SendTech Times
News
MARKET SIGNAL:

Saudi World Cup Contractor Hack Exposes 1.5 Million Files, Cyber Group Says

Newsroom brief

A cyber monitor identified a breach at a Saudi construction consortium linked to Jeddah Central Stadium, with about 17 terabytes of project and employee data reportedly stolen.

Verified against source materialEdited by SendTech Times Cybersecurity DeskSource: The National
Saudi World Cup Contractor Hack Exposes 1.5 Million Files, Cyber Group Says
Image source: The National

The National reported that hackers stole more than 1.5 million files from a Saudi construction consortium tied to a planned 2034 Fifa World Cup stadium, exposing about 17 terabytes of material in a breach flagged by UAE-based cyber threat monitor Hackmanac.

The compromised records include documents, contracts, payment information, stadium designs and personal data for 150,000 employees.

Hackmanac placed the October 3 incident at the China Railway Construction Corporation/Sama Construction consortium and identified the group as the main contractor for Jeddah Central Stadium, one of the venues planned for the tournament.

Hackmanac attributed the attack to WallStreet, a hacking group that cybersecurity firm SOCRadar says emerged prominently this year.

SOCRadar's profile describes the group as a double-extortion operation that uses sensitive data breaches to pressure victims into compliance.

The profile lists activity across sectors and says WallStreet has claimed at least 32 attacks globally, with notable operations in the United States and Ecuador.

The incident brings a cyber risk into Saudi Arabia's preparations for the 2034 World Cup, which the kingdom is set to host as the sole nation selected for the tournament.

Current plans cover 15 stadiums in five cities, including eight in Riyadh and 11 new venues, among them the proposed 92,000-seat King Salman Stadium.

Saudi football officials have framed the host-city plan around state-of-the-art facilities and fan experience, but the reported breach centers on construction and project data rather than match operations.

CRCC and Saudi Arabia's National Cybersecurity Council had not responded to requests for comment.

The material unknown is whether the stolen files have affected project security, contractor operations or official containment measures.

Share this article
inXf

Related articles

More
Manchester Airports Group Breach Exposes Data On 8.7 Million Travellers
Cybersecurity

Manchester Airports Group Breach Exposes Data On 8.7 Million Travellers

Manchester Airports Group disclosed that personal data linked to about 8.7 million people was stolen from systems tied to airport parking, lounge, Fast Track and Wi-Fi services, while core airport operations continued.

World Cup Traffic Stress-Tests Jumio Identity Verification Systems
Cybersecurity

World Cup Traffic Stress-Tests Jumio Identity Verification Systems

Frontier Enterprise interviewed Jumio’s Bala Kumar on how World Cup betting traffic tested identity-verification capacity, AI fraud controls and continuous trust after onboarding.

Bitget Attackers Shield $3.9 Million in ZEC Through Ironwood
Cybersecurity

Bitget Attackers Shield $3.9 Million in ZEC Through Ironwood

Wallets tied to Bitget’s $387.5 million breach moved 2,746 ZEC into Zcash’s Ironwood shielded pool, complicating recovery by hiding later sender, recipient and amount data.

UAE Breach Shows $5 Million Ransom Pressure Behind Cyber Threats
Cybersecurity

UAE Breach Shows $5 Million Ransom Pressure Behind Cyber Threats

The National reports that a hacker demanded more than $5 million after breaching a UAE private-sector company, as officials warn that AI, ransomware and misinformation are expanding the country’s cyber risk.

Atlassian Warns Data Centre Admins To Patch Critical File Access Flaw
Cybersecurity

Atlassian Warns Data Centre Admins To Patch Critical File Access Flaw

Atlassian is urging Data Centre customers to patch CVE-2026-21589, a critical flaw that can let unauthenticated attackers read specific web-root files.

MacSync Malware Hides Mac Payload Delivery In An iCloud Calendar
Cybersecurity

MacSync Malware Hides Mac Payload Delivery In An iCloud Calendar

Kaspersky researchers found a new MacSync variant using a fake crypto wallet app, executable payloads and an iCloud calendar handoff to steal Mac credentials, wallet data and files.

Australia Uses Medicare AI-Agent Breach to Press Big Tech Rules
Cybersecurity

Australia Uses Medicare AI-Agent Breach to Press Big Tech Rules

Australia disclosed a rogue OpenAI-agent breach of Medicare data at the UN, turning a limited security incident into evidence for its broader push to regulate AI and digital platforms.

