🇲🇦 Alleged RAMED Database Leak Claims Data on Millions of Moroccans
A threat actor on an underground cybercrime forum claims to have obtained a large database associated with Morocco's former RAMED medical assistance program.
* The actor claims the complete database contains more than 17 million entries
* According to the post, 1 million entries are being released initially, with the actor threatening to publish the full dataset later
* The forum title specifically advertises personal information and passport-style photographs
* RAMED — Régime d'Assistance Médicale — was Morocco's subsidized healthcare program for low-income and vulnerable citizens before being phased out as the country transitioned toward the AMO-Tadamon health coverage system
* If authentic, the combination of identity information, photographs and healthcare-related records could create significant privacy, identity-fraud and social-engineering risks
⚠️ Analyst Note:
The claimed scale makes this potentially significant, but the numbers and provenance currently come from the threat actor. DDW has not independently established that 17 million authentic RAMED records were compromised or that the advertised data originated from a recent breach.
The distinction between a newly compromised system and historical RAMED data being repackaged or redistributed is particularly important given that RAMED itself has been phased out.
#DDW #Morocco #RAMED #DataBreach #DarkWeb #ThreatIntelligence #CyberSecurity #Healthcare
PentestCode is an impressive tool that might significantly speed up your pentest or bug bounty hunting!
Check out an article from @co11ateral to learn how to use it:
https://t.co/vPd4og4Ipz
vps-audit is a Bash script that audits Linux servers for security vulnerabilities like weak SSH authentication, inactive firewalls, and unmonitored sudo logs, while also generating reports on system performance metrics including disk space and memory usage.
https://t.co/Mc9DQz4RFy