Claims and excluded records
Documentation preserved outside the main incident list and its statistics. A pending claim can be included if sufficient evidence emerges; an excluded record retains the explanation for its disposition.
62 records outside the main list
- Excluded / contextual 10 preserved sources
Conviasa reportó ciberataques atribuidos a Anonymous el 2 y 11 de agosto; alcance técnico no confirmado
Multi-incident summary
Summary of Conviasa reports on 2 and 11 August 2024. Preserved outside the count; later recovery is a phase, not a third attack. Derived records: conviasa-portal-claim-2024-08-02, conviasa-portal-claim-2024-08-11.
- Pending verification 3 preserved sources
Anonymous claim about a domain attributed to MPPRIJP on 2 August 2024; target unconfirmed
Insufficient evidence
Narrowed to the 2 August 2024 domain allegation; the 4 August criminal-record service outage is context without established causation. Domain variants and missing evidence prevent confirmation of the target or attack.
- Pending verification 1 preserved source
Anonymous Venezuela afirmó que CyberHuntersOp derribó app.venapp.com; no hay prueba de DDoS ni caída
Insufficient evidence
Anonymous Venezuela claimed on 1 August 2024 that CyberHuntersOp had taken down app.venapp.com. The post documents the allegation, but its image shows a Firebase “Invalid Dynamic Link” response, not proof of downtime or DDoS. There is no independent measurement, telemetry, VenApp confirmation or demonstrated causality. Kept pending for insufficient evidence, without finding the claim false.
- Pending verification 3 preserved sources
Reportes puntuales de indisponibilidad de vtv.gob.ve; causa y atribución no verificadas
Incident boundaries unresolved
VTV's 1 August question/screenshot and 8 August unavailability establish neither common cause nor two separate attacks. Retained pending without automatically attributing the outage to a third party.
- Excluded / contextual 4 preserved sources
Registro duplicado: indisponibilidad de presidencia.gob.ve observada entre el 1 y 2 de agosto de 2024
Duplicate record
Duplicate of IbISe63LmwqifGSslOdws: the sources describe the same presidencia.gob.ve unavailability episode observed on 1 and 2 August 2024, with no evidence of another event on 29 August. Excluded from the main count; the record, sources and relationships are preserved without deletion or merging.
- Pending verification 2 preserved sources
Plataforma Patria apareció en un reporte de sitios supuestamente caídos; incidente no verificado
Insufficient evidence
On 1 August 2024, CW+ published a Plataforma Patria takedown report attributed to unidentified social media. It provides no primary post, portal capture, independent measurement or Patria confirmation. Its images and embedded posts do not support this target; Check Point’s carteramovil.gob.ve figure concerns a different service. The claim remains pending for insufficient evidence, without asserting downtime, DDoS, access or data impact.
- Pending verification 4 preserved sources
Fuentes oficiales reportaron ataques cibernéticos contra CANTV tras las elecciones de 2024
Incident boundaries unresolved
CANTV statements on 9–11 August do not delimit one event. Telemetry for an unnamed operator on 29 July cannot be attributed to CANTV; retained pending without joining those observations.
- Pending verification 6 preserved sources
Farmatodo sufrió una interrupción de canales de pago; causa cibernética no confirmada
Insufficient evidence
Contemporary sources describe a Farmatodo payment-channel disruption on 27 June 2024, and several outlets allege hacking. The operational contingency is reported, but there is no Farmatodo confirmation, forensic evidence, access, ransomware or verifiable attribution. The associated post only asks whether everything is okay; it does not claim responsibility. Kept pending for insufficient cyber evidence, without asserting Medusa, nationwide scope or data impact.
- Excluded / contextual 4 preserved sources
GlorySec afirmó que un gusano USB alcanzó a 100 empresas en Ciudad Guayana; reclamo no verificado
Multi-incident summary
Aggregate claim about USB devices and numerous companies, overlapping King Bike (YvNY4Ytg7xzP5-S27OeHl). Actor-supplied figures do not establish independent incidents.
- Excluded / contextual 5 preserved sources
GlorySec afirmó haber tomado más de 50 sitios web venezolanos; reclamo no verificado
Multi-incident summary
Grouped GlorySec claim concerning dozens of sites. Context overlaps TuTicket (2bhI3LRJ6nTy07BbhPWuI); excluding the aggregate from counts avoids counting both campaign and individual case.
