ransomware
Credible
Kenya (KE)
technology
Turnkey Africa listed by the Qilin ransomware group
Turnkey Africa
CompanyTurnkey Africa
Domainturnkeyafrica.com
CountryKenya (KE)
Sectortechnology
Breach date2025-10-15
People affectedNot disclosed
Ransomware groupqilin
Data typesclient data, insurance platform records, corporate information
Overview
The Qilin ransomware group has listed Turnkey Africa, a technology solutions provider for the insurance industry across Africa, on its leak site. The company modernises operations for insurers, bancassurers and pension administrators. The listing appeared on 15 October 2025. At the time of analysis, the group's leak page was not reachable.
What was published
The group claims to have exfiltrated data from the technology company. The archive is expected to include client records, platform data and corporate information.
Risks for affected individuals
- Insurance clients may have policyholder data exposed.
- Platform data could be misused.
- Employees' information may be included.
What remains unknown
- The volume of data exfiltrated.
- The exact contents of the leak.
- Whether the data has been published elsewhere.
What affected people should do
Client organisations should review the sensitivity of shared data and watch for suspicious communications. Turnkey Africa should notify clients and staff, secure its systems, and coordinate with Kenyan authorities on the response.
Sources
- http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/view?uuid=17cc1bcb-95a5-3785-b0b6-23bc5c001f10