Skip to Content

Major data breaches at telecom providers: what exactly is going on

February 16, 2026 in
Major data breaches at telecom providers: what exactly is going on
Centric Belgium, Kian Van Landeghem


In recent weeks, it has become clear once again how vulnerable large organizations can be to cybercrime. Both in the Netherlands and Belgium, extensive data breaches have come to light, where data from millions of telecom customers ended up in the hands of criminals. The incidents not only show the scale of modern cyberattacks but especially how far-reaching the consequences can be for the affected customers.

Odido: data of more than 6 million accounts compromised

A serious breach was discovered at telecom provider Odido last weekend. Criminals gained access to a customer contact system in which data from over 6.2 million accounts was stored. Customers of the subsidiary brand Ben were also affected. The systems of Simpel remained unscathed.

According to Odido, this involves classic sensitive personal data, such as:

  • name, address, and place of residence
  • phone number and email address
  • customer number and account number
  • date of birth
  • numbers and expiration date of identity documents (passport or driver's license)

There are no passwords, call data, or invoices leaked. But that does not make the situation any less serious.

Why this type of data is so valuable to criminals

With basic information such as your name, address, date of birth, and customer number, fraudsters can make their phishing messages – or even phone scam attempts – much more credible. Think of:

“Your last invoice is still outstanding.”

“Your ID is about to expire.”

“Your customer number is no longer correct, would you like to confirm this?”

Such messages are harder to distinguish from real ones when an attacker has various pieces of correct information.

Odido emphasizes that the stolen data has not yet been published online, but does not rule out that this could still happen. The regulator, the Data Protection Authority, is monitoring the incident and expects the company to inform its customers in a timely and complete manner.


Belgian data also on the street after previous hacks

Belgium is also not spared from data leaks. In hacker channels and Telegram groups, nearly one and a half million Belgian customer data appeared last week. This data was previously obtained during major attacks, but is now circulating widely — a dangerous phase that security experts call the “long tail” of a hack.

Orange Belgium: 300,000 customer files published

In the cyber attack on Orange Belgium in 2025, access was gained to about 850,000 customer accounts. Currently, about 300,000 records, including:

  • identity and contact details
  • SIM card and PUK codes
  • addresses
  • details about the mobile subscription

Fox&Fish, a security company that analyzed the datasets, confirms the authenticity of the data.

Bailiff leaked: sensitive data

The third dataset, obtained from Etude Bordet, a bailiff from Liège, is perhaps the most sensitive. The background of the files — bankruptcies, solvency, and debt investigations — means that the data is particularly privacy-sensitive.

In the more than 1 million records are:

  • full name and address details
  • national register numbers
  • IBAN numbers
  • outstanding debts and amounts
  • details from solvency investigations

Such information can be misused for identity theft, financial fraud, and advanced social engineering.



An increasing trend: more data breaches, more risk

Although data breaches occur almost weekly, the concentration of Belgian data that emerged this week is remarkably high. Belgium is small, yet data from three major hacks are now circulating simultaneously.

According to security experts, ransomware attacks and data exfiltration are so widespread that it is only a matter of time before data reappears on the dark web or in Telegram channels — especially when organizations do not pay ransom.

Moreover, data from different hacks are often combined into 'combo lists', which allows criminals to build extensive profiles. This creates a digital puzzle where each new leak adds another piece. With enough pieces, it becomes easier to commit convincing fraud, often without the victim realizing it.



What can you do as a customer?

Although you as an individual cannot prevent a company from being hacked, you can take measures to protect yourself from abuse:

1. Be extra alert to unexpected messages

Watch out for suspicious emails, texts, WhatsApp messages, or phone calls.

Be especially cautious of messages that:

  • create urgency (“pay now”, “your account will be blocked”)
  • ask for personal information
  • contain links that lead you to a payment page

2. Change your passwords if necessary

In the case of Odido, this is not necessary, as no passwords have been leaked. But when in doubt, it is always wise to strengthen important accounts with:

  • a unique password
  • two-step verification

3. Keep a close eye on your bank account and online accounts

Unexpected transactions, logins, or changes may indicate abuse.

4. Consider identity alerts or monitoring

In some countries, there are services that alert you when your data appears online. This can help with early detection of identity theft.

Conclusion: data breaches are the new reality

De recente incidenten bij Odido, Orange Belgium, Carrefour Mobile en Etude Bordet benadrukken hoe kwetsbaar onze digitale wereld blijft. Niet alleen grote bedrijven, maar ook particulieren dragen de gevolgen van die kwetsbaarheid.

It is therefore more important than ever to:

  • be alert
  • keep your digital hygiene in order
  • to critically deal with any unexpected message

Companies must continue to invest in cybersecurity, transparent communication, and rapid response mechanisms — because leaked data does not disappear, but circulates for years in the digital underworld.


Do you want to be sure that your organization is indeed protected?

The recent data breaches once again show how quickly and deeply a cyberattack can cut. Today, cybersecurity is no longer just an IT issue, but a pure business priority.

At Centric Business IT Solutions (BITS) we help SMEs and medium-sized organizations to proactively manage risks, from monitoring and detection to incident response and identity protection.

👉 Our cybersecurity experts support you with:

  • 24/7 Security Monitoring & Response
  • Vulnerability scans and risk audits
  • Endpoint & identity security (Microsoft 365, Zero Trust, MFA)
  • Phishing tests & security awareness for your employees
  • Complete Managed Security Services for SMEs
  • proactive follow-up, reporting, and advice


I want to protect myself