BreachesMay 14, 2026
1/2‼️🇬🇹 Guatemalan Ministry of Finance allegedly breached: 130,000 RGAE registrations and 235,0...
Guatemalan Ministry of Finance allegedly breached; 130K RGAE registrations and 235K PDFs exposed via IDOR.
Summary
A threat actor claims to have compromised Guatemala's Registro General de Adquisiciones del Estado (RGAE) system operated by the Ministry of Finance, exposing approximately 130,000 RGAE registrations and 235,000 sensitive PDFs totaling 324.5GB. The breach was reportedly facilitated through Insecure Direct Object Reference (IDOR) vulnerabilities and unauthenticated API access. This represents a significant exposure of government procurement and financial registration data.
Entities
Guatemalan Ministry of Finance (vendor)RGAE (Registro General de Adquisiciones del Estado) (product)