Ransom! CNESTEN (OCT-2026)
Qilin ransomware is claimed to have targeted CNESTEN in Morocco, resulting in disruption and potential data compromise. The claim originates from the threat actor qilin and impacts Morocco #morocco

Incident Details

  • Victim: CNESTEN
  • Sector: Government & Defense
  • Country: MA
  • Actor: qilin
  • Source: http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/blog?uuid=4d0df6c5-6ea6-45ef-b37c-941b6d3427f1
  • Discovered: 2026-10-11T12:03:56.093755+00:00
  • Published: 2026-10-11T12:03:33.642327+00:00

Information

  • CNESTEN, a victim in MA, was targeted by Qilin ransomware.

Disclaimer: This post is based on public claims made by the ransomware group "qilin". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live