leak
Credible
Côte d'Ivoire (CI)
education
Virtual University of Cote d'Ivoire: Moodle database leaked
Virtual University of Cote d'Ivoire (UVCI)
CompanyVirtual University of Cote d'Ivoire (UVCI)
CountryCôte d'Ivoire (CI)
Sectoreducation
Breach date2026-07-05
People affected150,000
Data typesNot disclosed
<p>On 05 July 2026, a forum user published to have leaked data belonging to <strong>Virtual University of Cote d'Ivoire (UVCI)</strong>, Côte d'Ivoire on a hacking forum. The claimed data includes full names, email addresses, phone numbers. A limited sample was published to support the claim.</p>
<h2>What the source reveals</h2>
<p>An actor using the name Sensitive2025 leaked a database of the Virtual University of Cote d'Ivoire (UVCI), including Moodle user records with password hashes.</p>
<h2>Risks</h2>
<ul>
<li>Targeted phishing campaigns using compromised email addresses to distribute malware or harvest credentials from employees and customers</li>
<li>Credential stuffing and account takeover attacks if password hashes are cracked and reused across multiple services</li>
<li>Identity theft and impersonation using exposed personal identification documents and biometric data</li>
<li>Targeting of students and academic staff for phishing or social engineering using institutional data</li>
<li>Academic fraud if grade records, transcripts, or certification data were compromised or altered</li>
<li>Long-term identity risks for students whose personal data may circulate for years after graduation</li>
<li>Reputational damage and erosion of customer, citizen, or stakeholder trust in the affected organisation</li>
<li>Legal liability and regulatory fines under applicable data protection frameworks</li>
</ul>
<h2>What remains unknown</h2>
<ul>
<li>the total volume of data compromised and whether it includes additional categories beyond those disclosed</li>
<li>the method by which the data was obtained - whether through a direct database compromise, an insecure API, or a third-party breach</li>
<li>whether the data has been sold or distributed to additional parties beyond the forum post</li>
</ul>
<h2>Conclusion</h2>
<p>This incident confirms that Virtual University of Cote d'Ivoire (UVCI)'s data has been compromised and is circulating on underground forums. Students and staff whose data may have been exposed should change passwords on institutional and personal accounts and remain alert to phishing attempts referencing the university.</p>