Ethical Hacker Exposes MGA Data Breach Linked to Organized Crime
Article Content
- •Lilith Wittmann claims responsibility for the MGA data breach, alleging organized crime links.
- •Sensitive data has reportedly been shared with media and authorities, raising public interest.
- •The MGA is investigating the breach but has not detailed the attack method or data extent.
On March 20, 2026, German hacker Lilith Wittmann claimed responsibility for a data breach at the Malta Gaming Authority (MGA). Wittmann alleged that she infiltrated the MGA's systems and obtained sensitive data, which has been shared with media organizations and authorities. She warned that any legal action from Maltese authorities would lead to the public release of more data related to organized crime in the iGaming sector. The MGA confirmed the breach but has not disclosed specific details about the extent of the data compromised or the attack method. Wittmann described the breach as easily executed, likening it to previous cyber-attacks against political entities. She emphasized the importance of the information obtained for public discourse and urged journalists to refrain from further inquiries for now. The MGA is currently assessing the situation and working with technical teams to address the breach.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Malta Gaming Authority in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…