Luso Cuanzа listed by the qilin ransomware group
Luso Cuanzа
Overview
In August 2024, the Qilin ransomware group listed Luso Cuanza on its leak site. Luso Cuanza is an information technology company operating since 1991, active in Angola with services spanning systems integration and IT solutions. The listing placed the Angolan firm among Qilin's victims of the period.
What was published
The Qilin listing for Luso Cuanza did not disclose the volume of data exfiltrated or the categories involved. Qilin has published stolen data for other victims following its countdown format. No archive linked to Luso Cuanza was observed during the analysis window.
Risks for affected individuals
As an IT services company, Luso Cuanza may hold client infrastructure documentation, credentials and project data. If stolen, this material could enable targeted attacks against its clients, while employees could face exposure of personal and payroll records.
What remains unknown
The scope of the exfiltration, the records involved, and whether the group published files are not confirmed. No official statement from Luso Cuanza about the incident has been identified.
What affected people should do
Clients of Luso Cuanza should review credentials and contracts, and watch for suspicious communications referencing their systems. Employees should reset passwords and enable multi-factor authentication on business accounts.
Sources
- http://kbsqoivihgdmwczmxkbovk7ss2dcynitwhhfu5yw725dboqo5kthfaad.onion/site/view?uuid=94755a3d-4dd5-33d2-b87a-9b74e94bcc09