🌐 hackmanac.com
🌐 hackrisk.io
🧠 𝗘𝘅𝗽𝗹𝗼𝗿𝗲:
hackrisk.io
Free access to dashboards, timely alerts, attack trends, threat actor insights, affected regions, and severity metrics powered by our proprietary ESIX© (Estimated Severity Index).
1/5
🇪🇸Spain - Iberia
Everest claims to have breached Iberia and stolen 596 GB of data, including 430 GB of .eml files with more than 5 million records.
🇪🇸Spain - Iberia
Everest claims to have breached Iberia and stolen 596 GB of data, including 430 GB of .eml files with more than 5 million records.
Hack Tuesday: Week 19 - 25 November 2025
⚠️317 cyber attacks across 43 countries ⚠️
More details:
hackmanac.com/news/hack-tu...
Hack Tuesday: Week 19 - 25 November 2025
⚠️317 cyber attacks across 43 countries ⚠️
More details:
hackmanac.com/news/hack-tu...
🇪🇸Spain - Marlex
Rhysida hacking group claims to have breached Marlex.
Ransom demand: 15 BTC (approx. $1,300,000)
Sector: Other Services
Threat class: Cybercrime
Observed: Nov 25, 2025
Status: Pending verification
🇪🇸Spain - Marlex
Rhysida hacking group claims to have breached Marlex.
Ransom demand: 15 BTC (approx. $1,300,000)
Sector: Other Services
Threat class: Cybercrime
Observed: Nov 25, 2025
Status: Pending verification
🇪🇸Spain - Fundación de la Universidad Autónoma de Madrid (FUAM)
The Fundación de la Universidad Autónoma de Madrid (FUAM) has disclosed a cyberattack that may have exposed user data.
🇪🇸Spain - Fundación de la Universidad Autónoma de Madrid (FUAM)
The Fundación de la Universidad Autónoma de Madrid (FUAM) has disclosed a cyberattack that may have exposed user data.
🇨🇦🇸🇪- NovAtel (Hexagon)
Qilin hacking group claims to have breached NovAtel.
Allegedly, the attackers exfiltrated 35 TB of data.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 24, 2025
Status: Pending verification
🇨🇦🇸🇪- NovAtel (Hexagon)
Qilin hacking group claims to have breached NovAtel.
Allegedly, the attackers exfiltrated 35 TB of data.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 24, 2025
Status: Pending verification
🇪🇸Spain - Travel Club (Air Miles España, S.A.)
Everest hacking group claims to have breached Travel Club (Air Miles España, S.A.).
🇪🇸Spain - Travel Club (Air Miles España, S.A.)
Everest hacking group claims to have breached Travel Club (Air Miles España, S.A.).
🇧🇷Brazil - Universidade Municipal de São Caetano do Sul (USCS)
Medusa hacking group claims to have breached Universidade Municipal de São Caetano do Sul (USCS).
The attackers demanded a $250,000 ransom.
🇧🇷Brazil - Universidade Municipal de São Caetano do Sul (USCS)
Medusa hacking group claims to have breached Universidade Municipal de São Caetano do Sul (USCS).
The attackers demanded a $250,000 ransom.
🇯🇵Japan - LINE hijacking scams in Japan now trick users and cause losses up to ¥100,000
Status: Confirmed
Source: www.fnn.jp/articles/-/9...
🇯🇵Japan - LINE hijacking scams in Japan now trick users and cause losses up to ¥100,000
Status: Confirmed
Source: www.fnn.jp/articles/-/9...
🇷🇴Romania - National Institute of Materials Physics (NIMP)
Nova hacking group claims to have breached National Institute of Materials Physics (NIMP).
Allegedly, the attackers exfiltrated 700 GB of data.
🇷🇴Romania - National Institute of Materials Physics (NIMP)
Nova hacking group claims to have breached National Institute of Materials Physics (NIMP).
Allegedly, the attackers exfiltrated 700 GB of data.
Source: thehackernews.com/2025/11/shad...
Source: thehackernews.com/2025/11/shad...
Source: thehackernews.com/2025/11/matr...
Source: thehackernews.com/2025/11/matr...
🇺🇸USA - JPMorgan, Citi, Morgan Stanley client data may be exposed by vendor's hack
SitusAMC suffered a cyberattack on November 12, 2025, exposing accounting documents and legal contracts tied to major clients, including JPMorgan Chase, Citi, and Morgan Stanley.
🇺🇸USA - JPMorgan, Citi, Morgan Stanley client data may be exposed by vendor's hack
SitusAMC suffered a cyberattack on November 12, 2025, exposing accounting documents and legal contracts tied to major clients, including JPMorgan Chase, Citi, and Morgan Stanley.
🇧🇷Brazil - C&M Software
DragonForce hacking group claims to have breached C&M Software.
Allegedly, the attackers exfiltrated 393.9 GB of data.
Ransom deadline: 29th November, 2025
🇧🇷Brazil - C&M Software
DragonForce hacking group claims to have breached C&M Software.