- Excluded / contextual 6 preserved sources
Circuló un reclamo desmentido de presunta brecha del CNE o Smartmatic basado en capturas de una interfaz Odoo
Debunked claim
The screenshots show an Odoo campaign-management interface, not evidence of a CNE or Smartmatic breach. The record is preserved as a debunked claim.
- Excluded / contextual 5 preserved sources
Intentos reportados de suplantación de cuatro medios venezolanos en WhatsApp para solicitar códigos (21 de julio–16 de agosto de 2023)
Multi-incident summary
Groups impersonation warnings from four outlets on different dates. Preserved outside the count with four reported-attempt records; no account takeovers or common operation inferred. Derived records: rdn-whatsapp-impersonation-2023-07-21, correo-caroni-whatsapp-impersonation-2023-08-14, radio-fe-alegria-whatsapp-impersonation-2023-08-14, qpev-whatsapp-impersonation-2023-08-16.
- Excluded / contextual 4 preserved sources
Desconocidos suplantaron a El Pitazo para solicitar códigos de WhatsApp a lectores (26 de mayo–6 de junio de 2023)
Multi-incident summary
Summary of multiple impersonation contacts between 26 May and 6 June 2023. Unique recipient count and boundaries between attempts are unknown; retained as a non-counting series without inventing compromised accounts.
- Excluded / contextual 2 preserved sources
El Nacional y ¿Qué Pasa en Venezuela? sufrieron restricciones editoriales tras una falsa denuncia de derechos de autor (marzo de 2023)
Context outside the main scope
The sources document a false copyright complaint using impersonation and administrative or editorial restrictions imposed by the provider. They do not document unauthorized access or an attempt, credential theft, malware, DDoS or exfiltration. The record is preserved as copyright-process abuse outside the main registry's scope.
- Pending verification 3 preserved sources
Palpitar Trujillano reported the hacking and removal of @palpitartrujillanoficial on 25 December 2022; technical scope unconfirmed
Insufficient evidence
Bounded account-loss allegation reported by Palpitar. Account takeover has not been sufficiently distinguished from removal or platform-policy enforcement. Retained pending without declaring it false or requiring every included incident to have forensic evidence.
- Pending verification 3 preserved sources
Palpitar Trujillano reported an alleged attack against @PalpitarTrujillanoOficial on Instagram (20 December 2022)
Insufficient evidence
Bounded account-loss allegation reported by Palpitar. Account takeover has not been sufficiently distinguished from removal or platform-policy enforcement. Retained pending without declaring it false or requiring every included incident to have forensic evidence.
- Pending verification 3 preserved sources
Palpitar Trujillano reported the hacking and removal of @palpitartrujillano1 on 15 December 2022; technical scope unconfirmed
Insufficient evidence
Bounded account-loss allegation reported by Palpitar. Account takeover has not been sufficiently distinguished from removal or platform-policy enforcement. Retained pending without declaring it false or requiring every included incident to have forensic evidence.
- Excluded / contextual 8 preserved sources
Palpitar Trujillano reported hacks and loss of Instagram accounts (December 2022)
Multi-incident summary
Summary of three dated Palpitar allegations in December 2022, separated into pending records. Meta suspension and filtering of another outlet are not admitted as attacks. Derived records: palpitar-instagram-claim-2022-12-15, palpitar-instagram-claim-2022-12-20, palpitar-instagram-claim-2022-12-25.
- Excluded / contextual 5 preserved sources
ESET documentó la campaña de espionaje «Bandidos» con Bandook; el 90 % de sus detecciones de 2021 se concentró en Venezuela
Multi-incident summary
Report on the Bandidos/Bandook campaign and multiple victims. Samples and statistics describe an operation, not one event to add to the main count.
- Excluded / contextual 11 preserved sources
Se reportó una alteración de pantallas de vuelos en Porlamar y Maiquetía; IAIM negó el caso de Maiquetía (julio de 2021)
Multi-incident summary
Summary of two airports: Porlamar and Maiquetía. Preserved outside the count; Maiquetía's allegation and response are not transferred to Porlamar, nor do its detentions prove the other case. Derived records: porlamar-flight-screen-claim-2021-07-06, maiquetia-flight-screen-claim-2021-07-06.
