HackMyIP
← Back to News
2026-08-05 Dark Reading

Unitel Hit by Cyberattack Hours Before Landmark IPO in Angola

Data BreachIncident ResponseAPT

Unitel S.A., Angola's dominant mobile telecommunications operator with more than 13 million subscribers, was struck by a significant cyberattack that disrupted core network services just hours before the government-owned carrier's public market debut. The incident, which began on the day of the company's IPO, knocked out voice, SMS, and mobile data services across large portions of the country, leaving customers unable to make calls or access the internet for several hours.

The attack's precise vector remains undisclosed, but the timing — colliding directly with one of the most consequential financial events in Angola's recent history — has fueled speculation that the perpetrators may have been targeting Unitel's trading infrastructure or seeking to undermine investor confidence. According to Dark Reading, Unitel's incident response teams worked through the night to restore services, and the operator has since reported that core systems are back online. The telco has not yet confirmed whether subscriber data, billing records, or internal corporate communications were accessed or exfiltrated during the intrusion.

The breach raises pressing questions about the security posture of critical telecommunications infrastructure in emerging markets, particularly state-owned assets undergoing rapid privatization and digital transformation. Angola's government has prioritized Unitel's IPO as a flagship reform effort, and any compromise of customer credentials or network integrity could carry lasting regulatory and reputational consequences. Security analysts note that telcos remain prime targets for both financially motivated ransomware operators and state-aligned APT groups, given the volume of sensitive metadata they process.

For individuals concerned about exposure following telco-sector incidents, it is prudent to verify whether personal credentials have surfaced in known compromises using an email breach checker, rotate passwords for any accounts tied to affected phone numbers, and confirm that DNS resolution on connected devices is not being intercepted via a DNS leak test. Organizations reviewing their own telecom supply-chain risk can also run a quick SSL/TLS checker against any partner integrations to ensure certificates remain valid and unexpired.

Source: Dark Reading →

Related Tools

Check whether this kind of story affects you — free, no signup:

Email Breach Check →Privacy Checkup →

Related Guides

Learn the background behind this story:

What is a data breach? →Credential stuffing attacks →How to check for an email breach →