🌐 hackmanac.com
🌐 hackrisk.io
🧠 𝗘𝘅𝗽𝗹𝗼𝗿𝗲:
hackrisk.io
Free access to dashboards, timely alerts, attack trends, threat actor insights, affected regions, and severity metrics powered by our proprietary ESIX© (Estimated Severity Index).
1/5
🇪🇸Spain - Centro de Ciencia y Tecnología Forestal de Cataluña (CTFC)
Devman hacking group claims to have breached Centro de Ciencia y Tecnología Forestal de Cataluña.
Allegedly, the attackers exfiltrated 30 GB of data. Ransom demand: $248,000.
Ransom deadline: Nov 16, 2025.
🇪🇸Spain - Centro de Ciencia y Tecnología Forestal de Cataluña (CTFC)
Devman hacking group claims to have breached Centro de Ciencia y Tecnología Forestal de Cataluña.
Allegedly, the attackers exfiltrated 30 GB of data. Ransom demand: $248,000.
Ransom deadline: Nov 16, 2025.
🇮🇹Italy - Fulgar S.p.A.
RansomHouse hacking group claims to have breached Fulgar S.p.A.
Samples have been provided.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 12, 2025
Status: Pending verification
🇮🇹Italy - Fulgar S.p.A.
RansomHouse hacking group claims to have breached Fulgar S.p.A.
Samples have been provided.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 12, 2025
Status: Pending verification
🇯🇵Japan - Asahi Kasei Microdevices (subsidiary of Asahi Kasei Corporation)
Crypto24 hacking group claims to have breached Asahi Kasei Microdevices (AKM), a subsidiary of the Japanese group Asahi Kasei Corporation.
Ransom deadline: 20th November 2025
🇯🇵Japan - Asahi Kasei Microdevices (subsidiary of Asahi Kasei Corporation)
Crypto24 hacking group claims to have breached Asahi Kasei Microdevices (AKM), a subsidiary of the Japanese group Asahi Kasei Corporation.
Ransom deadline: 20th November 2025
Hack Tuesday: Week 05 - 11 November 2025
⚠️282 cyber attacks across 49 countries ⚠️
More details:
hackmanac.com/news/hack-tu...
Hack Tuesday: Week 05 - 11 November 2025
⚠️282 cyber attacks across 49 countries ⚠️
More details:
hackmanac.com/news/hack-tu...
🇦🇪UAE - Omnium
Devman hacking group claims to have breached Omnium.
Allegedly, the attackers exfiltrated 1.2 TB of data.
Ransom demand: $1.200,000.
Sector: Professional / Scientific / Technical
Threat class: Cybercrime
Observed: Nov 11, 2025
Status: Pending verification
🇦🇪UAE - Omnium
Devman hacking group claims to have breached Omnium.
Allegedly, the attackers exfiltrated 1.2 TB of data.
Ransom demand: $1.200,000.
Sector: Professional / Scientific / Technical
Threat class: Cybercrime
Observed: Nov 11, 2025
Status: Pending verification
🇨🇴Colombia - National Civil Service Commission of Colombia
Kazu threat actor claims to have breached the National Civil Service Commission of Colombia.
Allegedly, the attackers exfiltrated 2.9 TB of data.
Ransom demand: $300,000
🇨🇴Colombia - National Civil Service Commission of Colombia
Kazu threat actor claims to have breached the National Civil Service Commission of Colombia.
Allegedly, the attackers exfiltrated 2.9 TB of data.
Ransom demand: $300,000
Declared dismantled by law enforcement earlier this year, 𝗟𝗼𝗰𝗸𝗕𝗶𝘁 𝗵𝗮𝘀 𝗿𝗲-𝗲𝗺𝗲𝗿𝗴𝗲𝗱 under the name 𝗟𝗼𝗰𝗸𝗕𝗶𝘁 𝟱.𝟬 — and now speaks exclusively to Hackmanac.
