Claims and excluded records
Documentation preserved outside the main incident list and its statistics. A pending claim can be included if sufficient evidence emerges; an excluded record retains the explanation for its disposition.
62 records outside the main list
- Pending verification 3 preserved sources
GordonFreeman publica un reclamo sobre supuestas nóminas gubernamentales de Educación, Defensa y Salud
Incident boundaries unresolved
The publication groups Education, Defense and Health payrolls. A common extraction, separate events or reused material cannot be distinguished; the entity list does not generate three incidents.
- Pending verification 14 preserved sources
Operación Hecatombe: GordonFreeman reclama datos de SAIME, SAREN y Carnet Fronterizo
Incident boundaries unresolved
Hecatombe groups alleged effects on SAIME, SAREN and border control. One multi-target publication establishes neither one compromise nor separable verified intrusions.
- Pending verification 8 preserved sources
Qilin incluyó a BNC en su portal de filtración (reclamo no verificado, abril de 2026)
Possible duplicate: relationship unresolved
The card attributed to Qilin in April 2026 documents a claim, not a new compromise. Its relationship with AdGPxFaW1lzp3ODk2XZFQ is unresolved; the 2025 outage and ransom figure are not inherited.
- Pending verification 1 preserved source
malconguerra2 publicó un reclamo de 420 GB atribuido a la FANB; autenticidad no confirmada
Possible duplicate: relationship unresolved
The 420 GB FANB claim may reuse material from rPyrjUP4sQsDUrxICc576 or bGTC2o7fJirGLxWk_LbO4. A new post date and size do not prove another intrusion; no merge without corpus evidence.
- Excluded / contextual 4 preserved sources
CORPOELEC reportó daños en subestaciones y cortes eléctricos durante la operación del 3 de enero de 2026
Context outside the main scope
Physical damage and localized electricity cuts are documented. A cyber component is not established; the record is preserved as context outside the main registry.
- Excluded / contextual 6 preserved sources
Cloudflare confirmó una fuga de rutas BGP de CANTV (AS8048); causa probablemente accidental
Context outside the main scope
The BGP route leak is documented, but the technical analyses favor routing-policy or configuration and convergence explanations without establishing malicious third-party activity. Interception, data theft and a deliberate attack are not demonstrated. The anomaly and its sources remain as technical context outside the main registry; an accidental cause is probable, not definitive.
- Excluded / contextual 2 preserved sources
URL incautada de LeakBase conserva un reclamo no verificable sobre “14 M Venezuela Citizen Full Data”
No incident described
The LeakBase URL preserves only the slug “14-m-venezuela-citizen-full-data”; the original thread was not recovered and the page shows the forum seizure. The DOJ notice confirms that operation, not the existence, origin, authenticity or impact of the alleged Venezuelan dataset. The local date is inherited, not a verified publication date. With no source content describing the incident, it remains excluded provenance, without declaring the vanished claim false or deleting evidence.
- Pending verification 1 preserved source
Un actor no identificado reclama una supuesta filtración de nóminas de 31 instituciones estatales venezolanas
Incident boundaries unresolved
An offer of payrolls from 31 institutions is a grouped publication, not proof of 31 intrusions or one common compromise. Origin, authenticity and event boundaries remain unresolved.
- Pending verification 1 preserved source
malconguerra2 publicó un reclamo con aparentes muestras de datos de la Milicia Bolivariana
Possible duplicate: relationship unresolved
The Milicia publication may overlap FANB claims rPyrjUP4sQsDUrxICc576 and XkeMKxe-WacUJAUTbJGry. Dataset identity, origin and separation of events remain unproven.
- Pending verification 1 preserved source
malconguerra2 publicó un reclamo con aparentes muestras de datos de la FANB y otras entidades
Possible duplicate: relationship unresolved
The 400 GB FANB claim may overlap XkeMKxe-WacUJAUTbJGry and bGTC2o7fJirGLxWk_LbO4. No verifiable corpus comparison or distinct intrusions established; retained pending without merging or counting.
