Cybersecurity
CIMB Securities Reportedly Claimed by INC Ransom
The ransomware group INC Ransom has reportedly listed CIMB Securities on its data-leak site, claiming to have compromised the Malaysian stockbroking firm.
The ransomware group INC Ransom has reportedly listed CIMB Securities on its data-leak site, claiming to have compromised the Malaysian stockbroking firm.
Incident Details
The listing was observed on 31 August 2026 and identifies:
- Threat actor: INC Ransom
- Victim: cimbsecurities[.]com
- Sector: Financial Services
- Country: Malaysia
The threat actor has also published a screenshot that appears to contain Malaysian MyKad-related material.
Important Notice
⚠️ Caveat: This is currently an unverified threat-actor claim and has not been independently confirmed.
Significance
The development is notable given CIMB Securities’ role in Malaysia’s capital-markets ecosystem.
Update — 15 September 2026: listing removed
The INC Ransom entry for cimbsecurities[.]com has been removed from the group’s data-leak site — deleted, not hidden.
Last seen present 6 September, first seen absent 15 September (visible ~6 days).
No statement from INC Ransom on the justification of the removal.
Unchanged: the claim was never independently verified.
#CyberSecurity #Ransomware #CIMB #Malaysia #ThreatIntelligence #INCRansom #DataBreach #FinancialServices #CyberThreats #JPDP #BursaSecurities #SecuritiesCommission #Malaysia #Pesuruhjaya #Perlindungan #Data #Peribadi #Malaysia #PPDP