[November-30-2025] Daily Cybersecurity Threat Report

This report details a series of recent cyber incidents, providing key information for each event, including published URLs and associated screenshots, strictly based on the provided data.

1. Alleged data breach of MagicSeller Korea

2. Cyber Mujahideen F16 claims to target UK

3. Alleged data breach of Medsi Group of Companies

4. Fun For Less Tours falls vicitm to ANUBIS Ransomware

5. Alleged Leak of Login Credentials from Master Certifiers

6. Alleged leak of SWEDEN DATABASE

7. jokeir 07x targets the website of National Office of Thermalism and Hydrotherapy

8. Alleged leak of database in Finland

9. Alleged data breach of Mohmand Hospital

10. Alleged access to Bangladesh Madrasah Education Board

11. Alleged data breach of Velikano

12. Alleged sale of CANADA BUSINESS INFORMATION DATA

13. ILCA Targhe s.r.l falls victim to Qilin ransomware

14. Alleged access to EIScontrol

15. Veton falls victim to Qilin ransomware

16. Alleged leak of unidentified database in Canada

17. Alleged sale of Coinbase verified database in USA

18. Alleged sale of 300M USA citizen data

19. Alleged data breach of ExeVision, Inc

20. BekasiRootSec targets the website of Love Star Humanitarian Foundation

21. Alleged Unauthorized Access to an Industrial Emissions Monitoring System in Vietnam

  • Category: Initial Access
  • Content: The group claims to have gained access to the emissions-monitoring control system of the NHÀ MÁY XI MĂNG PHÚ TÂN cement plant in Vietnam. The accessed system reportedly oversees real-time monitoring of industrial emissions.
  • Date: 2025-11-30T14:25:20Z
  • Network: telegram
  • Published URL: (https://t.me/n2LP_wVf79c2YzM0/2613)
  • Screenshots: https://d34iuop8pidsy8.cloudfront.net/bd4d8dcd-5d13-410f-933e-e025312c0355.png
  • Threat Actors: Infrastructure Destruction Squad
  • Victim Country: Vietnam
  • Victim Industry: Unknown
  • Victim Organization: Unknown
  • Victim Site: Unknown

22. Alleged data breach of multiple organizations in Bangladesh

23. Alleged data breach of ROSENHEIM MAKOM ARCHITECTS LTD

24. UNITYFORCETEAM targets the website of SellersBox

25. Alleged data sale of Sportsmaster

26. Alleged data sale of India International Exchange (IFSC) Ltd (India INX)

27. Alleged data sale of Rakuten Securities

28. Alleged data sale of Kuwait Investment Company

29. Alleged data sale of 1Win in multiple countries

30. UNITYFORCETEAM targets the website of MTs Negeri 2 Tegal

31. Alleged data sale of UBS

32. Alleged data sale of Tastytrade

33. UNITYFORCETEAM targets the website of SMK Negeri 64 Jakarta

34. UNITYFORCETEAM targets the website of SMP MUHAMMADIYAH 2 PURWOKERTO.

35. Alleged data leak of Palma Seguros

36. Reaper Byte Philippines targets the website of Consormon Yamaha

37. BekasiRootSec targets the website of Micromils

38. Alleged database leak of Human Resources Development Agency (BKPSDM) of Mojokerto Regency

39. Alleged data sale of Association of Universities for Research in Astronomy

40. Alleged data sale of Connector Dubai

41. Alleged leak of SQL injection vulnerability in Rohini Vivah Sanstha

42. Alleged leak of admin credentials of JeelFlow

43. Alleged Unauthorized Access to Thanh Cong Cement Plant 3 Systems in Vietnam

44. Battaglioli falls victim to Qilin ransomware

45. Alleged database leak of Slate & Tell

46. 404 CREW CYBER TEAM targets the website of Wings of Tatev

47. Division 10, Inc. falls victim to DragonForce Ransomware

48. Pharaoh’s Team targets the website of Syria Jobs Network

49. KAL EGY 319 targets the website of Happy crackers

50. JavaneseTeam targets the website of East Azerbaijan Science and Technology Park

51. KAL EGY 319 targets the website of Gowtham Crackers

52. KAL EGY 319 targets the website Ganapathi Agencies

53. KAL EGY 319 targets Bairav Balaji Cracker website in India

54. KAL EGY 319 targets the website of Bahavan Agencies

55. 404 CREW CYBER TEAM targets the website of Greenville Beauty Box

56. JavaneseTeam targets the website of Arraba Ilqar Company

57. Alleged data breach of France Connect

58. KAL EGY 319 targets multiple websites in India

59. Alleged Data Leak of Paraguayan Government

  • Category: Data Breach
  • Content: The threat group claims to have leaked a large cache of sensitive data belonging to the Paraguayan government. The alleged breach includes tariff documents, government planning files, court records, and other confidential state materials.
  • Date: 2025-11-30T04:06:49Z
  • Network: telegram
  • Published URL: (https://t.me/order403/34)
  • Screenshots: https://d34iuop8pidsy8.cloudfront.net/f6d07ed3-d252-4cef-ac17-42688c18afed.png
  • Threat Actors: Order403
  • Victim Country: Paraguay
  • Victim Industry: Unknown
  • Victim Organization: Unknown
  • Victim Site: Unknown

60. Alleged sale of unauthorized admin access to unidentified Sweets & Bakery Shop in UK

61. Alleged sale of unauthorized admin access to unidentified fruit shop in Singapore

62. Alleged sale of unauthorized admin access to unidentified Delivery shop in Australia

63. Alleged sale of unauthorized admin access to unidentified gift shop in Morocco

64. Dream Hack targets the website of Accevate Technologies

65. Alleged sale of unauthorized access to a German based Magento e-commerce platform

66. JavaneseTeam targets the website of East Azerbaijan Province Science and Technology Park.

67. Alleged data sale of Instituto Nacional de Transporte Terrestre (INTT)

68. Piniy XploitSec target the website of Al Bahja Group

69. JavaneseTeam targets the website of the Transparency and Justice Watch NGO

70. Pinoy XploitSec targets the website of Xyris Overseas

71. Pinoy XploitSec targets the website of SK Sons Overseas Impex

72. Pharaoh’s Team Channel targets the website of ACE College

73. KAL EGY 319 targets the websites of India

74. Alleged data breach of Tradeye International

75. Alleged leak of driver’s licenses

Conclusion

The incidents detailed in this report highlight a diverse and active landscape of cyber threats. Data breaches, ransomware, and website defacements are prominent, affecting various sectors from e-commerce and education to healthcare and industrial automation. The compromised data ranges from personal user information and credit card details to sensitive government documents.

Beyond data compromise, the report also reveals significant activity in initial access sales, with threat actors offering unauthorized access to various retail shops, industrial control systems, and corporate networks across different geographies.

The incidents collectively demonstrate that organizations across various industries and geographies face persistent threats from data exfiltration, unauthorized network access, and the proliferation of malicious tools. The nature of these incidents emphasizes the critical importance of robust cybersecurity measures, including strong access controls, data protection strategies, continuous vulnerability management, and proactive threat intelligence to defend against a wide array of sophisticated and opportunistic attacks.