- Pending verification 8 preserved sources
An alteration of a Maiquetía flight-information screen was alleged; IAIM denied it (6–7 July 2021)
Insufficient evidence
a specific contemporaneous Maiquetía allegation and an official IAIM response exist, but the sources conflict and there is no independent authentication of the image, technical records, method or operational impact. It is retained as a pending claim, not a confirmed alteration.
- Excluded / contextual 5 preserved sources
Freedom House reportó ataques DDoS contra Crónica Uno, Noticiero Digital, CNVE24 y El Pitazo (junio de 2019–mayo de 2020)
Multi-incident summary
Aggregate report covering multiple outlets and episodes. Only three episodes with identifiable boundaries and dates are separated; July references and undated attacks remain non-counting context. Derived records: noticiero-digital-ddos-2019-08-30, cnve24-attack-report-2019-09-14, el-pitazo-ddos-2019-09-30.
- Excluded / contextual 8 preserved sources
Apagón nacional del 7 de marzo de 2019; el Gobierno denunció un ciberataque sin prueba técnica pública
Insufficient evidence
Excluded by editorial decision: the sources document the 2019 blackout and the official attribution to a cyberattack, but provide insufficient evidence of a third-party cyberattack. The blackout is not admitted as a cyber incident in the registry. The allegation and its sources are retained as historical context; this decision does not establish deliberate fabrication or determine the definitive cause of the blackout.
- Excluded / contextual 14 preserved sources
Reported access blocking and network anomalies affected El Pitazo and Armando.info in Venezuela (August 2018)
Context outside the main scope
Excluded by editorial scope: the main registry does not include ISP censorship or access filtering as standalone events. Exclusion neither denies possible deliberate interference nor requires intrusion to recognize other availability attacks. The sources document blocking of El Pitazo and access anomalies affecting Armando.info, whose intentional nature OONI left unresolved. DDoS attacks on other dates are separate events and are not attributed to this record.
- Pending verification 6 preserved sources
Autoridades reportaron una interrupción de Movilnet que afectó a siete millones de usuarios y nueve cortes de fibra óptica en Venezuela
Insufficient evidence
The sources preserve an official allegation of a cyberattack against Movilnet's GSM platform, but provide insufficient technical evidence of the mechanism or its connection to the interruption. Physical fiber cuts and attacks on other websites do not establish that connection. The allegation remains pending verification outside the main registry.
- Pending verification 4 preserved sources
PanAm Post menciona ANTV entre portales supuestamente afectados por The Binary Guardians el 31 de julio de 2017
Insufficient evidence
PanAm Post included ANTV among allegedly hacked or inaccessible portals on 31 July 2017, without a domain, capture, exact actor claim, measurement or independent corroboration. El Pitazo had documented the non-operational website in December 2016; that alternative does not prove continuous downtime or rule out another event in 2017. The allegation remains pending verification, without confirming attack, cause, impact or falsity.
- Excluded / contextual 7 preserved sources
Ciberataques contra el sitio web de COFAVIC (20 de diciembre de 2016 y 20 de marzo de 2017)
Multi-incident summary
Summary of two COFAVIC episodes in December 2016 and March 2017. Preserved as non-counting context and provenance; each episode has a child record with scoped evidence. Derived records: cofavic-web-attack-2016-12-20, cofavic-web-attack-2017-03-20.
- Pending verification 2 preserved sources
Front Line Defenders recorded an alleged attack on COFAVIC’s website on 20 December 2016
Insufficient evidence
Dated retrospective allegation from one institutional source family; contemporary corroboration and evidence of technical effects are missing. The two language versions are not independent confirmations.
- Excluded / contextual 11 preserved sources
Campaña #OpVenezuela de 2014: reivindicaciones de ataques a sitios oficiales y reporte de 61 páginas afectadas
Multi-incident summary
Summary of the 2014 #OpVenezuela campaign with multiple targets and actions, not evidence of one compromise. Sources are retained as context without creating an incident per listed domain.
- Excluded / contextual 1 preserved source
Luis Carlos Díaz atribuye a N33 intrusiones repetidas en su cuenta de Twitter
Multi-incident summary
The account describes repeated intrusions attributed to N33 against Luis Carlos Díaz, not one bounded episode. Retained as a non-counting series; mentions do not generate new attacks.