[December-4-2025] Daily Cybersecurity Threat Report

This report details a series of recent cyber incidents, providing key information for each event, including published URLs and associated screenshots, strictly based on the provided data.

1. KAL EGY 319 claims to target Egypt

2. Alleged Sale of Data from N26 Bank in Spain

3. Alleged Sale of Data from OpenBank in Spain

4. Smith Fire Systems falls victim to ANUBIS Ransomware

5. Chronus leaks targets the website of Hermosillo budget transparency Portal

6. Alleged Data Breach of OpenBank in Spain

7. Alleged Data Breach of N26 Bank in Spain

8. Alleged Data Breach of 6000 Global Mail Exchange Accounts

9. Alleged data leak of Clinisys

10. Alleged Data leak of Statement of Assets and Interests

  • Category: Data Breach
  • Content: The group claims to have leaked data from Statement of Assets and Interests. The compromised data reportedly includes id, institution, type, interest, general Data, name, email, location, date of taking office, Phone, address, federal Entity, economic Dependent, investments etc.
  • Date: 2025-12-04T21:38:46Z
  • Network: telegram
  • Published URL: https://t.me/c/3211040888/205
  • Screenshots:
  • Victim Country: Mexico
  • Victim Industry: Government Relations
  • Victim Organization: statement of assets and interests
  • Victim Site: declaracion.tehuacan.gob.mx

11. Alleged Data Breach of Eatwallet

12. Alleged admin access to Wage Earners Welfare Board

13. Alleged data leak of Shahid Sani School

14. Alleged Sale of Pakistan Database

15. Z-PENTEST ALLIANCE claims to targets Netherlands

16. Alleged data breach of Bangladesh Meteorological Department

17. Alleged Sale of Poland Database

18. Kana Pipeline, Inc. falls victim to Qilin Ransomware

19. Alleged data breach of Habibullah Bahar College

20. Alleged data sale of Instituto Nacional de Migración (INM)

21. Alleged Data Leak of 3000 Credit Card Records in USA

22. Alleged Data Leak of Board of Intermediate & Secondary Education

23. Alleged Sale of Unauthorized Web Shell Access to Government Educational Servers in Pakistan and Greece

24. Alleged Sale of 100 ThePirateBay Torrent Accounts

25. Alleged access to Bangladesh Small and Cottage Industries Corporation

26. Alleged Sale of Unauthorized Monsta FTP Access

27. Alleged Sale of Vietnam Database

28. Medisend College of Biomedical Engineering Technology falls victim to Qilin Ransomware

29. Alleged access to Industrial Automation Plant ELTA

30. The Minor Firm falls victim to akira Ransomware

31. ABC Home & Commercial Services falls victim to akira Ransomware

32. scattered LAPSUS$ hunters 7.0 targets IAG

33. scattered LAPSUS$ hunters 7.0 claims to target flight ticketing data from multiple airlines