- Pending verification 1 preserved source
X Forum Bot publicó un hilo titulado “Admin WP Login” para ipasme.gob.ve
Insufficient evidence
The forum title mentions IPASME administrative access, but no credentials, access demonstration, or verifiable incident description are visible.
- Pending verification 6 preserved sources
Interrupción de BNC APP y BNCNET con atribución no confirmada a Qilin (julio de 2025)
Possible duplicate: relationship unresolved
The July 2025 outage is documented, but malicious cause and Qilin attribution are unconfirmed. Its relationship with ZIJpwH6ybmc9xcCj7aE3s remains unresolved; different report dates do not prove distinct intrusions.
- Excluded / contextual 8 preserved sources
Autoridades atribuyeron a Los Ciberandinos una campaña de phishing contra usuarios del BDV y Patria (marzo de 2025)
Multi-incident summary
The Los Ciberandinos operation summarizes multiple frauds or attempts without verifiable individual boundaries. Retained as operational context, not an additional incident.
- Pending verification 1 preserved source
ANONYMOUS VENEZUELA señaló un error 500 en el sitio de Globovisión (25 de agosto de 2024)
Insufficient evidence
The screenshot of an HTTP 500 error on Globovisión does not establish an attack or a connection to a security incident. Additional evidence is required.
- Excluded / contextual 1 preserved source
@White_Hunters publicó el dominio de SAREN sin afirmar un ataque (19 de agosto de 2024)
No incident described
The post only mentions SAREN's domain and campaign hashtags. It describes no attack and provides no evidence of the target's condition.
- Excluded / contextual 1 preserved source
@White_Hunters publicó NIC.ve y una captura de un aviso de mantenimiento (18 de agosto de 2024)
Maintenance notice without incident evidence
The post shows a NIC.ve maintenance notice, without an explicit attack claim or independent evidence of a security incident.
- Excluded / contextual 3 preserved sources
@White_Hunters publicó el dominio de BANFANB sin especificar un ataque (17 de agosto de 2024)
No incident described
The exact 17-August 2024 @White_Hunters post only publishes BANFANB’s domain and a generic GIF; it describes no attack, outage, unauthorized access or impact. An earlier Paginaweb.app assertion does not establish that this post describes an incident. The 3-August BANFANB record is related context, not a proven duplicate. The record and all its evidence remain outside the main count.
- Pending verification 5 preserved sources
Ministra reportó ataques contra el Consejo Federal de Gobierno los días 15 y 16 de agosto de 2024
Incident boundaries unresolved
The CFG statement mentions attacks on 15 and 16 August but establishes neither continuity, cessation nor separate mechanisms. It is not automatically split in two or counted as a confirmed event.
- Pending verification 3 preserved sources
El BCV apareció en reportes agregados sobre la ola de ciberataques de agosto de 2024
Incident boundaries unresolved
Mention of BCV in a list of attacked institutions does not delimit a concrete event's date, system, method or impact. The statement remains a pending claim, not a counted incident.
- Pending verification 2 preserved sources
MS BOTNET Cyberhunter claimed www.minhvi.gob.ve was down on 10 August 2024; cause unconfirmed
Insufficient evidence
Limited to the 10 August claim against www.minhvi.gob.ve. The 11 August post uses a different domain and unrelated image; retained as context, not a second attack. A timeout alone does not prove malicious causation.
- Pending verification 4 preserved sources
Anonymous Venezuela afirmó haber derribado el sitio del PSUV (10 de agosto de 2024)
Insufficient evidence
Anonymous Venezuela published a claim that www.psuv.org.ve had been taken down on 10 August 2024. The message and two images in the Telegram group document the claim, but do not independently establish unavailability, causality, duration, DDoS or defacement. The other sources provide context or a different database-extraction allegation. Kept separate from hAsK2KN8_jZWSVyXbT7bv: the evidence is insufficient to identify both as the same event.
