Hackmanac
banner
hackmanac.com
Hackmanac
@hackmanac.com
We track verified, real-world cyber attacks to help you develop effective Cybersecurity strategies. Try HackRisk.io, your Strategic Threat Intelligence platform.

๐ŸŒ hackmanac.com
๐ŸŒ hackrisk.io
Pinned
๐Ÿšจ ๐—ช๐—ฒ๐—น๐—ฐ๐—ผ๐—บ๐—ฒ ๐˜๐—ผ ๐—›๐—ฎ๐—ฐ๐—ธ๐—บ๐—ฎ๐—ป๐—ฎ๐—ฐ โ€” ๐—ฌ๐—ผ๐˜‚๐—ฟ ๐—š๐—ฎ๐˜๐—ฒ๐˜„๐—ฎ๐˜† ๐˜๐—ผ ๐—ฆ๐˜๐—ฟ๐—ฎ๐˜๐—ฒ๐—ด๐—ถ๐—ฐ ๐—–๐˜†๐—ฏ๐—ฒ๐—ฟ ๐—ง๐—ต๐—ฟ๐—ฒ๐—ฎ๐˜ ๐—œ๐—ป๐˜๐—ฒ๐—น๐—น๐—ถ๐—ด๐—ฒ๐—ป๐—ฐ๐—ฒ ๐Ÿšจ

๐Ÿง  ๐—˜๐˜…๐—ฝ๐—น๐—ผ๐—ฟ๐—ฒ:
hackrisk.io
Free access to dashboards, timely alerts, attack trends, threat actor insights, affected regions, and severity metrics powered by our proprietary ESIXยฉ (Estimated Severity Index).

1/5
๐ŸŸง #HackTuesday ๐ŸŸง

Hack Tuesday: Week 19 - 25 November 2025

โš ๏ธ317 cyber attacks across 43 countries โš ๏ธ

More details:
hackmanac.com/news/hack-tu...
Hackmanac HACK TUESDAY WEEK 19 - 25 NOVEMBER 2025
HACK TUESDAY WEEK 19 - 25 NOVEMBER 2025: 317 CYBERATTACKS ACROSS 43 COUNTRIES
hackmanac.com
November 25, 2025 at 3:05 PM
No confidential or proprietary data was downloaded, copied, or redistributed, and sensitive details were redacted from the attached screenshot(s).

For more details about this incident, our ESIX impact score, and additional context, visit HackRisk.io.
November 25, 2025 at 1:51 PM
โ€”
About this post:
Hackmanac provides early warning and cyber situational awareness through its social channels. This alert is based on publicly available information that our analysts retrieved from clear and dark web sources.
November 25, 2025 at 1:51 PM
๐ŸšจCyberattack Alert โ€ผ๏ธ

๐Ÿ‡ช๐Ÿ‡ธSpain - Marlex

Rhysida hacking group claims to have breached Marlex.

Ransom demand: 15 BTC (approx. $1,300,000)

Sector: Other Services
Threat class: Cybercrime

Observed: Nov 25, 2025
Status: Pending verification
November 25, 2025 at 1:51 PM
Sector: Education
Status: Confirmed

Source: fuam.es/comunicado-d...
November 25, 2025 at 8:50 AM
As a precaution, FUAM has suspended regular operations and disabled its Electronic Administration Platform (used for payments, accounting, and certificates) for the rest of the week.

On November 22, the Datacarry hacking group claimed to have breached the Universidad Autรณnoma de Madrid (UAM).
November 25, 2025 at 8:50 AM
๐ŸšจCyberattack Alertโ€ผ๏ธ

๐Ÿ‡ช๐Ÿ‡ธSpain - Fundaciรณn de la Universidad Autรณnoma de Madrid (FUAM)

The Fundaciรณn de la Universidad Autรณnoma de Madrid (FUAM) has disclosed a cyberattack that may have exposed user data.
November 25, 2025 at 8:50 AM
No confidential or proprietary data was downloaded, copied, or redistributed, and sensitive details were redacted from the attached screenshot(s).

