DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Bits ‘n Pieces (Trozos y Piezas)

Posted on January 13, 2023 by chum1ng0

ES: City Council of Durango “Completely Paralyzed” by Cyberattack

The City Council of Durango in Biscay reports it is “completely paralyzed” by a cyberattack last Saturday.

The news site Durangon quotes the Deputy Mayor, Iker Urkiza (machine translation) that the ‘hacking  “has been serious” and that it will paralyze their computer systems “for weeks.”  According to the news site, all the council’s computers and corporate email accounts remain deactivated since the weekend.

The city has reportedly received a ransom note, but the city will not be paying any ransom. The news report did not identify what malicious actors are involved. The attack has been reported to the Basque Data Protection agency and will be reported to the National Cryptological Center.

In the meantime, citizens have complained that although the city demands certain documents by a deadline, they are not telling the citizens whether the deadline will be extended because people are unable to file the necessary documents.

MX: Data Leak Involving the Quintana Roo Attorney General’s Office

The Quintana Roo Attorney General’s Office appears to have suffered a data leak after a file with 7,910 complaints was published on a popular hacking forum.

The goverment agency responded on its Twitter account (Machine Translation):

“The #FGEQuintanaRoo informs that it initiated an investigation folder for the theft of registration forms of online complaints filed digitally before this autonomous body.”

“The complaint forms refer to the loss of documents, minor thefts, threats, among others. The other computer systems of the Prosecutor’s Office continue to work with the security they should, and the information is not at risk.”

The government seems to be saying that it is looking into the leak but there is no risk to other government departments or databases. These complaints reportedly involve loss of papers, minor thefts, and threats.

In contrast to what the government writes, the forum user has written a lengthy statement in Spanish that suggests the user is a hacktivist. Their statement, machine translated into English, begins:

The Attorney General’s Office of Quintana Roo, in charge of Oscar Montes de Oca Rosales, exposes the security of national and foreign citizens of that important tourist pole by not having any security protocol and protection of personal data of its online complaint system. It is obvious that this valuable online complaint service, where directly or anonymously, anyone can initiate an investigation folder, relating the facts of which he was a victim or of which they have knowledge; the Prosecutor uses it for his convenience by deciding which he investigates, which he covers up and which he ignores without caring about the well-being of citizens.

A critical vulnerability in their servers allowed me to obtain the entire database of complaints filed online since the system was opened until today, and using an OCR I extracted the texts of the complaints for an in-depth analysis.

I discovered a lot of sensitive and crucial information to solve different crimes in that State, crimes that have to do with disappearance and sale of women of all ages, sexual exploitation, child prostitution networks, kidnappings, drug dealing, executions, extortion and corruption of different public officials and police.

The forum user then continues to make derogatory comments about named individuals and the system.

Neither the government nor named individuals have as yet responded to the forum user’s character attacks.

VE:  The Sistema Integral De Control Alimentario Suffers a Cyberattack

Sistema Integral De Control Alimentario (SICA) is a technological platform implemented by the National Superintendence of AgriFood Management (SUNAGRO), which controls the agrifood chain in Venezuela. On January 11, the SUNAGRO account tweeted:

#ATENCIÓN

Se le informa a todos los Sujetos de Aplicación que motivado a un ataque cibernético a nuestros servidores del Sistema Integral de Control Agroalimentario (SICA), el mismo se encuentra fuera de servicio. #JuntosPorLaPatria#SunagroVanguardia pic.twitter.com/OCFaSKzdtD

— Sunagro Oficial (@SunagroOficial) January 11, 2023

Machine translation:

All Application Subjects are informed that due to a cyberattack on our servers of the Comprehensive AgriFood Control System (SICA), it is out of service.

A copy of their official notice was also posted on Twitter, but did not provide specific details about the attack or its impact. Nor was there any mention of ransom or the identity of the attackers.

As of today, Sunagro reports that they are operational.

