Jordan Kuwait Bank confirmed that internal files were allegedly exfiltrated during a ransomware attack and the data has now been listed for sale on the Everest ransomware group’s leak site.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
What Public Reporting Shows
Public reporting indicates the incident occurred in early 2025. On April 26, 2025, the Everest ransomware group added Jordan Kuwait Bank to its public leak site, publishing proof of exfiltration. The bank, founded in 1972 and operating in Jordan, Palestine, and Cyprus, provides personal banking, corporate services, foreign trade, treasury, and digital banking applications. It is a subsidiary of Kuwait Projects Company (Holding).
Exact victim numbers remain undisclosed. The exposed material consists of internal files rather than a simple database dump. No customer record count or specific data fields such as account numbers or Social Security equivalents have been publicly detailed by either the bank or the threat actors. The leak site listing serves as both proof of compromise and a deadline for the bank to negotiate before broader publication.
Why This Matters for You and Your Family
When a bank suffers a ransomware breach, the information at risk often extends beyond corporate spreadsheets. Customer records, employee details, loan applications, and scanned identification documents can appear in the stolen archive. If your bank is Jordan Kuwait Bank or you hold accounts at any institution that shares data with it, your personal and financial information could already be in attackers’ hands.