Ransomware victim disclosure
← All victimsBanco Hipotecario del Uruguay
Claimed by crypto24 · listed 8 months ago
Status timeline
- Listed
Oct 3, 2025
- Data leaked
At a glance
- Group
- crypto24
- Status
- Data leaked
- Country
- UY
- Sector
- Financial Services
- Listed on leak site
- Oct 3, 2025
- Data size
- 700 GB
About the victim
AI dossier — public-source company profileBanco Hipotecario del Uruguay (BHU) is a Uruguayan state-owned mortgage bank operating under the country's financial system. It provides mortgage loans, savings products, and related financial services primarily to individuals and families in Uruguay. As a public institution it handles large volumes of regulated customer financial and property data.
- Industry
- Mortgage & Retail Banking
Attack summary
Severity: critical — 700 GB of confirmed exfiltrated data from a state-owned bank includes regulated customer PII at scale, financial records, credit/risk files, and property/title documents — all categories of highly sensitive regulated data — and the data has already been published, maximising harm potential.The group crypto24 claims to have exfiltrated over 700 GB of data from Banco Hipotecario del Uruguay, including customer PII, financial and accounting records, legal contracts, property and title documents, credit and risk files, market and trading operations data, and IT/security configuration information. The disclosed status indicates the data has already been published.
Data the group says was taken
AI dossier — extracted from the leak post- Customer PII
- Financial and accounting records
- Legal contracts
- Property and title documents
- Credit and risk files
- Market and trading operations data
- IT and security configuration information
What the group claims
We have exfiltrated over 700GB of most sensitive highly sensitive customer PII, financial/accounting records, legal/contracts, property/title documents, credit and risk files, market/trading operations data, and IT/security configuration information.
Sources
- Victim sitewww.bhu.net
Source
Indexed 8 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
