• News/
  • https://www.bleepingcomputer.com/news/security/belgium-probes-chinese-hack-behind-intelligence-service-breach/

Belgium probes if Chinese hackers breached its intelligence service

BleepingComputer
·
Sergiu Gatlan
·
Published Feb 27, 2025
·
Updated

​The Belgian federal prosecutor's office is investigating whether Chinese hackers were behind a breach of the country's State Security Service (VSSE). Chinese state-backed attackers reportedly gained access to VSSE's external email server between 2021 and May 2023, siphoning around 10% of all emails sent and received by the agency's staff. The compromised server was only used for exchanging emails with public prosecutors, government ministries, law enforcement, and other public Belgian administration bodies, as Belgian news outlet Le Soir reported on Wednesday. According to The Brussels Times, the hacked server also routed internal HR exchanges among Belgian intelligence personnel, raising concerns about the potential exposure of sensitive personal data including identity documents and CVs belonging to nearly half of the VSSE's current staff and past applicants. Belgian local media first reported an attack on the VSSE in 2023, coinciding with Barracuda's vulnerability disclosure. Following this, the Belgian intelligence service stopped using Barracuda as a cybersecurity provider and advised affected staff to renew identification documents to mitigate the risk of identity fraud. However, there is currently no evidence of stolen data appearing on the dark web or ransom demands, and anonymous sources indicate that VSSE's security team monitors dark web hacking forums and marketplaces for leaked information. "The timing of the attack was especially unfortunate, as we were in the...

Read full article

Affected Software

2 affected components
Barracuda Email Security Gateway
Belgian State Security Service email server

Frequently Asked Questions

1

What is the focus of the investigation reported in the article?

The investigation focuses on whether Chinese hackers were responsible for breaching Belgium's State Security Service.

2

What type of security breach is being scrutinized in Belgium?

The breach involves unauthorized access to the external email system of the Belgian State Security Service.

3

Which country's intelligence service was reportedly compromised?

The intelligence service compromised is that of Belgium.

4

What type of cyber threat is indicated in the article?

The article indicates a threat from state-backed cyber actors, specifically from China.

5

What specific email security products are mentioned as being affected?

The affected products include the Barracuda Email Security Gateway and the Belgian State Security Service's email server.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203