34. EspaƧo Casa falls victim to Qilin Ransomware

35. Scientology falls victim to Qilin Ransomware

36. scattered LAPSUS$ hunters 7.0 claims to target Marc Benioff

37. Alleged data sale of ThankQ Camping

38. jokeir 07x claims to target Tunisia

39. Institutional & Supermarket Equipment falls victim to Qilin Ransomware

40. Alleged Sale of a 0-day Linux Kernel LPE exploit

41. Peter Meijer Architect, PC falls victim to Qilin Ransomware

42. McManes Law falls victim to Qilin Ransomware

43. Alleged data breach of Sprih

44. Maset falls victim to Qilin Ransomware

45. Alleged data leak of KhDiaMonD

46. SSP Innovations, LLC falls victim to LYNX Ransomware

47. Alleged data breach of Poloniex

48. Alleged leak of cpanel access to hari.fr.planethoster.net

49. Alleged leak of cpanel access to 3 Kumbara

50. Pioneer Ocean Freight Co., Ltd. falls victim to NightSpire ransomware

51. Alleged leak of access to Mr Sem Agency

52. Alleged leak of cpanel access to Marketing Of America

53. Alleged leak of cpanel access to Gamification Academy

54. Alleged leak of cpanel access to plif.o2switch.net

55. Alleged leak of cpanel access to new-server65.integrityserver.net

56. Alleged leak of cpanel access to tozetto.ind.br

57. DieNet claims to target Saudi Arabia

58. XYZ targets the website of realimate.ca

59. RECODE TEAM targets the website of Exand

60. Alleged leak of cpanel access to WL TYRES

61. Alleged leak of cpanel access to Vasck Technology LTDA

62. Alleged leak of cpanel access to DS Seguros

63. Alleged Unauthorized Access to Dinas Pertanian Cirebon

64. Alleged leak of cpanel access to atomicat.pro

65. Alleged leak of cpanel access to Atak Domain Hosting

66. Alleged leak of cpanel access to host66.registrar-servers.com

67. DEFACER INDONESIA targets the website of harmeet-singh.rf.gd

68. Alleged data sale of National Institute of Anthropology and History

69. Alleged leak of cpanel access to Dr. Bruna Braga

70. Alleged leak of cpanel access to Silica Nanocolloid Choju no Sato

71. Yellow Cab of Columbus falls victim to Qilin Ransomware

72. Quasar, Inc falls victim to Space Bears Ransomware

73. INDRAMAYU CHAOS SYSTEM targets the website of PerfectOnlinecasino

74. INDRAMAYU CHAOS SYSTEM targets the website of Uptowincasino

75. INDRAMAYU CHAOS SYSTEM targets the website SlotSonlinecasino

76. INDRAMAYU CHAOS SYSTEM targets the website of SlotSlivecasino

77. Alleged Unauthorized Access to PQ-Master 3000 of Netherlands

  • Category: Initial Access
  • Content: The group claims to have accessed the PQ-Master 3000 system used for real-time monitoring of electrical network parameters across parts of the Netherlands. According to the claim, live dashboards showed current, voltage, phase balance, and oscillation data updating every second. They state that stopping the system would leave the network unmonitored with no alerts or anomaly detection.
  • Date: 2025-12-04T03:10:53Z
  • Network: telegram
  • Published URL: https://t.me/n2LP_wVf79c2YzM0/2700
  • Screenshots:
  • Victim Country: Netherlands
  • Victim Industry: Unknown
  • Victim Organization: Unknown
  • Victim Site: Unknown

78. INDRAMAYU CHAOS SYSTEM targets the website of PlayOnlineSlots

79. Infrastructure Destruction Squad claims to target Netherlands and its infrastructure

80. INDRAMAYU CHAOS SYSTEM targets the website of PlayPokerOnline

81. INDRAMAYU CHAOS SYSTEM targets the website of Play888Casino

82. INDRAMAYU CHAOS SYSTEM targets the website of RouletteOnline

83. INDRAMAYU CHAOS SYSTEM targets the website of PokerListings

84. Fix Tecnologia falls victim to Nova Ransomware

85. INDRAMAYU CHAOS SYSTEM targets the website of PERFECT ONLINE CASINO

86. INDRAMAYU CHAOS SYSTEM targets the website of Online Casino Slots

87. scattered LAPSUS$ hunters 7.0 claims to target MOVEit

88. BABAYO EROR SYSTEM targets the website of bedah kasus

89. BABAYO EROR SYSTEM targets the website of Cakrawala Candradimuka Literasi

90. INDRAMAYU CHAOS SYSTEM targets the website of Online Casino Games

91. INDRAMAYU CHAOS SYSTEM targets the website of Jackpots All Slots

92. Alleged data breach of Jinghang Insurance company in China

93. INDRAMAYU CHAOS SYSTEM targets the website of Gambling Betting

94. INDRAMAYU CHAOS SYSTEM targets the website of CasinoMaxi

95. INDRAMAYU CHAOS SYSTEM targets the website of All Slots Casino

96. INDRAMAYU CHAOS SYSTEM targets the website of Drake Casino

97. INDRAMAYU CHAOS SYSTEM targets the website of Club Casino World

98. INDRAMAYU CHAOS SYSTEM targets the website of Casino Jackpot

Conclusion

The incidents detailed in this report highlight a diverse and active landscape of cyber threats. Data breaches and ransomware attacks are prominent, affecting various sectors from banking and education to retail and gambling, and impacting countries including the USA, Indonesia, Spain, and Brazil. The compromised data ranges from personal user information and credit card details to sensitive internal documents. Beyond data compromise, the report reveals significant activity in website defacements, particularly targeting online casinos, and initial access sales. The incidents collectively demonstrate persistent threats from data exfiltration and unauthorized network access.