Ransomware victim disclosure
← All victimsUiTM Holdings
Claimed by Thegentlemen · listed 2 days ago
Status timeline
- ListedJun 11, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- Malaysia
- Sector
- Education
- Listed on leak site
- Jun 11, 2026
About the victim
AI dossier — public-source company profileUiTM Holdings is the investment holding arm of Universiti Teknologi MARA (UiTM), Malaysia's largest university. It commercialises the university's assets and expertise across property, healthcare, education, and technology sectors, with a primary mission to generate sustainable revenue to support UiTM's academic and research programmes.
- Industry
- Higher Education & University Investment Holdings
Attack summary
Severity: medium — Data published from a major Malaysian university holding company with broad operational scope (property, healthcare, education, technology). No specific data categories confirmed, and no proof files enumerated in the available post excerpt, but the disclosure status indicates data has been published.The group claims to have accessed and published data from UiTM Holdings. No specific details on encryption, exfiltration scope, or data categories are provided in the post.
What the group claims
***.com zoominfo.com/c/ui-holdings-sdn-bhd/390203835 UiTM Holdings is the investment holding arm of Universiti Teknologi MARA (UiTM), Malaysia’s largest university. It commercialises the university’s assets and expertise across property, healthcare, education, and technology. Its primary mission is to generate sustainable revenue to support UiTM’s academic and research programmes
Sources
- Victim siteuitmholdings.com
Source
Indexed 2 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

