ransomware Credible Uganda (UG) energy

Uganda Electricity Transmission Company (UETCL) listed by the Qilin ransomware group

Uganda Electricity Transmission Company (UETCL)

📅 12 August 2025
CompanyUganda Electricity Transmission Company (UETCL)
CountryUganda (UG)
Sectorenergy
Breach date2025-08-12
People affected100,000
Ransomware groupqilin
Data typesoperational records, corporate data, employee information

Overview

The Qilin ransomware group has listed the Uganda Electricity Transmission Company Limited (UETCL), the state entity responsible for electricity transmission in Uganda, on its leak site. The company organises electricity delivery within the country and to neighbouring states. The listing appeared on 12 August 2025. At the time of analysis, the group's leak page was not reachable.

What was published

The group claims to have exfiltrated data from the transmission company. The archive is expected to include operational records, infrastructure data and employee information.

Risks for affected individuals

  • Employees' personal records may be exposed.
  • Operational and infrastructure data could be sensitive.
  • Corporate information may be misused.

What remains unknown

  • The volume of data exfiltrated.
  • The exact contents of the leak.
  • Whether the data has been published elsewhere.

What affected people should do

The company should coordinate with Ugandan cybersecurity authorities, review affected systems, and inform staff. Employees should be alert to phishing referencing the transmission company.

Sources

  • http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/view?uuid=e086b35d-3b27-34ef-bbb3-2e22f197f1ce