CSIDB logo
Incident

Mediaworks Hungary

Incident posture

Attack window
Apr 2026
Location
Hungary
Status
Unknown
CIA posture
Available to members
Updated
2026-08-27 00:06

Linked entities

Victim
Mediaworks Hungary
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Apr 2026
Discovered
Undetermined
Disclosed
May 2026
Resolved
Pending

Summary

Mediaworks Hungary suffered a serious hacker attack that resulted in the unlawful acquisition of nearly 15 million files totaling about 8.5 terabytes, which were later published on the dark web. The exposed data included names, addresses, bank account details, internal records, and public‑interest documents, as reported by Hungary’s data protection authority.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

Mediaworks Hungary disclosed the incident on 04 May 2026, stating that it had become the victim of a serious hacker attack on 30 April 2026. The company’s statement was issued after the attack was detected and after internal assessment confirmed unauthorized access to its systems. Hungary’s national data protection authority later confirmed that hackers had unlawfully obtained nearly 15 million files amounting to approximately 8.5 terabytes of data. The authority also reported that the stolen data had been published on the dark web, making it accessible to unknown parties.

The exposed material, as described by both Mediaworks Hungary and the data protection authority, reportedly included names, physical addresses, bank account details, internal corporate records, and public‑interest documents. The volume of files and the size of the dataset indicate a substantial breach affecting a large number of individuals and entities associated with the organization. The publication of the data on the dark web means that the information is now available for potential misuse by anyone who accesses those hidden networks.

While the source material does not detail specific containment, eradication, or recovery steps taken by Mediaworks Hungary, the disclosure itself represents the organization’s initial response to the incident. The involvement of the data protection authority suggests that regulatory notification and oversight processes were triggered following the breach. No further technical details about attacker methods, affected systems, or remediation actions are provided in the available evidence.

Sources

Sources available to members: 1 source.

CSIDB