HKBU Allegedly Breached by Ransomware Group, Nearly 2,000 Accounts at Risk
SingTao · 1 SOURCESabout 3 hours ago2 MIN

Summary
Hong Kong Baptist University is reportedly investigating an alleged cyber intrusion by ransomware group TheGentlemen. According to tracking platform ransomware.live, the group claims to have stolen data including credentials of 130 staff, 1,778 users, and 260 third-party employees. Security experts have urged the university and affected users to immediately reset passwords and enable multi-factor authentication.
Key Points
- The ransomware group TheGentlemen allegedly claimed responsibility for the HKBU breach via the ransomware.live platform on Sunday, March 9 .
- Stolen data allegedly includes credentials of 130 employees, 1,778 users, and 260 third-party staff, totaling approximately 2,168 individuals .
- Compromised credentials were reportedly found on dark web forums and within Infostealer malware logs used to harvest login information .
- Security experts advise affected institutions to immediately report the incident to the Privacy Commissioner's Office and initiate comprehensive forensic investigations .
- The university should conduct campus-wide password resets and enforce mandatory multi-factor authentication across all systems .
Why It Matters
The breach highlights escalating cybersecurity threats targeting Hong Kong's higher education sector, which handles vast amounts of sensitive student data and research information. If confirmed, this incident could expose thousands of individuals to identity theft and phishing attacks, while also damaging institutional trust in the university's digital infrastructure .
The breach highlights escalating cybersecurity threats targeting Hong Kong's higher education sector, which handles vast amounts of sensitive student data and research information. If confirmed, this incident could expose thousands of individuals to identity theft and phishing attacks, while also damaging institutional trust in the university's digital infrastructure .