Hackmanac

@hackmanac.com

We track verified, real-world cyber attacks to help you develop effective Cybersecurity strategies. Try HackRisk.io, your Strategic Threat Intelligence platform. ๐ŸŒ hackmanac.com ๐ŸŒ hackrisk.io

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ช๐Ÿ‡ฌEgypt - ๐—”๐——๐—š ๐—›๐—ฒ๐—ฎ๐—น๐˜๐—ต๐—ฐ๐—ฎ๐—ฟ๐—ฒ Orova claims to have breached ADG Healthcare and exfiltrated 30.9 GB of data. Threat actor: Orova Sector: Healthcare Data exposure (claimed): 30.9 GB of data Data type: Not specified Observed: Aug 4, 2026 Status: Pending verification ESIXยฉ: 5.78

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ฎ๐Ÿ‡ฉIndonesia - ๐—ฃ๐—จ๐—ฆ๐—›๐—œ๐——๐—ฅ๐—ข๐—ฆ๐—”๐—Ÿ INC Ransom claims to have breached PUSHIDROSAL (Pusat Hidrografi dan Oseanografi TNI AL). At the time of writing, the ransomware group has not published any samples.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡จ๐Ÿ‡ดColombia - ๐—–๐—ผ๐—น๐—ผ๐—บ๐—ฏ๐—ถ๐—ฎโ€™๐˜€ ๐— ๐—ถ๐—ป๐—ถ๐˜€๐˜๐—ฟ๐˜† ๐—ผ๐—ณ ๐—๐˜‚๐˜€๐˜๐—ถ๐—ฐ๐—ฒ ๐—ฎ๐—ป๐—ฑ ๐—Ÿ๐—ฎ๐˜„ Colombiaโ€™s Ministry of Justice and Law disclosed a ransomware attack affecting its technological infrastructure.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ฑ๐Ÿ‡ฎLiechtenstein - ๐—Ÿ๐—ถ๐—ฒ๐—ฐ๐—ต๐˜๐—ฒ๐—ป๐˜€๐˜๐—ฒ๐—ถ๐—ป ๐—ฅ๐—ฒ๐—ด๐—ถ๐˜€๐˜๐—ฒ๐—ฟ ๐—ผ๐—ณ ๐—•๐—ฒ๐—ป๐—ฒ๐—ณ๐—ถ๐—ฐ๐—ถ๐—ฎ๐—น ๐—ข๐˜„๐—ป๐—ฒ๐—ฟ๐˜€ The Government of Liechtenstein disclosed that hackers accessed the Register of Beneficial Owners and copied information relating to approximately 31,000 legal entities.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡น๐Ÿ‡ทTรผrkiye - ๐—ง๐˜‚๐—ฟ๐—ธ๐—ถ๐˜€๐—ต ๐—”๐—ถ๐—ฟ๐—น๐—ถ๐—ป๐—ฒ๐˜€ CRPx0 hacking group claims to have breached Turkish Airlines and stolen sensitive recruitment and personnel assessment data.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡บ๐Ÿ‡ธUS - ๐—ค๐˜‚๐—ฎ๐—ป๐˜๐—ถ๐—ป๐˜‚๐˜‚๐—บ INC Ransom hacking group claims to have breached Quantinuum. The published samples appear to include technical, engineering, and project files.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ซ๐Ÿ‡ทFrance - ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ฒ๐—น ShinyHunters hacking claims to have breached Questel and stolen 147 GB of data, comprising 21 million Salesforce records containing personally identifiable information.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡บ๐Ÿ‡ธUS - ๐—Ÿ๐˜‚๐—บ๐—ฒ๐—ป๐—ถ๐˜€ ShinyHunters hacking group claims to have breached Lumenis and stolen 176 GB of data, affecting 1.1 million records.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡จ๐Ÿ‡ญSwitzerland - ๐—”๐—น๐—ฐ๐—ผ๐—ป ShinyHunters hacking group claims to have breached Alcon and stolen 25 million Salesforce records containing personally identifiable information.

