Cantpwn Claims Responsibility for Attack on the National Armed Forces Social Security Institute
On April 25, 2026, the threat actor cantpwn claimed that data attributed to the National Armed Forces Social Security Institute (IPSFA) had been leaked. No official confirmation or independent forensic validation of the material was found.
Overview
Missing evidence
Impact details
195,104 Exposed records
The breach of the IPSFA database, which is publicly accessible via OSINT/X, affects records of military personnel and their family members, including biometric, identity, military, financial, and address data. No official confirmation has been found.
Classification & severity
- Category
- Information content security
- Subtype
- Leak of confidential information
- Confidence
- Medium
Severity assessment
High- Information impact
- Government-sensitive
- Affected scope
- Organization-wide
- Critical service
- Potential
- Public confidence
- Significant
The report concerns military social security records containing biometric, identity, financial, and family-related data. The evidence is a public report from OSINT/social media, not an official confirmation.
Timeline
cantpwn listed the National Armed Forces Social Security Institute as a suspected victim.