam Arrest Dutch investigation man police ShinyHunters
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials

    Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign

    RAF Fairford: Labour’s deputy leader says ‘I trust our police’ after Trump questions decision to bail suspects – latest updates | UK news

    Apple patches CoreGraphics zero-day flaw exploited in attacks

    Apple Patches Meta-Reported Zero-Day Linked to ‘Extremely Sophisticated Attack’ 

    Bitget resumes Bitcoin withdrawals after $387.5 million crypto heist

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    What is the triple lock and why are people talking about it?

    September 29, 2026

    Burnham to signal willingness to look at scrapping pension triple lock to fund social care | Labour conference 2026

    September 29, 2026

    How to Beat Surveillance Pricing Before It Bleeds You Dry

    September 29, 2026

    Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials

    September 29, 2026
    Latest Posts

    Perez Hilton death hoax spreads online after hospitalization

    August 7, 2026

    Selling Trust From Orbit

    August 7, 2026

    Ondo Finance hit by corporate control fight as founder’s mother seeks to oust CEO

    August 7, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    What is the triple lock and why are people talking about it?

    September 29, 2026

    Burnham to signal willingness to look at scrapping pension triple lock to fund social care | Labour conference 2026

    September 29, 2026

    How to Beat Surveillance Pricing Before It Bleeds You Dry

    September 29, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.