Global
International security developments, NATO, and geopolitical threats.
Drone attack sparks major fire at Libya's largest oil refinery
A drone attack ignited a major fire at Libya's Zawiya refinery, the country's largest, on 11 August, underscoring the fragility of Mediterranean energy infrastructure amid Libya's fractured political-military landscape. Zawiya is a critical node in Libya's oil export chain and a source of refined products reaching European markets; disruption there can ripple through regional fuel supply chains and insurance markets covering North African assets. For organisations with personnel, contractors, or supply relationships tied to Libyan energy infrastructure, the incident is a reminder that non-state actors and rival factions retain both the intent and the drone capability to strike hardened industrial sites, not just battlefield targets. Corporate security teams should treat Libya as a persistently elevated-risk environment: review duty-of-care obligations for staff transiting or based near Tripoli, Zawiya, or the western coastal corridor, validate business continuity plans for supply contracts dependent on Libyan refined product, and increase monitoring of open-source and classified reporting on militia activity around energy assets. Insurers and traders should also expect volatility in regional freight and war-risk premiums following the strike.
Cyberattacks on US water systems widen, Iran suspected
Dark Reading reports that a wave of cyberattacks against US water utilities has widened, with Iranian state-linked actors suspected of targeting operational technology (OT) that controls treatment and distribution systems. While the immediate incidents are US-based, the pattern is directly relevant to European and Dutch critical infrastructure operators: Iranian and Iran-aligned threat actors have a documented history of probing Western OT environments opportunistically once tooling and access are proven effective in one campaign, and water, energy and other utilities across the EU share similar legacy industrial control system architectures and remote-access weaknesses. Organisations operating or dependent on utility infrastructure should treat this as an early-warning indicator rather than a distant problem. Practical steps include auditing remote access into OT/ICS environments, enforcing network segmentation between IT and OT, verifying that default or vendor credentials on PLCs and HMIs have been changed, and ensuring incident response plans explicitly cover physical safety consequences of OT compromise, not just data loss. Boards should also request assurance that critical suppliers in the water and energy sectors have equivalent controls in place.
Houthis launch ballistic missile strikes on Yemen's al-Makha and Marib
Houthi forces launched ballistic missile strikes on al-Makha and Marib in Yemen on 11 August, signalling that the group retains both intent and capability to conduct long-range strikes well beyond the Red Sea shipping lanes that have dominated recent risk assessments. Al-Makha sits on the strategic Bab el-Mandeb approach, while Marib is a key government-held oil and gas centre; strikes on either location have implications for regional energy output and for the broader risk calculus around Yemen's fragile ceasefire arrangements. For organisations with maritime, aviation, energy or personnel exposure in the Gulf of Aden, Red Sea and southern Arabian Peninsula, this is a reminder that the conflict remains active and unpredictable rather than frozen. Practical measures include maintaining current maritime security advisories for vessels transiting the Bab el-Mandeb and Gulf of Aden, reassessing insurance and routing decisions for any Yemen-adjacent shipping, and ensuring travel risk assessments for regional business trips reflect the renewed missile activity rather than outdated ceasefire assumptions. Energy traders should also watch for knock-on effects on regional oil infrastructure and pricing.
European Union
EU security directives, Europol threat assessments, and policy developments.
DNA traces found on explosive drone near Ukrainian aircraft in Germany
Dutch broadcaster NOS reports that German investigators have recovered DNA traces on an explosive-laden drone found near a Ukrainian aircraft in Germany, deepening a sabotage investigation that points to deliberate targeting of Ukraine-linked aviation assets on European soil. The case fits a broader pattern of hybrid and sabotage activity attributed to Russia-linked networks across the EU over the past two years, including attacks on logistics, defence-industry and transport infrastructure. For organisations operating aircraft, logistics hubs, or facilities connected to Ukraine-related supply chains or defence contracts within the EU, this incident should prompt an immediate review of perimeter and airspace security, particularly counter-drone detection at airfields, depots and event venues. Practical steps include commissioning counter-UAS threat assessments for exposed sites, tightening access control and CCTV coverage around parked aircraft and vehicles, and briefing security staff to treat unexplained small drones near sensitive assets as a credible threat rather than a nuisance. Organisations should also coordinate with national authorities on reporting protocols, given the ongoing criminal investigation and the likelihood of further related incidents.
