Hackmanac
banner
hackmanac.com
Hackmanac
@hackmanac.com
We track verified, real-world cyber attacks to help you develop effective Cybersecurity strategies. Try HackRisk.io, your Strategic Threat Intelligence platform.

🌐 hackmanac.com
🌐 hackrisk.io
Pinned
🚨 𝗪𝗲𝗹𝗰𝗼𝗺𝗲 𝘁𝗼 𝗛𝗮𝗰𝗸𝗺𝗮𝗻𝗮𝗰 — 𝗬𝗼𝘂𝗿 𝗚𝗮𝘁𝗲𝘄𝗮𝘆 𝘁𝗼 𝗦𝘁𝗿𝗮𝘁𝗲𝗴𝗶𝗰 𝗖𝘆𝗯𝗲𝗿 𝗧𝗵𝗿𝗲𝗮𝘁 𝗜𝗻𝘁𝗲𝗹𝗹𝗶𝗴𝗲𝗻𝗰𝗲 🚨

🧠 𝗘𝘅𝗽𝗹𝗼𝗿𝗲:
hackrisk.io
Free access to dashboards, timely alerts, attack trends, threat actor insights, affected regions, and severity metrics powered by our proprietary ESIX© (Estimated Severity Index).

1/5
🚨Cyber Alert‼️

Zapier’s NPM Account Hacked, Multiple Packages Infected with Malware

A compromised Zapier NPM account triggered a large supply chain attack that planted the Shai Hulud malware into 425 packages with about 132 million monthly downloads.
November 28, 2025 at 9:31 AM
🚨 Hot November #RiskFriday! 🚀

👉 Here are our insights of the week based on our proprietary ESIX© (Estimated Severity Index). We use this metric to measure the operational, financial (direct and indirect), technical, and reputational impact of cyber attacks.

1/6
November 28, 2025 at 9:07 AM
🚨Cyberattack Alert ‼️

🇯🇵Japan - Japan Inspection Association (Shin Nihon Kentei Kyokai)

On November 26, 2025, the Japan Inspection Association (Shin Nihon Kentei Kyokai) experienced a system disruption caused by a cyberattack targeting its servers.
November 28, 2025 at 8:26 AM
🚨Cyber Alert ‼️

🇮🇩Indonesia - Bank Mandiri

BreachLaboratory threat actor claims to have breached Bank Mandiri.

Allegedly, the attackers leaked more than 18,000 financial records, including personal details, SWIFT code BMRIIDJA, account setup data, balances, fees, and debit card usage information.
November 27, 2025 at 5:08 PM
🚨Cyber Alert‼️

iOS 26 Zero-Click Exploit Claimed for Sale on Dark Web

A threat actor called ResearcherX claimed to be selling a full-chain zero-click exploit for iOS 26 on the dark web, allegedly allowing root access and bypassing new protections.
November 27, 2025 at 5:06 PM
🚨Cyberattack Alert ‼️

🇬🇧UK - Hitech Grand Prix Limited

Akira hacking group claims to have breached Hitech Grand Prix Limited.

Akira hacking group claimed responsibility for a cyberattack against Hitech, a UK-based single-seater racing team competing in FIA Formula 2, Formula 3, GB3, and Formula 4.
November 27, 2025 at 12:53 PM
🚨Cyberattack Alert ‼️

🇯🇵Japan - YAC GARTER CO., LTD. (subsidiary of Y.A.C. Holdings Co., Ltd.)

On November 25, 2025, YAC GARTER CO., LTD., a consolidated subsidiary of Y.A.C. Holdings Co., Ltd., detected a ransomware attack that caused internal system failures.
November 27, 2025 at 11:09 AM
🚨Cyber Alert‼️

🇰🇷South Korea - Upbit

Upbit Halts Operations After Suspicious ₩44.5B (~$33M) Outflow

Upbit detected abnormal withdrawals from its Solana hot wallet, with about ₩44.5 billion KRW in assets sent to unknown wallets.
November 27, 2025 at 7:21 AM
🚨Cyber Alert ‼️

🇺🇸USA - OpenAI (via Mixpanel service)

OpenAI disclosed that Mixpanel, a third-party analytics provider used to track API frontend usage, suffered unauthorized access on November 9.
November 27, 2025 at 7:07 AM
🚨Cyberattack Alert ‼️

🇨🇴Colombia - Rama Judicial de Colombia

Kill Security claims to have breached the Rama Judicial de Colombia and leaked court documents containing sensitive personal, legal, and financial information.
November 27, 2025 at 5:47 AM
🚨Cyberattack Alert ‼️

🇸🇦Saudi Arabia - Meena Health

Kill Security hacking group claims to have breached Meena Health.
November 27, 2025 at 5:31 AM
🚨🚨Cyber Update ‼️

🇪🇸Spain - Iberia

Everest hacking group is now demanding $6,000,000 from Iberia to prevent the data from being leaked.