Bild

๐Ÿ”ถ#RiskFriday ๐Ÿ๐Ÿ-๐Ÿ๐Ÿ–/๐ŸŽ๐Ÿ•/๐Ÿ๐ŸŽ๐Ÿ๐Ÿ”๐Ÿ”ถ Hereโ€™s this weekโ€™s snapshot from hackrisk.io based on our proprietary ๐„๐’๐ˆ๐—ยฉ (๐ธ๐‘ ๐‘ก๐‘–๐‘š๐‘Ž๐‘ก๐‘’๐‘‘ ๐‘†๐‘’๐‘ฃ๐‘’๐‘Ÿ๐‘–๐‘ก๐‘ฆ ๐ผ๐‘›๐‘‘๐‘’๐‘ฅ) metric that measures operational, financial (direct & indirect), technical and reputational impact of cyber attacks. 1/7

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ช๐Ÿ‡ธSpain - ๐—ง๐—ต๐—ฒ ๐——๐—ฐ๐—ผ๐—ผ๐—ฝ Qilin hacking group claims to have breached The Dcoop and exfiltrated 157 GB of data. Threat actor: Qilin Sector: Manufacturing Data exposure (claimed): 157 GB of data Data type: Not specified Observed: Jul 31, 2026 Status: Pending verification ESIXยฉ: 5.60

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ฎ๐Ÿ‡ฉIndonesia - ๐—ฃ๐—ง ๐—ฃ๐—ฒ๐—ฟ๐˜๐—ฎ๐—บ๐—ถ๐—ป๐—ฎ The Gentlemen ransomware group claims to have stolen more than 1.2 TB of data from PT Pertamina. Threat actor: The Gentlemen Sector: Energy / Utilities Data exposure (claimed): More than 1.2 TB of data

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ธ๐Ÿ‡ฆSaudi Arabia - ๐—ฆ๐—ฎ๐—น๐—ฒ๐—บ ๐—ฆ๐—ฎ๐—น๐—ฒ๐—ต ๐—•๐—ฎ๐—ฏ๐—ด๐—ถ The Gentlemen hacking group claims to have breached Salem Saleh Babgi. Threat actor: The Gentlemen Sector: Wholesale / Retail Data exposure (claimed): Not specified Data type: Not specified Observed: Jul 31, 2026

Bild

โ€ผ๏ธ๐Ÿ‡ฏ๐Ÿ‡ตJapan warns of phishing emails impersonating the National Police Agency - DO NOT CLICK The National Police Agency (NPA) of Japan warned that threat actors are sending phishing emails impersonating the agency to trick recipients into visiting a fraudulent verification page.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ท๐Ÿ‡ดRomania - ๐—ก๐—ฎ๐˜๐—ถ๐—ผ๐—ป๐—ฎ๐—น ๐—”๐—ฑ๐—บ๐—ถ๐—ป๐—ถ๐˜€๐˜๐—ฟ๐—ฎ๐˜๐—ถ๐—ผ๐—ป ๐—ผ๐—ณ ๐—ฃ๐—ฒ๐—ป๐—ถ๐˜๐—ฒ๐—ป๐˜๐—ถ๐—ฎ๐—ฟ๐—ถ๐—ฒ๐˜€ Romaniaโ€™s National Administration of Penitentiaries was hit by ransomware, compromising multiple workstations and servers.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ช๐Ÿ‡ธSpain - ๐—ฆ๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐˜๐—ฒ๐—น๐—ฐ๐—ผ (๐—œ๐—Ÿ๐—จ๐—ก๐—œ๐—ข๐—ก) Qilin hacking group claims to have breached ILUNION (which acquired Servitelco). No details regarding the alleged data exposure have been disclosed.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ฎ๐Ÿ‡นItaly - ๐—ง๐—ฎ๐—ธ๐—ถ๐˜€ DeadLock hacking group claims to have breached Takis and uploaded HR, customer, supplier, financial, contractual, project, and technical documents.