Turkish parliament approves amnesty for PKK members
Turkey's parliament has approved an amnesty for PKK members, a significant step in the peace process aimed at ending a four-decade conflict that has shaped security dynamics across Turkey, Iraq, Syria and the Kurdish diaspora in Europe. While framed domestically as a de-escalation measure, the amnesty carries second-order implications for European security planning: it may affect the risk profile of Kurdish diaspora communities and associated political activity in EU member states, alter cross-border movement patterns, and influence Turkey's posture on counter-terrorism cooperation with European partners. Organisations operating in Turkey, or with interests touching Turkish-Kurdish relations, energy transit routes through Turkey, or diaspora-linked events in Europe, should monitor implementation closely rather than assume the process is complete or irreversible — Turkish peace initiatives have stalled before. Practical steps include updating country risk assessments for Turkey and northern Iraq to reflect the shifting political landscape, reviewing event security plans for gatherings linked to Kurdish political organisations in EU cities, and maintaining contact with local intelligence sources to detect early signs of the process breaking down.
The Netherlands
AIVD, NCTV, and domestic security developments relevant to Dutch operations.
Police seize 586kg of drugs from The Hague home, arrest nine
Dutch police seized 586 kilograms of drugs from a residential property in The Hague and arrested nine men, the latest in a string of large-scale narcotics discoveries that illustrate how deeply organised crime networks have embedded themselves in ordinary residential and logistics settings across the Netherlands. The find is a reminder that criminal storage and distribution infrastructure is not confined to industrial estates or the port of Rotterdam; quiet residential neighbourhoods, rented properties and small business premises are routinely used as staging points. For corporate security and compliance teams, the case underscores the importance of robust know-your-tenant and know-your-counterparty checks when leasing, subletting or partnering with third parties on Dutch property, particularly in sectors like logistics, self-storage and short-term rental. Organisations should also treat unusual patterns at leased or managed properties — irregular visitor traffic, reinforced doors, unexplained cash payments — as potential indicators warranting escalation. Given the scale of the Dutch narcotics trade, businesses adjacent to logistics, ports, or property management should maintain close liaison with local police and integrate organised-crime risk indicators into routine due diligence.
'Taghi of Curaçao' stands trial in EBI as prosecutors cite decrypted communications
The Dutch trial of the man dubbed the 'Taghi of Curaçao', held under maximum-security conditions at the EBI, centres in part on prosecutors' use of decrypted communications as key evidence — the latest high-profile Dutch case built on intercepted encrypted messaging following major law-enforcement operations against criminal communication networks. The case reinforces a pattern Mission Support has tracked closely: Dutch and European organised crime figures have relied heavily on encrypted devices and custom communication platforms, and law enforcement's growing ability to penetrate these networks is reshaping how criminal organisations operate, including increased use of counter-surveillance and compartmentalised communication. For corporates, executives and high-net-worth individuals operating in or connected to the Netherlands, the case is a reminder that sophisticated adversaries — whether criminal, corporate or state-linked — continue to invest heavily in both offensive interception and defensive counter-surveillance capability. Organisations handling sensitive communications, negotiations or litigation exposure in the Netherlands should periodically commission technical surveillance countermeasures sweeps of boardrooms and executive spaces and review the security posture of the communication tools used for sensitive discussions.
Over 520 discrimination reports filed during Amsterdam WorldPride
More than 520 discrimination reports were filed during Amsterdam WorldPride, highlighting the scale of public-order and personal-safety risk that accompanies major international events held in the Netherlands. While the majority of such reports relate to verbal incidents rather than physical violence, the volume signals a heightened-tension environment around large-scale LGBTQ+ events that venues, hospitality operators and event organisers should plan for explicitly rather than treat as background risk. For hotels, venues and event organisers hosting attendees, VIPs or staff connected to WorldPride and similar events, the figures argue for visible, well-briefed security presence, clear incident-reporting channels for guests and staff, and close coordination with Amsterdam police on real-time intelligence during the event window. Organisations with executives, delegations or brand presence at Pride-related functions should also ensure personal security planning accounts for elevated harassment risk, not just crowd and access control. Looking ahead, hospitality and event-security teams in Amsterdam should treat this year's figures as a baseline for scaling protective measures at comparable future events rather than a one-off statistic.
Compiled from credible pro-EU, pro-NATO news sources. Mission Support does not publish operational specifics or unverified claims.
Ready to speak with a specialist?
We respond within one business day. Initial conversations are confidential and without obligation.
Request a Consultation