Sector: Transportation / Storage
Threat class: Cybercrime

Status: Pending verification
November 26, 2025 at 5:47 PM
🚨Cyber Alert‼️

80,000+ Files Leaked via Code Tools Expose 5GB of Credentials from Critical Infrastructure, Government, Finance, and More

Sensitive credentials and personal data have been leaking for years through online code formatting tools JSONFormatter and CodeBeautify.
November 26, 2025 at 10:02 AM
🚨🚨Cyberattack Alert ‼️

🇪🇸Spain - Iberia

Everest claims to have breached Iberia and stolen 596 GB of data, including 430 GB of .eml files with more than 5 million records.
November 25, 2025 at 6:00 PM
🟧 #HackTuesday 🟧

Hack Tuesday: Week 19 - 25 November 2025

⚠️317 cyber attacks across 43 countries ⚠️

More details:
hackmanac.com/news/hack-tu...
Hackmanac HACK TUESDAY WEEK 19 - 25 NOVEMBER 2025
HACK TUESDAY WEEK 19 - 25 NOVEMBER 2025: 317 CYBERATTACKS ACROSS 43 COUNTRIES
hackmanac.com
November 25, 2025 at 3:05 PM
🚨Cyberattack Alert ‼️

🇪🇸Spain - Marlex

Rhysida hacking group claims to have breached Marlex.

Ransom demand: 15 BTC (approx. $1,300,000)

Sector: Other Services
Threat class: Cybercrime

Observed: Nov 25, 2025
Status: Pending verification
November 25, 2025 at 1:51 PM
🚨Cyberattack Alert‼️

🇪🇸Spain - Fundación de la Universidad Autónoma de Madrid (FUAM)

The Fundación de la Universidad Autónoma de Madrid (FUAM) has disclosed a cyberattack that may have exposed user data.
November 25, 2025 at 8:50 AM
🚨Cyberattack Alert ‼️

🇨🇦🇸🇪- NovAtel (Hexagon)

Qilin hacking group claims to have breached NovAtel.

Allegedly, the attackers exfiltrated 35 TB of data.

Sector: Manufacturing
Threat class: Cybercrime

Observed: Nov 24, 2025
Status: Pending verification
November 25, 2025 at 6:07 AM
🚨Cyberattack Alert ‼️

🇪🇸Spain - Travel Club (Air Miles España, S.A.)

Everest hacking group claims to have breached Travel Club (Air Miles España, S.A.).
November 25, 2025 at 5:35 AM
🚨Cyberattack Alert ‼️

🇧🇷Brazil - Universidade Municipal de São Caetano do Sul (USCS)

Medusa hacking group claims to have breached Universidade Municipal de São Caetano do Sul (USCS).

The attackers demanded a $250,000 ransom.
November 25, 2025 at 5:27 AM
🚨Cyberattack Alert ‼️

🇷🇴Romania - National Institute of Materials Physics (NIMP)

Nova hacking group claims to have breached National Institute of Materials Physics (NIMP).

Allegedly, the attackers exfiltrated 700 GB of data.
November 24, 2025 at 11:26 AM
🚨🚨Attackers are exploiting the critical WSUS flaw CVE-2025-59287 to gain SYSTEM-level remote code execution and deploy ShadowPad, a modular backdoor linked to Chinese state-sponsored actors.

Source: thehackernews.com/2025/11/shad...
November 24, 2025 at 11:24 AM
🚨Hackers are now phishing directly through browser notifications

Source: thehackernews.com/2025/11/matr...
November 24, 2025 at 11:18 AM
🚨Cyber Alert‼️

🇺🇸USA - JPMorgan, Citi, Morgan Stanley client data may be exposed by vendor's hack

SitusAMC suffered a cyberattack on November 12, 2025, exposing accounting documents and legal contracts tied to major clients, including JPMorgan Chase, Citi, and Morgan Stanley.
November 23, 2025 at 12:47 PM