MIT TRACE

MIT CTL Logo
Back to Main Dashboard

Ransomware attack disables OLV Pulhof school servers and forces network rebuild

OLV Pulhof in Antwerp disclosed that attackers had encrypted and disabled its school servers in early January 2026 and demanded a ransom. The school refused payment, involved police and cybersecurity specialists, and established a new secure network environment while lessons continued. Attackers later attempted to extort parents directly and claimed to possess sensitive student and staff data. The exact intrusion date was not publicly specified, so the reported 30 January disclosure date is used. The attackers presented themselves as LockBit, but the school's external specialists assessed that they were likely impersonators rather than the genuine LockBit operation.

66

Estimated severity

66 / 100

86

Source reliability

86 / 100

Approximate Date

30/01/2026

Targeted Company

OLV PULHOF

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

Belgium

BEL

Other Affected Countries

No other affected countries reported

Target country

Belgium

Affected countries

Belgium

Impacted regions

No information

Operational Impact

Duration

No information

Financial impact (USD M)

No information

Impact types

Service unavailabilityOperational disruption

Affected sectors

Education & Research

Affected departments

Information Technology

Attack Profile

Attack types

RansomwareExtortion

Attributed threat actors

No information

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.