ransomware
Credible
Madagascar (MG)
telecom
Orange Madagascar listed by the Qilin ransomware group
Orange Madagascar
CompanyOrange Madagascar
Domainorange.mg
CountryMadagascar (MG)
Sectortelecom
Breach date2026-03-06
People affected1,000,000
Ransomware groupqilin
Data typessubscriber data, network records, corporate information
Overview
The Qilin ransomware group has listed Orange Madagascar, the Malagasy subsidiary of the international telecom operator, on its leak site. The listing appeared on 6 March 2026.
What was published
The group has listed the operator as a victim but has not published detailed data descriptions at this stage. Telecom operators hold subscriber records, network data and corporate information, which are the likely contents of any exfiltration. At the time of analysis, the group's leak page was not reachable.
Risks for affected individuals
- Subscriber records, if exposed, enable phishing and fraud.
- Network data could reveal infrastructure details.
- Employees' information may be included.
What remains unknown
- Whether subscriber data is included.
- The volume of data exfiltrated.
- The response status of the operator.
What affected people should do
Subscribers should be alert to phishing messages and monitor account activity. Orange Madagascar should review affected systems, notify regulators and customers if subscriber data is involved, and communicate transparently about the incident.
Sources
- http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/view?uuid=dff04a2c-3922-3de4-8145-ebeebbe9d770