Allegedly, the attackers exfiltrated 393.9 GB of data.
Ransom deadline: 29th November, 2025
🇺🇸USA - Crowdstrike
CrowdStrike has identified and terminated a malicious insider who leaked internal screenshots to hackers.
Status: Confirmed
Source: www.bleepingcomputer.com/news/securit...
🇺🇸USA - Crowdstrike
CrowdStrike has identified and terminated a malicious insider who leaked internal screenshots to hackers.
Status: Confirmed
Source: www.bleepingcomputer.com/news/securit...
🇦🇪UAE - Pan Emirates
DragonForce hacking group claims to have breached Pan Emirates.
Allegedly, the attackers exfiltrated 16.0 GB of data.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 21, 2025
Status: Pending verification
🇦🇪UAE - Pan Emirates
DragonForce hacking group claims to have breached Pan Emirates.
Allegedly, the attackers exfiltrated 16.0 GB of data.
Sector: Manufacturing
Threat class: Cybercrime
Observed: Nov 21, 2025
Status: Pending verification
🇦🇪UAE - Du
DragonForce hacking group claims to have breached Du.
Allegedly, the attackers exfiltrated 44.3 GB of data.
Ransom deadline: 21st November 2025
Sector: Telco
Threat class: Cybercrime
Observed: Nov 21, 2025
Status: Pending verification
🇦🇪UAE - Du
DragonForce hacking group claims to have breached Du.
Allegedly, the attackers exfiltrated 44.3 GB of data.
Ransom deadline: 21st November 2025
Sector: Telco
Threat class: Cybercrime
Observed: Nov 21, 2025
Status: Pending verification
👉 Here are our insights of the week based on our proprietary ESIX© (Estimated Severity Index). We use this metric to measure the operational, financial (direct and indirect), technical, and reputational impact of cyber attacks.
1/5
👉 Here are our insights of the week based on our proprietary ESIX© (Estimated Severity Index). We use this metric to measure the operational, financial (direct and indirect), technical, and reputational impact of cyber attacks.
1/5
- November 2025: The number of cyberattacks has increased by approximately 535%
What went wrong?
Hackrisk.io
- November 2025: The number of cyberattacks has increased by approximately 535%
What went wrong?
Hackrisk.io
He used stolen credentials, reset about 2,500 passwords, locked staff out nationwide, tried to erase logs, and caused more than $862,000 in damages.
He used stolen credentials, reset about 2,500 passwords, locked staff out nationwide, tried to erase logs, and caused more than $862,000 in damages.
🇵🇪Peru - Superintendencia Nacional de Fiscalización Laboral (Sunafil)
BlackShrantac hacking group claims responsibility for the cyber attack at Superintendencia Nacional de Fiscalización Laboral (Sunafil).
🇵🇪Peru - Superintendencia Nacional de Fiscalización Laboral (Sunafil)
BlackShrantac hacking group claims responsibility for the cyber attack at Superintendencia Nacional de Fiscalización Laboral (Sunafil).
In the past 24 hours, the Cl0p hacking group has added 29 more alleged victims to its breach campaign exploiting the Zero-day vulnerability in Oracle E-Business Suite.
Observed: Nov 20, 2025
Status: Pending verification
In the past 24 hours, the Cl0p hacking group has added 29 more alleged victims to its breach campaign exploiting the Zero-day vulnerability in Oracle E-Business Suite.
Observed: Nov 20, 2025
Status: Pending verification
🇮🇹Italy - Poltronesofà
Poltronesofà states that on October 27, 2025, the company was hit by a ransomware attack that encrypted its servers and made virtual machines unavailable.
🇮🇹Italy - Poltronesofà
Poltronesofà states that on October 27, 2025, the company was hit by a ransomware attack that encrypted its servers and made virtual machines unavailable.
🇯🇵Japan - PATLITE CORPORATION
Sinobi hacking group claims to have breached PATLITE CORPORATION.
Allegedly, the attackers exfiltrated 410 GB of data, including contracts, customers’ data, and financial data.
🇯🇵Japan - PATLITE CORPORATION
Sinobi hacking group claims to have breached PATLITE CORPORATION.
Allegedly, the attackers exfiltrated 410 GB of data, including contracts, customers’ data, and financial data.
It hijacks chats, sends fake messages to all your contacts, and installs a program that steals bank and crypto logins.
Source: thehackernews.com/2025/11/pyth...
It hijacks chats, sends fake messages to all your contacts, and installs a program that steals bank and crypto logins.
Source: thehackernews.com/2025/11/pyth...
🇺🇸USA - Beckett
In November 2025, Beckett Collectibles experienced a data breach accompanied by website content defacement.
The stolen data was later advertised for sale on a prominent hacking forum, with portions subsequently released publicly.
🇺🇸USA - Beckett
In November 2025, Beckett Collectibles experienced a data breach accompanied by website content defacement.
The stolen data was later advertised for sale on a prominent hacking forum, with portions subsequently released publicly.