Mauritanian telecom RIMATEL internal database leaked on DarkForums
RIMATEL (rimatel.mr)
Overview
On 15 May 2026, a DarkForums user posted what they describe as the compromised internal database of RIMATEL, a private company in Mauritania. The post says sensitive corporate data was extracted from multiple systems, including customer and payment information.

What was published
The thread lists customer data with personal identification records, payment receipts and transaction records, employee information, and billing invoices and financial documents. A sample shows subscription records with customer names, installation status, billing dates and payment amounts in Mauritanian ouguiya.

Risks for affected individuals
- Telecom customer records with billing details enable targeted scams and SIM-swap style fraud.
- Employee information in the same leak raises the risk of phishing against staff.
What remains unknown
- The total number of customers and employees affected.
- Whether the data was obtained through a ransomware attack or another intrusion.
- The full size of the extracted dataset.
What affected people should do
RIMATEL customers should watch for fraudulent billing messages and verify any payment request through official channels. The company should confirm the scope of the leak and notify affected customers and staff.
Sources
- https://darkforums.ru/Thread-RIMATEL-MR-%E2%80%94-Internal-Database-Compromised