Emtel listed by the arcusmedia ransomware group
Emtel
Overview
On 15 September 2024, the Arcus Media ransomware group listed Emtel on its leak site. Emtel is a leading telecommunications operator in Mauritius, offering mobile, broadband and related services. The listing was part of Arcus Media's disclosure stream of that period.

What was published
The Arcus Media listing for Emtel did not disclose the volume of data exfiltrated or its contents. The group's pattern involves naming a victim and later releasing an archive. No data linked to Emtel was observed publicly released during the analysis window.
Risks for affected individuals
Emtel subscribers could be affected if customer records, call data or billing information were among the stolen files. Such data enables phishing, SIM-related fraud and identity theft. Corporate clients may face exposure of account and service documentation.
What remains unknown
The categories and volume of stolen data, and whether Arcus Media published files, are not confirmed. Emtel has not released a public statement detailing the incident.
What affected people should do
Subscribers should reset passwords for Emtel accounts, enable two-factor authentication where available, and treat messages referencing account details with caution. Organisations should verify any communication claiming to come from the operator.
Sources
- http://arcuufpr5xxbbkin4mlidt7itmr6znlppk63jbtkeguuhszmc5g7qdyd.onion/?p=234