For more details about this incident, our ESIX impact score, and additional context, visit HackRisk.io.
November 25, 2025 at 6:07 AM
โ€”
About this post:
Hackmanac provides early warning and cyber situational awareness through its social channels. This alert is based on publicly available information that our analysts retrieved from clear and dark web sources.
November 25, 2025 at 6:07 AM
๐ŸšจCyberattack Alert โ€ผ๏ธ

๐Ÿ‡จ๐Ÿ‡ฆ๐Ÿ‡ธ๐Ÿ‡ช- NovAtel (Hexagon)

Qilin hacking group claims to have breached NovAtel.

Allegedly, the attackers exfiltrated 35 TB of data.

Sector: Manufacturing
Threat class: Cybercrime

Observed: Nov 24, 2025
Status: Pending verification
November 25, 2025 at 6:07 AM
No confidential or proprietary data was downloaded, copied, or redistributed, and sensitive details were redacted from the attached screenshot(s).

For more details about this incident, our ESIX impact score, and additional context, visit HackRisk.io.
November 25, 2025 at 5:35 AM
About this post:
Hackmanac provides early warning and cyber situational awareness through its social channels. This alert is based on publicly available information that our analysts retrieved from clear and dark web sources.
November 25, 2025 at 5:35 AM
Sector: Hospitability
Threat class: Cybercrime

Observed: Nov 24, 2025
Status: Pending verification
November 25, 2025 at 5:35 AM
Allegedly, the attackers exfiltrated 131 GB of data, including internal files containing millions of customer records such as names, emails, account IDs, demographics, activity data, and marketing information.
November 25, 2025 at 5:35 AM
๐ŸšจCyberattack Alert โ€ผ๏ธ

๐Ÿ‡ช๐Ÿ‡ธSpain - Travel Club (Air Miles Espaรฑa, S.A.)

Everest hacking group claims to have breached Travel Club (Air Miles Espaรฑa, S.A.).
November 25, 2025 at 5:35 AM
No confidential or proprietary data was downloaded, copied, or redistributed, and sensitive details were redacted from the attached screenshot(s).

For more details about this incident, our ESIX impact score, and additional context, visit HackRisk.io.
November 25, 2025 at 5:27 AM
โ€”
About this post:
Hackmanac provides early warning and cyber situational awareness through its social channels. This alert is based on publicly available information that our analysts retrieved from clear and dark web sources.
November 25, 2025 at 5:27 AM
Sector: Education
Threat class: Cybercrime

Observed: Nov 25, 2025
Status: Pending verification
November 25, 2025 at 5:27 AM
๐ŸšจCyberattack Alert โ€ผ๏ธ

๐Ÿ‡ง๐Ÿ‡ทBrazil - Universidade Municipal de Sรฃo Caetano do Sul (USCS)

Medusa hacking group claims to have breached Universidade Municipal de Sรฃo Caetano do Sul (USCS).

The attackers demanded a $250,000 ransom.
November 25, 2025 at 5:27 AM
๐ŸšจCyber Alertโ€ผ๏ธ

๐Ÿ‡ฏ๐Ÿ‡ตJapan - LINE hijacking scams in Japan now trick users and cause losses up to ยฅ100,000