1/3
Declared dismantled by law enforcement earlier this year, 𝗟𝗼𝗰𝗸𝗕𝗶𝘁 𝗵𝗮𝘀 𝗿𝗲-𝗲𝗺𝗲𝗿𝗴𝗲𝗱 under the name 𝗟𝗼𝗰𝗸𝗕𝗶𝘁 𝟱.𝟬 — and now speaks exclusively to Hackmanac.
1/3
🇧🇪Belgium - Agfa-Gevaert Group (AGFA)
Everest hacking group claims to have breached Agfa-Gevaert Group (AGFA).
Allegedly, the attackers exfiltrated 354 GB of data.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 10, 2025
Status: Pending verification
🇧🇪Belgium - Agfa-Gevaert Group (AGFA)
Everest hacking group claims to have breached Agfa-Gevaert Group (AGFA).
Allegedly, the attackers exfiltrated 354 GB of data.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 10, 2025
Status: Pending verification
🇮🇹Italy - SIAD S.p.A.
Everest hacking group claims to have breached SIAD S.p.A.
Allegedly, the attackers exfiltrated 159 GB of data.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 10, 2025
Status: Pending verification
🇮🇹Italy - SIAD S.p.A.
Everest hacking group claims to have breached SIAD S.p.A.
Allegedly, the attackers exfiltrated 159 GB of data.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 10, 2025
Status: Pending verification
🇯🇵Japan - Yaesu
Qilin hacking group claims to have breached Yaesu. Samples have been provided.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 10, 2025
Status: Pending verification
🇯🇵Japan - Yaesu
Qilin hacking group claims to have breached Yaesu. Samples have been provided.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 10, 2025
Status: Pending verification
🇺🇦Ukraine - Zolota Skrynia (Золота Скриня)
The group IT ARMY OF RUSSIA claims to have breached the network of Ukrainian pawnshop chain Золота Скриня (Zolota Skrynya).
🇺🇦Ukraine - Zolota Skrynia (Золота Скриня)
The group IT ARMY OF RUSSIA claims to have breached the network of Ukrainian pawnshop chain Золота Скриня (Zolota Skrynya).
🇨🇴Colombia - Defensoría del Pueblo de Colombia
A threat actor known as Kazu is claiming responsibility for a major data breach targeting the Defensoría del Pueblo de Colombia, the Colombian ombudsman’s office responsible for human rights protection.
🇨🇴Colombia - Defensoría del Pueblo de Colombia
A threat actor known as Kazu is claiming responsibility for a major data breach targeting the Defensoría del Pueblo de Colombia, the Colombian ombudsman’s office responsible for human rights protection.
The event brings together global cybersecurity leaders in Muscat to advance Oman’s Vision 2040, fostering resilience, innovation, and collaboration to secure the Sultanate’s digital future.
1/2
The event brings together global cybersecurity leaders in Muscat to advance Oman’s Vision 2040, fostering resilience, innovation, and collaboration to secure the Sultanate’s digital future.
1/2
🇵🇰Pakistan - Punjab Forensic Science Agency
Beast hacking group claims to have breached Punjab Forensic Science Agency.
Allegedly, the attackers exfiltrated 900 GB of data.
Sector: Government
Threat class: Cybercrime
Observed: Nov 9, 2025
Status: Pending verification
🇵🇰Pakistan - Punjab Forensic Science Agency
Beast hacking group claims to have breached Punjab Forensic Science Agency.
Allegedly, the attackers exfiltrated 900 GB of data.
Sector: Government
Threat class: Cybercrime
Observed: Nov 9, 2025
Status: Pending verification
🇯🇵 Japan - ASKUL
RansomHouse hacking group continues to threaten ASKUL and has leaked new data on their DLS in the update titled EVIDENCE PACK 2.
Sector: Wholesale / Retail
Threat class: Cybercrime
Status: Confirmed
🇯🇵 Japan - ASKUL
RansomHouse hacking group continues to threaten ASKUL and has leaked new data on their DLS in the update titled EVIDENCE PACK 2.
