ransomware Credible Liberia (LR) energy

Liberia Electricity Corporation: Ransomware Attack by 0APT Group - National Grid Data Exposed

Liberia Electricity Corporation

📅 02 February 2026 👁️ 1 views
CompanyLiberia Electricity Corporation
CountryLiberia (LR)
Sectorenergy
Breach date2026-02-02
People affected100,000
Data typesNot disclosed
<p>On 02 February 2026, the <strong>0apt</strong> ransomware group listed <strong>Liberia Electricity Corporation</strong> on its dedicated leak site in Liberia. The group has exfiltrated data from the organisation, an energy sector company, before publishing the victim on its leak site.</p> <h2>What the source reveals</h2> <p>LEC Network Under Control. We hold the blueprints of the national power grid and customer billing databases. Silence from the board will lead to data exposure.</p> <h2>Risks</h2> <ul> <li>Exposure of operational technology documentation and industrial control system information</li> <li>Disruption to energy production or distribution if operational systems were affected</li> <li>Commercial espionage targeting energy contracts, exploration data, and pricing information</li> <li>Safety risks if industrial control system configurations were modified or disabled</li> <li>Permanent loss of data integrity if backups were also compromised or encrypted</li> <li>Regulatory and legal consequences depending on data protection laws in the affected jurisdictions</li> </ul> <h2>What remains unknown</h2> <ul> <li>the volume and specific data types exfiltrated from the organisation</li> <li>the date of the initial intrusion and the attack vector used</li> <li>whether the organisation engaged with the attackers or paid any ransom demand</li> </ul> <h2>Conclusion</h2> <p>Ransomware attacks on energy organisations can disrupt operations and expose sensitive data across supply chains. The affected organisation should conduct a thorough forensic investigation, notify relevant regulatory authorities, and communicate transparently with affected stakeholders. Organisations in Liberia should review their ransomware preparedness, including offline backup verification and incident response testing.</p>