Bild

โ€ผ๏ธ๐Ÿ‡ฏ๐Ÿ‡ตX users in Japan targeted by fake support phishing campaign X Corp. Japan warned that scammers are impersonating X Support via DMs, directing users to external apps to steal credentials or money using fake branding, emails, and employee profiles. X Help Center:

Bild

Tomorrow, ๐‰๐ฎ๐ฅ๐ฒ ๐Ÿ๐Ÿ—, ๐Ÿ๐ŸŽ๐Ÿ๐Ÿ”, ๐š๐ญ ๐Ÿ๐Ÿ:๐Ÿ‘๐ŸŽ ๐๐Œ ๐‚๐„๐“ / ๐Ÿ:๐Ÿ‘๐ŸŽ ๐๐Œ ๐†๐’๐“, Hackmanac ๐‚๐„๐Ž & ๐…๐จ๐ฎ๐ง๐๐ž๐ซ @sofiaszm.bsky.social will be hosting a webinar for the ๐ˆ๐ญ๐š๐ฅ๐ข๐š๐ง ๐ˆ๐ง๐๐ฎ๐ฌ๐ญ๐ซ๐ฒ & ๐‚๐จ๐ฆ๐ฆ๐ž๐ซ๐œ๐ž ๐Ž๐Ÿ๐Ÿ๐ข๐œ๐ž ๐ข๐ง ๐ญ๐ก๐ž ๐”๐€๐„: "๐˜พ๐™ฎ๐™—๐™š๐™ง ๐™๐™ž๐™จ๐™  ๐™ž๐™จ ๐™– ๐˜ฝ๐™ช๐™จ๐™ž๐™ฃ๐™š๐™จ๐™จ ๐™๐™ž๐™จ๐™ : ๐™ฌ๐™๐™–๐™ฉ ๐™ž๐™จ ๐™˜๐™๐™–๐™ฃ๐™œ๐™ž๐™ฃ๐™œ ๐™–๐™ฃ๐™™ ๐™ฌ๐™๐™ฎ ๐™ž๐™ฉ ๐™˜๐™ค๐™ฃ๐™˜๐™š๐™ง๐™ฃ๐™จ ๐™Ž๐™ˆ๐™€๐™จ ๐™ฉ๐™ค๐™ค". 1/3

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ฏ๐Ÿ‡ตJapan - ๐—ข๐—–๐—ฆ ๐—–๐—ผ., ๐—Ÿ๐˜๐—ฑ. OCS Co., Ltd., an ANA Group company, disclosed that an unknown external attacker gained unauthorised access to servers supporting the OCS FAMILY LINK SERVICE.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡บ๐Ÿ‡ธUSA - ๐—”๐—ณ๐—ณ๐—ถ๐—ป๐—ถ๐—ฎ ๐—›๐—ฒ๐—ฎ๐—น๐˜๐—ต๐—ฐ๐—ฎ๐—ฟ๐—ฒ Termite ransomware group claims to have breached Affinia. The threat actor has published sample including financial records, patient medical records, clinical correspondence, diagnostic reports, and identity documents.

