A significant proportion of websites that use the .nl extension have serious security weaknesses. In the majority of cases, the cause is the continued use of old software. The vulnerabilities make it possible, for example, for hackers to break in to sites, take them over and even steal data. Webshops run the risk of losing payment information or client data. Those are the central conclusions of a passive vulnerability scan carried out for SIDN, the company behind .nl, by Radically Open Security.
‘Passive scanning’ tool freely available to everyone
Between July and October 2015, Radically Open Security investigated 1,380 websites on the basis of public sources. The provisional results were presented at last week's Tek Tok Late Night, which SIDN and Tek Tok organised as part of the annual cyber security campaign Alert Online. The passive scanning tool developed by Radically Open Security for the scan is freely available for use via the company's website.
Tek Tok Late Night for SMEs
The scan results are further evidence that digital security on many business websites is not all that it might be – despite the increasing significance of having an on-line presence and providing services on line. At Tek Tok Late Night: Cyber Secure SMEs, the practicalities of cyber security for entrepreneurs were explored in interviews, debates, case studies and experiments. Business people were able to get personal advice from cyber security experts from Radically Open Security, Internet.nl, SIDN, MKB cyberadvies and HackerOne about how to protect their websites.

Melanie van Radically Open Security (ROS)
About Alert Online
The annual cyber security awareness campaign Alert Online is a joint initiative by the Dutch government, business community and scientific community. As well as providing information about on-line security, the campaign is intended to encourage people and organisations to behave in a more security-conscious way. This year's Alert Online ran from 26 October to 6 November and was supported by more than 120 governmental and commercial partners. Full details of the activities and partners are available from the Dutch-language campaign website www.alertonline.nl.
Radically Open Security heeft tussen juli en oktober 2015 op basis van openbare bronnen 1380 .nl-websites onderzocht. De conceptresultaten zijn vorige week gepresenteerd tijdens de Tek Tok Late Night die SIDN in samenwerking met TekTok heeft georganiseerd in het kader van de jaarlijkse cyber security campagne Alert Online. De passive scanning tool die Radically Open Security heeft ontwikkeld om deze scan uit te voeren is vrij beschikbaar op hun website.
Passive scan research pdf (1.4 MB)