The ransomware group INC Ransom has reportedly listed CIMB Securities on its data-leak site, claiming to have compromised the Malaysian stockbroking firm.

Figure 1. Data Leak Site
Figure 1. Data Leak Site

Incident Details

The listing was observed on 31 August 2026 and identifies:

  • Threat actor: INC Ransom
  • Victim: cimbsecurities[.]com
  • Sector: Financial Services
  • Country: Malaysia

The threat actor has also published a screenshot that appears to contain Malaysian MyKad-related material.

Important Notice

⚠️ Caveat: This is currently an unverified threat-actor claim and has not been independently confirmed.

Significance

The development is notable given CIMB Securities’ role in Malaysia’s capital-markets ecosystem.

Update — 15 September 2026: listing removed

The INC Ransom entry for cimbsecurities[.]com has been removed from the group’s data-leak site — deleted, not hidden.

Last seen present 6 September, first seen absent 15 September (visible ~6 days).

No statement from INC Ransom on the justification of the removal.

Unchanged: the claim was never independently verified.


#CyberSecurity #Ransomware #CIMB #Malaysia #ThreatIntelligence #INCRansom #DataBreach #FinancialServices #CyberThreats #JPDP #BursaSecurities #SecuritiesCommission #Malaysia #Pesuruhjaya #Perlindungan #Data #Peribadi #Malaysia #PPDP