Skip to content
Ransomware News

Ransomware Group Wallstreet Hits: World Cup 2034

Admin
HookPhish team

Summary

In the latest cybersecurity news, World Cup 2034 — an organization based in SA — has fallen victim to a ransomware attack conducted by the group Wallstreet. This data breach, discovered on 2026-10-03T11:54:05.389560+00:00, underscores the increasing need for proactive cybersecurity defenses as we continue through 2026.

Incident Report

Attribute Information
Target Organization World Cup 2034
Threat Group Wallstreet
Summary We compromised the network of the China Railway Construction Corporation
Saudi Branch / Sama Construction consortium, the MAIN CONTRACTOR building
the Jeddah Central Stadium for the FIFA World Cup 2034.

17 TB / 1.5M files exfiltrated, including:
– Main contract documents, interim payment certificates, and claims
against the owner (Jeddah Central Development Company, PIF)
– Active dispute and suspension claim records
– Personal data of 150,000+ employees, incl. Saudi employees
– IFC design documentation for the stadium
– Supplier and subcontractor commercial data (bid tabulations)

Date of Breach 2026-10-03T11:25:00+00:00
Discovery Date 2026-10-03T11:54:05.389560+00:00
Region SA
Business Sector Other

 

How to reduce your ransomware risk

Most ransomware intrusions start with a stolen password or a phishing email. A few proactive steps sharply cut your exposure:

Want to know if you’re already exposed? Run a free scan with the HookPhish data breach checker.

Disclaimer

HookPhish does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

Related articles

Security training designed for people.

See how HookPhish turns phishing simulation, training and threat monitoring into measurable human-risk reduction.

Book a demo Explore solutions