- Excluded / contextual 2 preserved sources
@AnonymousVene10 afirmó que TVES perdió su «concesión digital» (9 de agosto de 2024)
No incident described
The post about TVES's digital concession and its YouTube screenshots do not describe or establish a cyber incident.
- Excluded / contextual 6 preserved sources
Televen reportó una falla técnica en su señal TDA; Anonymous insinuó intervenir su web sin prueba causal
Technical fault without an established cyber connection
The TDA signal fault is documented, but no connection to an attack is established. Televen stated that its website was operating normally.
- Pending verification 2 preserved sources
VenariX reportó un reclamo atribuido a Anonymous contra el INPC/BCV (9 de agosto de 2024)
Insufficient evidence
On 9 August 2024, VenariX published an INPC/BCV hacking allegation attributed to Anonymous, without a primary claim, identified affected asset or technical evidence. The attached image concerns the separate 21-April GlorySec claim against BCV; it does not establish the alleged August event. El Estímulo does not mention this target. Kept pending for insufficient evidence, without asserting DDoS, access, alteration or affected data, or inferring a duplicate.
- Pending verification 1 preserved source
VenariX publicó un reclamo no verificado de “hackeo” contra sisgeccom.org.ve (8 de agosto de 2024)
Insufficient evidence
VenariX published a specific hacking allegation against sisgeccom.org.ve. The sole image shows an individual Cloudflare visitor block, not access, alteration, exfiltration, DDoS or general unavailability. No original alleged-actor claim, SISGECCOM confirmation, independent measurement or technical evidence was recovered. The allegation remains pending verification, without a finding that it is false.
- Pending verification 2 preserved sources
SAIME apareció en una lista de objetivos de #OpVenezuela; impacto no confirmado
Insufficient evidence
Efecto Cocuyo reported SAIME in a target list, and Check Point reproduced an image listing siic.saime.gob.ve subdomains with X marks. This documents a target allegation, not a verified attack or impact. The portal was functional during a later journalistic check, which does not rule out a brief earlier interruption. Independent measurements, technical evidence and authenticated attribution are missing; the claim remains pending, without declaring it false.
- Excluded / contextual 1 preserved source
Reclamo no verificable de DDoS contra tienda.movistar.com.ve (5 de agosto de 2024)
No incident described
Only a permalink attributed to @AnonGTReloaded and a local label for an alleged DDoS against tienda.movistar.com.ve remain. X’s official card again displays “Not found” in the browser; no original text, image, claim or independent corroboration was recovered. No recovered source content describes this incident. Retained as excluded provenance, without finding it false or deleting the record or URL.
- Pending verification 3 preserved sources
Reclamo no recuperable atribuido a @AnonGTReloaded contra la Aviación Militar Bolivariana (2 de agosto de 2024)
Insufficient evidence
The 2 August permalink has no recoverable text, visible account, media or archive. The 5 August publications do not establish that earlier event and must not be joined to data report38mBgBtIPdLiMlBsVbFBR. Retained pending without merging or counting.
- Excluded / contextual 3 preserved sources
Cyber Hunters reclamó la caída del sitio público del CICPC durante #CyberHuntersOp (2 de agosto de 2024)
Duplicate record
Duplicate of v42LSGfpbVEBlqV9138Mb: both records describe the same Cyber Hunters claim and observation of unavailability of the public cicpc.gob.ve site on 2 August 2024. Excluded to prevent double-counting, with sources and relationships preserved. No DDoS, intranet access, data leak or separate 17 August event is established.
- Pending verification 3 preserved sources
Portales de CONATEL fueron reportados como no disponibles y reclamados por Anonymous Venezuela; DDoS no confirmado
Incident boundaries unresolved
Observations on 2, 4 and 13 August concerning CONATEL and CONATEL en Línea establish neither continuity nor independent attacks. Preserved pending without splitting by date or domain.