Floris Kloeg, IT specialist at Ter Laak Orchios, received a message from a colleague at a quarter past six in the morning on Wednesday 8 April 2026. He had received an email from a member of staff at Riza Growers, the growers' collective of which Ter Laak Orchios is a part. The sender's name, email address and layout were all fine. Even so, Floris's colleague thought: something isn't quite right. "He never has any contact with that member of staff. The content of the email was also vague," says Floris. And indeed: it wasn't right. It was a case of business email compromise: an attack in which criminals use a hacked account to try to deceive others. There was no targeted cyberattack on the horticultural sector as a whole, but the entire sector could easily have been affected. This results in economic and reputational damage for growers, buyers and the entire sector. Floris shares five tips on cybersecurity.
Tip 1: Set up two-factor verification
Two-factor authentication (2FA) is mandatory at Ter Laak Orchios. With 2FA, you can verify a user's identity using multiple independent forms of proof. For example, a password combined with a passkey, code, token, fingerprint or facial scan. Floris: "Think of it as an extra barrier, in case cybercriminals have breached the first one." It is also important to set out what steps need to be taken if they do manage to breach all the barriers. And to establish clear agreements with the IT partner and other suppliers who have access to the systems.
Tip 2: Train your staff
Ter Laak Orchios trains staff in cyber security awareness. Floris: "We regularly send fake phishing emails. The idea is that colleagues should forward emails to me. I also give internal presentations. Additionally, we show short videos about cybersecurity on the digital screens in the canteen. I am very pleased that my colleagues are taking this issue so seriously."
.avif)
.jpg)

.jpeg)
.jpg)
-p-500.jpg)
.png)

%20(Aangepast).jpg)

