ransomware Credible Libya (LY) telecom

Libyana: Customer Data Exposure Claimed by ALPHV

Libyana

📅 12 May 2023
CompanyLibyana
CountryLibya (LY)
Sectortelecom
Breach date2023-05-12
People affected1,000,000
Ransomware groupALPHV
Data typesCustomer data

Overview

In May 2023, the ALPHV ransomware group listed Libyana, one of Libya's largest mobile phone operators, on its leak site. The group claimed that the company was hacked and that a large amount of customer data was exposed as a result of weaknesses in its systems.

What was published

The listing described Libyana as a company with a number of vulnerabilities that allowed access to its customer data. The exact contents of the leak were not detailed in the post, and no sample files were referenced in the listing itself. The claim points to customer records held by the operator.

Risks for affected individuals

  • Mobile subscribers in Libya could have personal details such as names, phone numbers, and account information exposed.
  • Exposed subscriber data can be reused for SIM swap attempts or account takeover on linked services.
  • The data could feed targeted phishing campaigns aimed at Libyana customers.

What remains unknown

  • The volume of records and the precise data fields involved were not disclosed.
  • It is not confirmed whether the operator publicly acknowledged the incident or notified affected users.
  • The current status of the data, including whether it was sold or released, is not known.

What affected people should do

Libyana subscribers should watch for unusual activity on their mobile accounts, including unexpected SIM changes or password resets. Customers should be cautious with messages that reference Libyana and ask for personal details, and should report suspected fraud to the operator's support channels.