Skip to main content

Company intelligence

Telefonica cybersecurity incidents and threat signals

telefonica.com

Telefonica logo

This company page brings together public reporting currently associated with Telefonica. It reflects signals published by Shadow Tier and should not be read as a complete incident history.

1

Published signals

currently linked to this company

0

Last 28 days

recent published signals

0

Last 90 days

recent published signals

1

High or critical

confidence classifications

July 1, 2026

Latest report

most recent published signal

Explore related intelligence

Explore this reporting from another angle

Based on all published signals currently linked to Telefonica. Affected countries come from victim data; the company country above remains a separate profile fact. Counts describe this reporting set, not overall incident prevalence.

Company signals

All published signals involving Telefonica

Telefonica logoRansomware
High

Telefónica Internal Systems Breach and Data Leak

Telefónica, a Spanish multinational telecommunications company, experienced a breach of its internal ticketing system, with an estimated breach date of January 1, 2025. This incident, confirmed and reported in early January 2025, led to the theft of sensitive information, including employee emails, Jira issues, and internal documents. The Hellcat ransomware group was linked to the breach, which involved exploiting infostealer malware and social engineering tactics to compromise employee credentials.

Telefonica

FAQ

Questions about Telefonica cybersecurity reporting

What does the Telefonica page include?

It combines a reviewed organization profile with all current published Shadow Tier signals explicitly linked to Telefonica.

Does every mention of Telefonica appear here?

No. A signal must contain a reliable company connection and meet the publication criteria; incidental or ambiguous mentions are excluded.

Why can the incident count change?

The page follows current published reporting. Counts change as new evidence is added, classifications are reviewed, or older signals leave the reporting window.