Status: Confirmed

Source: www.fnn.jp/articles/-/9...
ใ€็‹ฌ่‡ชใ€‘10ไธ‡ๅ††ๆŒฏใ‚Š่พผใ‚€่ขซๅฎณใ‚‚โ€ฆโ€œLINEไน—ใฃๅ–ใ‚Šโ€ใŒๅทงๅฆ™ๅŒ–ใ€€็ŸฅไบบใจๅŒใ˜ใ‚ขใ‚คใ‚ณใƒณใƒปๅๅ‰ใงใชใ‚Šใ™ใพใ—ๅ€‹ไบบๆƒ…ๅ ฑๅ…ฅๅŠ›ใ•ใ›ใ‚‹ๆ‰‹ๅฃ๏ฝœFNNใƒ—ใƒฉใ‚คใƒ ใ‚ชใƒณใƒฉใ‚คใƒณ
LINEใฎไน—ใฃๅ–ใ‚Šใงใ€10ไธ‡ๅ††ใ‚’ๆŒฏใ‚Š่พผใ‚€่ขซๅฎณใ‚‚โ€ฆใ€‚ใ„ใพใ€ๆ–ฐใŸใชๆ‰‹ๅฃใซใ‚ˆใ‚‹LINEใฎไน—ใฃๅ–ใ‚Š่ขซๅฎณใŒ็›ธๆฌกใ„ใงใ„ใ‚‹ใ€‚ๅคงๅญฆ้™ข็”Ÿใ€Œไน—ใฃๅ–ใ‚Šใจใ‹ใ˜ใ‚ƒใชใใฆ๏ผŸใ€ไน—ใฃๅ–ใ‚Š็Šฏใ€Œใƒใ‚คใ‚ธใƒฃใƒƒใ‚ฏใฏใ—ใฆใ„ใพใ›ใ‚“ใ€ๅƒ่‘‰ๅธ‚ใซไฝใ‚€ใ€60ไปฃใฎAใ•ใ‚“ใ‚‚11ๆœˆ7ๆ—ฅใ€่ขซๅฎณใซ้ญใฃใŸไธ€ไบบใ€‚Aใ•ใ‚“๏ผšใ™ใ”ใ„ๅทงๅฆ™ใชๆ‰‹ๅฃใ ใชใจๆ€ใฃใฆใ€‚ๅ–„ๆ„ใ‚’ๅˆฉ็”จใ™ใ‚‹ใ‚‚ใฎใชใ‚“ใงใ—ใ‚‡ใ†ใ‘ใฉใ€ๆœฌๅฝ“ใซใฒใฉใ„ใ€‚LINEใŒไน—ใฃๅ–ใ‚‰ใ‚ŒใŸใ‚ญใƒƒใ‚ซใ‚ฑใฏใ€ใ‚คใƒณใ‚นใ‚ฟใ‚ฐใƒฉใƒ ใฎใƒ€ใ‚คใƒฌใ‚ฏใƒˆใƒกใƒƒใ‚ปใƒผใ‚ธใ ใฃใŸใ€‚ใ€Œๅ‹้”ใฎใŠๅญใ•ใ‚“ใฎ็ตต็”ปใ‚ณใƒณใƒ†ใ‚นใƒˆใซๆŠ•็ฅจใ—ใฆใ„ใŸใ ใ‘ใพใ™ใ‹๏ผŸ ๆ•ฐๅˆ†ใงๅฎŒไบ†ใ—ใพใ™ใ€‚ใ€Aใ•ใ‚“โ€ฆ
www.fnn.jp
November 24, 2025 at 11:38 AM
No confidential or proprietary data was downloaded, copied, or redistributed, and sensitive details were redacted from the attached screenshot(s).

For more details about this incident, our ESIX impact score, and additional context, visit HackRisk.io.
November 24, 2025 at 11:26 AM
โ€”
About this post:
Hackmanac provides early warning and cyber situational awareness through its social channels. This alert is based on publicly available information that our analysts retrieved from clear and dark web sources.
November 24, 2025 at 11:26 AM
Sector: Professional / Scientific / Technical
Threat class: Cybercrime

Observed: Nov 23, 2025
Status: Pending verification
November 24, 2025 at 11:26 AM
๐ŸšจCyberattack Alert โ€ผ๏ธ

๐Ÿ‡ท๐Ÿ‡ดRomania - National Institute of Materials Physics (NIMP)

Nova hacking group claims to have breached National Institute of Materials Physics (NIMP).

Allegedly, the attackers exfiltrated 700 GB of data.
November 24, 2025 at 11:26 AM
๐Ÿšจ๐ŸšจAttackers are exploiting the critical WSUS flaw CVE-2025-59287 to gain SYSTEM-level remote code execution and deploy ShadowPad, a modular backdoor linked to Chinese state-sponsored actors.

Source: thehackernews.com/2025/11/shad...
November 24, 2025 at 11:24 AM