Red Hot Cyber
Cybersecurity is about sharing. Recognize the risk, combat it, share your experiences, and encourage others to do better than you.
Cybersecurity is about sharing. Recognize the risk,
combat it, share your experiences, and encourage others
to do better than you.
Redhotcyber Banner Sito 320x100px Uscita 101125
HackTheBox 970x120 1
Possible breach at Ukraine’s Ministry of Foreign Affairs: the Qilin Ransomware group claims responsibility for the attack

Possible breach at Ukraine’s Ministry of Foreign Affairs: the Qilin Ransomware group claims responsibility for the attack

7 March 2025 17:00

The Qilin Ransomware group claims to have compromised the systems of Ukraine’s Ministry of Foreign Affairs, stealing private correspondence, personal information, and official decrees. According to the attackers, some of this data has already been sold to third parties.

At the moment, it is not possible to confirm the veracity of these statements because the organization has not yet released any official press statement on its website regarding the incident. Consequently, the information presented in this article should be treated solely as an intelligence source.

Details of the Alleged Breach

  • Private correspondence: Could include confidential emails and internal communication documents.
  • Personal information: Contact details, sensitive data about staff or other individuals involved.
  • Official decrees: Potentially classified or strategically significant government documents.

Status of the Investigation

  • The absence of an official press release prevents confirming or denying the news.
  • The Qilin Ransomware group claims to have already monetized part of the obtained information by selling it to third parties.
  • No evidence has been published to verify either the sale or the actual contents of the stolen data.

Conclusions

At present, the alleged breach claimed by the Qilin Ransomware group remains unconfirmed by institutional sources. However, given the potentially strategic nature of the stolen data, the gravity of the situation requires careful risk assessment and the implementation of countermeasures by the competent authorities.

RHC will continue to monitor the situation and publish any further updates if significant information emerges. We invite anyone with relevant details to contact us via the whistleblower’s encrypted email, ensuring the possibility of remaining anonymous.

Follow us on Google News to receive daily updates on cybersecurity. Contact us if you would like to report news, insights or content for publication.

Pietro Melillo 300x300
Head of the Dark Lab group. A Computer Engineer specialised in Cyber Security with a deep passion for Hacking and technology, currently CISO of WURTH Italia, he was responsible for Cyber Threat Intelligence & Dark Web analysis services at IBM, carries out research and teaching activities on Cyber Threat Intelligence topics at the University of Sannio, as a Ph.D, author of scientific papers and development of tools to support cybersecurity activities. Leads the CTI Team "RHC DarkLab"
Areas of Expertise: Cyber Threat Intelligence, Ransomware, National Security, Training