ransomware Credible Madagascar (MG) telecom

Orange Madagascar listed by the Qilin ransomware group

Orange Madagascar

📅 06 March 2026
CompanyOrange Madagascar
Domainorange.mg
CountryMadagascar (MG)
Sectortelecom
Breach date2026-03-06
People affected1,000,000
Ransomware groupqilin
Data typessubscriber data, network records, corporate information

Overview

The Qilin ransomware group has listed Orange Madagascar, the Malagasy subsidiary of the international telecom operator, on its leak site. The listing appeared on 6 March 2026.

What was published

The group has listed the operator as a victim but has not published detailed data descriptions at this stage. Telecom operators hold subscriber records, network data and corporate information, which are the likely contents of any exfiltration. At the time of analysis, the group's leak page was not reachable.

Risks for affected individuals

  • Subscriber records, if exposed, enable phishing and fraud.
  • Network data could reveal infrastructure details.
  • Employees' information may be included.

What remains unknown

  • Whether subscriber data is included.
  • The volume of data exfiltrated.
  • The response status of the operator.

What affected people should do

Subscribers should be alert to phishing messages and monitor account activity. Orange Madagascar should review affected systems, notify regulators and customers if subscriber data is involved, and communicate transparently about the incident.

Sources

  • http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/view?uuid=dff04a2c-3922-3de4-8145-ebeebbe9d770