[FUNKSEC] – Ransomware Victim: mts[.]gov[.]eg
Ransomware Group: FUNKSEC
VICTIM NAME: mts[.]gov[.]eg
NOTE: No files or stolen information are [exfiltrated/downloaded/taken/hosted/seen/reposted/disclosed] by RedPacket Security. Any legal issues relating to the content of the files should be directed at the attackers directly, not RedPacket Security. This blog is simply posting an editorial news post informing that a company has fallen victim to a ransomware attack. RedPacket Security is in no way affiliated or aligned with any ransomware threat actors or groups and will not host infringing content. The information on this page is fully automated and redacted whilst being scraped directly from the FUNKSEC Onion Dark Web Tor Blog page.
AI Generated Summary of the Ransomware Leak Page
The ransomware leak page features a significant ransom demand linked to the entity associated with the domain mts.gov.eg, which belongs to the Egyptian Ministry of Transport. The ransom demanded is set at 1 million, with an alternative offer to sell the stolen data for 50,000. The leaked content provides a glimpse into the sensitive data claimed to be held by the attackers, emphasizing the severity of the breach. The published date for this threat is 2025. It is important to note that this information suggests a security compromise affecting a key governmental institution responsible for transportation, potentially impacting various infrastructure and services within Egypt.
The description of the compromised data includes various documents such as Excel spreadsheets and PDFs, alongside details regarding.secret payments, employee information, ship movements, types, and route plans. This range of sensitive material indicates a breach of critical operational data that could have wide-reaching implications if exploited maliciously. The leak page also warns potential buyers regarding the availability of the stolen information for sale if the ransom remains unpaid, which further highlights the aggressive tactics used by ransomware groups. The presence of nine images likely includes screenshots of the compromised data or related documents, contributing to the overall threatening nature of this ransomware attack.
A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.
If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below
To keep up to date follow us on the below channels.