Target

Telecomunicaciones Movilnet, C.A.

Communications · State-owned movilnet.com.ve

Incidents
5
High impact
3
First seen
Jul 29, 2011
Latest seen
Apr 29, 2026

Linked incidents

Leak of confidential information

GordonFreeman Claims Attack Against Movilnet

On April 29, 2026, threat actors operating under the names GordonFreeman and L4TAM FUCKERS claimed to have compromised Movilnet, a major state-owned Venezuelan mobile operator. The attackers allegedly exploited an IDOR vulnerability in MongoDB using time-based predictable ObjectIds and sequential enumeration to leak a database containing 200,000 phone numbers and sensitive user data. The stolen information was subsequently leaked on a hacker forum.

GordonFreeman
service disruption claim

Anonymous complaint regarding an attack on Telecomunicaciones Movilnet C.A.

AnonGTReloaded/Anonymous Guatemala claimed responsibility for a DDoS attack against Movilnet on August 10, 2024. Contextual sources regarding the #OpVenezuela wave and reports based on information from Venezuelan authorities list Movilnet/Cantv among the affected state-run platforms; however, no independent telemetry, technical statement from Movilnet, or detailed confirmation of the domain, duration, or impact on customers was found.

Anonymous
telecommunications service outage

Cyberattack Leaves 7 Million Movilnet Users Without Mobile Service and Causes Nine Fiber-Optic Outages in Venezuela

In August 2017, amid a wave of attacks against Venezuelan government websites, an incident affected the GSM platform of the state-owned carrier Movilnet on Wednesday, August 9, cutting off communication for 7 of its 13 million users. Authorities also reported nine outages in the country’s fiber-optic network that disrupted internet access in seven states. The Minister of Science and Technology, Hugbel Roa, described the events as “terrorist acts” and attributed them to the collaboration of “foreign agents” seeking to disrupt the country’s connectivity; security agencies launched an investigation. The hacktivist group The Binary Guardians claimed responsibility for the wave of attacks against government websites during those days, although their specific involvement in the Movilnet outage and the fiber-optic cuts has not been independently confirmed.

Actor desconocido
website defacement or dns redirection

The Binary Guardians Affects the Movilnet Portal During the August 7, 2017, Web Campaign

On August 7, 2017, Movilnet was listed by El Pitazo, IT Projects, and Runrun.es among the websites affected or taken down during The Binary Guardians’ campaign. This record documents the impact on the movilnet.com.ve website and is separate from the subsequent GSM/fiber outage that left millions of users without mobile service.

The Binary Guardians
Leak of confidential information

SwichSmoke Leaks CANTV User Data and Movilnet Messages (Operation Venezuela)

In July 2011, an attacker identifying himself as SwichSmoke claimed to have compromised CANTV, Venezuela’s largest state-owned telecommunications company, and leaked data on Pastebin under the hashtags #OpCantv and “Operation Venezuela.” According to the attacker’s own post, the leak (with access obtained starting July 25) included a user database containing names, addresses, phone numbers, email addresses, passwords, national ID numbers, PINs, and credit card numbers, part of CANTV’s proxy server, and some text messages from its mobile subsidiary, Movilnet. The incident was reported on July 29, 2011, by the data breach tracker databreaches.net and was part of a broader SwichSmoke campaign targeting Venezuelan government entities. There is no public record of an official acknowledgment by CANTV.

SwichSmoke