BR: Court of Justice of the State of Pará Suffered a Cyberattack

The Court of Justice of the State of Pará announced (machine translation) that

the computer network of the Court of Justice of Pará identified an alleged cyberattack. Immediately, the Information Technology Secretariat began the corresponding procedures. There was no data loss as the main systems were not accessed.

As a precaution, the services will not be available from January 11 to 15, 2023 due to essential security procedures.

There doesn’t seem to be any updates from the court or news media since then.

BR: GhostSec Leaks Information from Brazilian Government Webmail

Many individuals and groups have called themselves “GhostSec” over the years. On January 10, the Telegram channel of one such group calling themselves GhostSec posted in both English and Portuguese that they had gotten access to the Government of brazil’s webmail (gov.br)

Now noticing the recent protests and riots in brazil do with this leak coming straight from the government of brazil whatever it is that you see best. but originally we did this purely to fuck with the government of brazil and humiliate their embarrassing security

keeping this one short we got 845MB of data from the webmail of gov.br, THE DATA IS ALL YOURS FOR FREE! Includes different Personal information, ID’s, passport info, different receipts and emails from the government and more. We haven’t had the time to go over all the data yet but you can already imagine the amount of shit you can find going through this leak 🙂

When we looked at the files we found that they are from the Prefeitura Municipal de Russas, Ceará, the documents that we can observe are Medical Certificate, Voucher, Resume, registration forms, etc. On reviewing their website we did not find any notification of any data leakage occurred recently, neither in their social networks, we also sent them an email to see if they have been alerted about their files and also encouraging them to review their systems.

GhostSec post on Telegram claims to have acquired access to Brazilian government's webmail (gov.br).
GhostSec Telegram post.

An email inquiry sent to the government yesterday to ask about the claims did not receive any reply.

ES: Update to Centro Médico Virgen De La Caridad Ransomware Incident

On January 2, DataBreaches reported that Hive ransomware gang had added Centro Médico Virgen de la Caridad to its leak site. A spokesperson for Hive informed DataBreaches that they had partially encrypted the hospitals and health system.

On January 12, Hive leaked data from the health system. The leak included patient data.

Screenshot of directory showing some of CMVC's leaked files.
Some of the files leaked by Hive. Filenames redacted by DataBreaches.net.

As of today, there is still no statement on the health system’s website or Twitter account. The latter was last updated on December 30, after the claimed attack by Hive. CMVC never responded to two inquiries from DataBreaches earlier this month. DataBreaches has today sent an inquiry to the Spanish data protection regulator to ask whether the incident has been reported to them.


Editing and additional material by Dissent.

Category: Breach IncidentsCommentaries and AnalysesGovernment SectorHackMalwareMiscellaneousNon-U.S.

Post navigation

← Canada’s Okanagan College warns of potential privacy breach after cyber attack
CL0P adds the New York City Bar Association to their leak site →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Nigerian National Sentenced To More Than Five Years For Hacking, Fraud, And Identity Theft Scheme
  • Data breach of patient info ends in firing of Miami hospital employee
  • Texas DOT investigates breach of crash report records, sends notification letters
  • PowerSchool hacker pleads guilty, released on personal recognizance bond
  • Rewards for Justice offers $10M reward for info on RedLine developer or RedLine’s use by foreign governments
  • New evidence links long-running hacking group to Indian government
  • Zaporizhzhia Cyber ​​Police Exposes Hacker Who Caused Millions in Losses to Victims by Mining Cryptocurrency
  • Germany fines Vodafone $51 million for privacy, security breaches
  • Google: Hackers target Salesforce accounts in data extortion attacks
  • The US Grid Attack Looming on the Horizon

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • California county accused of using drones to spy on residents
  • How the FBI Sought a Warrant to Search Instagram of Columbia Student Protesters
  • Germany fines Vodafone $51 million for privacy, security breaches
  • Malaysia enacts data sharing rules for public sector
  • U.S. Enacts Take It Down Act
  • 23andMe Bankruptcy Judge Ponders Trump Bill’s Injunction Impact
  • Hell No: The ODNI Wants to Make it Easier for the Government to Buy Your Data Without Warrant

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.