Bild

๐ŸšจCyber Alert Updateโ€ผ๏ธ ๐Ÿ‡ฌ๐Ÿ‡งUK - ๐—˜๐—ฟ๐—ป๐˜€๐˜ & ๐—ฌ๐—ผ๐˜‚๐—ป๐—ด ShinyHunters claims responsibility for the cyberattack on Ernst & Young. EY confirmed that attackers accessed a third-party support platform from March 28 to April 12, potentially exposing clientsโ€™ personal, financial, and tax data.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ณ๐Ÿ‡ฌNigeria - ๐—ญ๐—ฒ๐—ป๐—ถ๐˜๐—ต ๐—•๐—ฎ๐—ป๐—ธ ๐—ฃ๐—Ÿ๐—– Exfilsquad hacking group claims to have breached Zenith Bank, allegedly stealing around 90 million records totaling 874 GB. The data reportedly includes PII, account and financial information, government identifiers, customer contacts, etc.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ช๐Ÿ‡ธSpain - ๐— ๐—ถ๐—ป๐—ถ๐˜€๐˜๐—ฒ๐—ฟ๐—ถ๐—ผ ๐—ฑ๐—ฒ ๐—”๐˜€๐˜‚๐—ป๐˜๐—ผ๐˜€ ๐—˜๐˜…๐˜๐—ฒ๐—ฟ๐—ถ๐—ผ๐—ฟ๐—ฒ๐˜€, ๐—จ๐—ป๐—ถ๐—ผฬ๐—ป ๐—˜๐˜‚๐—ฟ๐—ผ๐—ฝ๐—ฒ๐—ฎ ๐˜† ๐—–๐—ผ๐—ผ๐—ฝ๐—ฒ๐—ฟ๐—ฎ๐—ฐ๐—ถ๐—ผฬ๐—ป Threat actor GordonFreeman claims to have breached Spainโ€™s Ministry of Foreign Affairs, European Union and Cooperation, allegedly exploiting an IDOR vulnerability to access and exfiltrate 1,953,721 records.

Bild

๐ŸšจCyber Alert Updateโ€ผ๏ธ ๐Ÿ‡ญ๐Ÿ‡ทCroatia - ๐—ฃ๐—น๐—ถ๐˜๐˜ƒ๐—ถ๐—ฐ๐—ฒ ๐—Ÿ๐—ฎ๐—ธ๐—ฒ๐˜€ ๐—ก๐—ฎ๐˜๐—ถ๐—ผ๐—ป๐—ฎ๐—น ๐—ฃ๐—ฎ๐—ฟ๐—ธ Qilin ransomware group claims responsibility for the cyberattack at Plitvice Lakes National Park.

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ช๐Ÿ‡ธSpain - ๐—”๐—ฐ๐—ฒ๐—ป๐˜€ Global Secret Group claims to have breached Acens and exfiltrated 129 GB of data. Threat actor: Global Secret Group Sector: ICT Data exposure (claimed): 129 GB Data type: Not specified Observed: Jul 26, 2026 Status: Pending verification ESIXยฉ: 5.58

Bild

๐ŸšจCyber Alert โ€ผ๏ธ ๐Ÿ‡ฆ๐Ÿ‡ทArgentina - ๐—˜๐—ท๐—ฒฬ๐—ฟ๐—ฐ๐—ถ๐˜๐—ผ ๐—”๐—ฟ๐—ด๐—ฒ๐—ป๐˜๐—ถ๐—ป๐—ผ Qilin ransomware group claims to have breached Ejรฉrcito Argentino. Threat actor: Qilin Sector: Gov / Mil / LE Data exposure (claimed): Not specified Data type: Not specified Observed: Jul 24, 2026 Status: Pending verification ESIXยฉ: 6.17

Bild

๐Ÿ”ถ#RiskFriday ๐Ÿ๐Ÿ“-๐Ÿ๐Ÿ/๐ŸŽ๐Ÿ•/๐Ÿ๐ŸŽ๐Ÿ๐Ÿ”๐Ÿ”ถ Hereโ€™s this weekโ€™s snapshot from hackrisk.io based on our proprietary ๐„๐’๐ˆ๐—ยฉ (๐ธ๐‘ ๐‘ก๐‘–๐‘š๐‘Ž๐‘ก๐‘’๐‘‘ ๐‘†๐‘’๐‘ฃ๐‘’๐‘Ÿ๐‘–๐‘ก๐‘ฆ ๐ผ๐‘›๐‘‘๐‘’๐‘ฅ) metric that measures operational, financial (direct & indirect), technical and reputational impact of cyber attacks. 1/8

Bild