Editorial policy
- We do not name victims. Organizations are identified by sector and a masked descriptor only (e.g.,
Vil*** Hot***).- Claims ≠ confirmations. Extortion-site claims are recorded as claimed until the organization or authorities confirm. Extortion sites lie, duplicate, and recycle.
- No leaked data is hosted, linked, or described in detail. We track that a claim exists, not its contents.
- Corrections welcome: contact us — verified takedowns/withdrawals update the record transparently.
Why track claims at all?
Because “it happens here too” is the sentence every Malaysian CISO needs on record. Local claim counts by sector, sourced and dated, turn budget conversations from abstract to concrete — that is this tracker’s entire purpose. Context that matters when reading: under the Cyber Security Act 2024, NCII entities have mandatory incident-reporting obligations to NACSA; any organization can report via MyCERT’s Cyber999.
Ransomware Tracker
Live tracker of extortion claims against Malaysian organizations since 2018 — by group, sector, and year: Ransomware Tracker →