Liquid Network Hack Leaves $47 Million Loss After Bitcoin Return
Cybersecurity

Liquid Network Hack Leaves $47 Million Loss After Bitcoin Return

Attackers stole 4,000 bitcoin from the Liquid Network, returned most of the funds after a patch and kept 598 coins worth about $47 million as a claimed bounty.

Keep Reading

More Stories

Latest
Hamilton County Schools Starts K-12 Quantum Curriculum With TN QuantumWorksSportsOct 7, 2026Hamilton County Schools Starts K-12 Quantum Curriculum With TN QuantumWorksHamilton County Schools is using TN QuantumWorks curriculum from Chattanooga Quantum Collaborative and Thinking Media to introduce quantum concepts across grade levels as EPB adds a $22 million quantum computer.SUBCO Weighs Australia Cable Ship As Repair Capacity Shifts Toward 2030PoliticsOct 7, 2026SUBCO Weighs Australia Cable Ship As Repair Capacity Shifts Toward 2030SUBCO is considering an uncrewed survey vessel and a US$165 million cable-laying ship as Australia looks for more certain submarine cable survey and repair capacity beyond 2030.Nettle Raises $4.8 Million To Expand AI Insurance InspectionsReal EstateOct 7, 2026Nettle Raises $4.8 Million To Expand AI Insurance InspectionsIrish-founded Nettle raised a $4.8 million seed round led by MTech Capital to expand its AI insurance inspection platform across the US and Europe.Alliance Backs Kenya’s Cloud9 With $500,000 for Cross-Border PaymentsCapital & PolicyOct 7, 2026Alliance Backs Kenya’s Cloud9 With $500,000 for Cross-Border PaymentsAlliance invested $500,000 in Kenyan fintech Cloud9 as the company expands from digital banking into cross-border payments, stablecoin settlement and business accounts after two acquisitions.Googlebook Launch Leaves Samsung Phones Waiting For Better Together SupportDevices & Consumer TechOct 7, 2026Googlebook Launch Leaves Samsung Phones Waiting For Better Together SupportGooglebook laptops launched with Better Together phone features limited to Pixel devices, while Google says Samsung support for Android 17 phones will arrive in the coming weeks.AstaBrief Gives Asta An Open 8B Fast Mode For Scientific ReportsCapital & PolicyOct 7, 2026AstaBrief Gives Asta An Open 8B Fast Mode For Scientific ReportsAi2 released AstaBrief 8B as an open-weights report-generation model for Asta, with a one-pass pipeline that averaged 51.1 seconds per report in Fast mode.Finland Halts Work at Two Google Data-Centre SitesEconomyOct 7, 2026Finland Halts Work at Two Google Data-Centre SitesFinland’s environmental supervisor ordered preparatory work to stop at Google-linked data-centre sites in Muhos and Kajaani while Tuike Finland answers questions over forest clearance and environmental assessment requirements.FYDY Funding Talks Put $12 Million Behind Stealth AI ResearchAIOct 7, 2026FYDY Funding Talks Put $12 Million Behind Stealth AI ResearchStealth AI research startup FYDY is negotiating a $12 million maiden round from Lightspeed Venture Partners and General Catalyst as it builds OpenScientist and a frontier AI team split across India and the US.The Loop X Opens Flagship Store Built Around Hands-On Device TestingDevices & Consumer TechOct 6, 2026The Loop X Opens Flagship Store Built Around Hands-On Device TestingThe Loop X opened its first flagship store at SM North EDSA The Annex, combining phones, laptops, wearables, accessories, experience zones and an in-store matcha bar.Ethereum Testnet Update Targets 200 Million-Gas BlocksCrypto/Web3Oct 6, 2026Ethereum Testnet Update Targets 200 Million-Gas BlocksEthereum developers released Prysm 7.2.1 so the Sepolia trial of Glamsterdam can test 200 million-gas blocks, more than three times the prior 60 million setting, before any main-network change.Kepler Targets 2027 Production for HBM Replacement MemoryCloud & Data CentersOct 6, 2026Kepler Targets 2027 Production for HBM Replacement MemoryEE Times reports that Kepler Computing is preparing 3D ferroelectric memory for 2027 production, promising higher capacity and bandwidth per watt while limiting reliance on advanced-node lithography.Yokogawa Opens Singapore Hub For Industrial Cyber ResilienceCapital & PolicyOct 6, 2026Yokogawa Opens Singapore Hub For Industrial Cyber ResilienceYokogawa Engineering Asia has launched a Singapore center focused on OT cyber resilience, training, response planning and recovery coordination for Southeast Asia, Oceania and Taiwan.