Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Everest Ransomware Group Allegedly Exposes 343 GB of Sensitive Data in Major Under Armour Breach

Everest Ransomware Group Allegedly Exposes 343 GB of Sensitive Data in Major Under Armour Breach

Posted on November 18, 2025November 18, 2025 By CWS

The infamous Everest ransomware group has claimed accountability for a serious cyber breach towards Below Armour, the worldwide sportswear big, alleging the theft of 343 GB of inside information that might impression tens of millions of consumers and workers worldwide.

The announcement, posted on the group’s darkish net leak web site on November 16, 2025, features a pattern of stolen information to substantiate the claims, escalating issues over potential identification theft and phishing dangers.

In line with Everest, the compromised dataset encompasses an unlimited array of non-public and company data from Below Armour’s programs.

Everest Ransomware Group Armour Breach

This contains tens of millions of consumer information with transaction histories, consumer IDs, e mail addresses, bodily addresses, cellphone numbers, passport particulars, gender data, and each work and private e mail contacts.

Worker information from varied nations can be implicated, alongside inside firm paperwork. The pattern supplied by the hackers reveals delicate buyer procuring histories, product catalogs with SKUs, costs, and availability, in addition to advertising logs and consumer habits analytics.

These particulars counsel the breach focused Below Armour’s buyer relationship administration, personalization, or e-commerce databases, doubtlessly originating from advertising or product registration programs.​

Everest, lively since 2021, has a monitor document of high-profile assaults, together with claims towards AT&T’s service database, which uncovered over 500,000 customers, 1.5 million passenger information from Dublin Airport, and inside information from Coca-Cola.

The group issued a seven-day ultimatum to Below Armour through Tox messenger, demanding contact earlier than the countdown timer expires and threatening to leak the information if the demand will not be totally met. No ransom quantity was specified within the preliminary publish, however Everest’s sample entails escalating leaks for non-compliant victims.​

Below Armour, headquartered in Baltimore, Maryland, has not but publicly confirmed or denied the breach as of November 18. The corporate, which serves over 190 nations and boasts manufacturers like MyFitnessPal (beforehand hit in a 2018 incident affecting 150 million customers), may face vital fallout.

Previous breaches on the agency uncovered usernames, emails, and hashed passwords, however spared monetary information; this incident seems far broader, doubtlessly together with passports and transaction logs that allow focused fraud.​

Cybersecurity specialists warn that such exposures heighten the danger of provide chain assaults and social engineering. “Ransomware teams like Everest are pivoting to information exfiltration over encryption, turning breaches into intelligence goldmines,” famous a Mandiant analyst.

The U.S. Cybersecurity and Infrastructure Safety Company (CISA) has not but listed this in its Identified Exploited Vulnerabilities catalog, however comparable incidents have prompted federal alerts.

Clients are urged to observe accounts for uncommon exercise, change passwords on Below Armour-linked companies, allow multi-factor authentication, and look ahead to phishing emails masquerading as breach notifications.

Enterprises ought to scan for Everest indicators of compromise, comparable to Qakbot malware or Cobalt Strike beacons, which the group usually makes use of. Below Armour has been contacted for remark; till verified, these stay allegations, however the pattern’s element lends credibility.​

Observe us on Google Information, LinkedIn, and X for every day cybersecurity updates. Contact us to characteristic your tales.

Cyber Security News Tags:Allegedly, Armour, Breach, Data, Everest, Exposes, Group, Major, Ransomware, Sensitive

Post navigation

Previous Post: Microsoft Mitigates Record 15.72 Tbps DDoS Attack Driven by AISURU Botnet
Next Post: W3 Total Cache Command Injection Vulnerability Exposes 1 Million WordPress Sites to RCE Attacks

Related Posts

Microsoft PlayReady DRM Used by Netflix, Amazon, and Disney+ Leaked Online Microsoft PlayReady DRM Used by Netflix, Amazon, and Disney+ Leaked Online Cyber Security News
OpenAI Atlas Browser Vulnerability Allows Malicious Code Injection into ChatGPT OpenAI Atlas Browser Vulnerability Allows Malicious Code Injection into ChatGPT Cyber Security News
Top 10 Best VPN Services of 2026 Top 10 Best VPN Services of 2026 Cyber Security News
Leak Zone Dark Web Forum Database Exposes 22 Million Users’ IP Addresses and Locations Leak Zone Dark Web Forum Database Exposes 22 Million Users’ IP Addresses and Locations Cyber Security News
New Mamona Ransomware Attack Windows Machines by Abusing Ping Commands New Mamona Ransomware Attack Windows Machines by Abusing Ping Commands Cyber Security News
How SOC Teams Detect Can Detect Cyber Threats Quickly Using Threat Intelligence Feeds How SOC Teams Detect Can Detect Cyber Threats Quickly Using Threat Intelligence Feeds Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News