NewNet
Attack Intelligence
NewNet was compromised in a ransomware attack attributed to dragonforce in July 2026. The organization, operating in the Telecommunication sector in SA, was added to the group's data leak site as part of an extortion campaign.
dragonforce operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
NewNet S.A. is a Colombian company specializing in managing IT risks, offering advanced and personalized data protection services. Their extensive range of services includes information security, cybersecurity, business continuity, and governance, risk, and compliance (GRC) solutions. They cater to various sectors, providing consulting, technology, and managed services to ensure optimal IT operations for their clients. With a commitment to quality and collaboration with recognized manufacturers, NewNet S.A. has been delivering reliable and secure technology solutions since 1996
Intelligence correlations link this incident to 1 vulnerability(ies) including CVE-2025-5777, which may have been leveraged as initial access vectors or for lateral movement.