Sector: Wholesale / Retail
Threat class: Cybercrime
Status: Confirmed
🇲🇦Morocco- Agence Nationale de la Sécurité Routière (NARSA)
A threat actor using the alias anisanas2 claims that a collaborator named PKA291 has fully compromised the systems of NARSA (the Moroccan National Road Safety Agency).
🇲🇦Morocco- Agence Nationale de la Sécurité Routière (NARSA)
A threat actor using the alias anisanas2 claims that a collaborator named PKA291 has fully compromised the systems of NARSA (the Moroccan National Road Safety Agency).
🇯🇵Japan - Photocreate Co.,Ltd. (株式会社フォトクリエイト)
Threat actor haxorsss claimed to have breached Photocreate and related domains in July 2025, offering 8.6M customer records from 2008–2025.
🇯🇵Japan - Photocreate Co.,Ltd. (株式会社フォトクリエイト)
Threat actor haxorsss claimed to have breached Photocreate and related domains in July 2025, offering 8.6M customer records from 2008–2025.
🇪🇸Spain - Banco Santander
The same threat actor “BreachParty” that a few days ago claimed to be selling ING records is now claiming to sell 10,000 records from Banco Santander.
🇪🇸Spain - Banco Santander
The same threat actor “BreachParty” that a few days ago claimed to be selling ING records is now claiming to sell 10,000 records from Banco Santander.
👉 Here are our insights of the week based on our proprietary ESIX© (Estimated Severity Index). We use this metric to measure the operational, financial (direct and indirect), technical, and reputational impact of cyber attacks.
1/6
👉 Here are our insights of the week based on our proprietary ESIX© (Estimated Severity Index). We use this metric to measure the operational, financial (direct and indirect), technical, and reputational impact of cyber attacks.
1/6
🇮🇩Indonesia - PT Kalimantan Prima Persada (KPP)
Medusa hacking group claims to have breached PT Kalimantan Prima Persada (KPP).
Ransom demand: $100,000
Sector: Mining / Quarrying
Threat class: Cybercrime
Observed: Nov 7, 2025
Status: Pending verification
🇮🇩Indonesia - PT Kalimantan Prima Persada (KPP)
Medusa hacking group claims to have breached PT Kalimantan Prima Persada (KPP).
Ransom demand: $100,000
Sector: Mining / Quarrying
Threat class: Cybercrime
Observed: Nov 7, 2025
Status: Pending verification
There’s been a wave of phishing scams, mostly pretending to be Booking or other hotel sites, using this trick to get people to install malware.
Pay attention to what they ask you to do, something will probably start to smell fishy.
There’s been a wave of phishing scams, mostly pretending to be Booking or other hotel sites, using this trick to get people to install malware.
Pay attention to what they ask you to do, something will probably start to smell fishy.
🇺🇸USA - Washington Post
The Washington Post says it is among the victims of a cyber breach linked to Oracle software.
🇺🇸USA - Washington Post
The Washington Post says it is among the victims of a cyber breach linked to Oracle software.
Source: www.fanpage.it/politica/un-...
Source: www.fanpage.it/politica/un-...
🇳🇱Netherlands - RTV Noord
RTV Noord, a regional Dutch broadcaster, was hit by a cyberattack discovered early Thursday morning (November 6, 2025), significantly disrupting its broadcasts and digital platforms.
🇳🇱Netherlands - RTV Noord
RTV Noord, a regional Dutch broadcaster, was hit by a cyberattack discovered early Thursday morning (November 6, 2025), significantly disrupting its broadcasts and digital platforms.
🇯🇵Japan - Tass Meister Patent Firm
Qilin hacking group claims to have breached Tass Meister Patent Firm.
Sector: Legal
Threat class: Cybercrime
Observed: Nov 6, 2025
Status: Pending verification
🇯🇵Japan - Tass Meister Patent Firm
Qilin hacking group claims to have breached Tass Meister Patent Firm.
Sector: Legal
Threat class: Cybercrime
Observed: Nov 6, 2025
Status: Pending verification