UK-based telecommunications firm Colt Expertise Providers is coping with a cyberattack that has prompted a multi-day outage of among the firm’s operations, together with internet hosting and porting companies, Colt On-line, and Voice API platforms.
The British telecommunications and community companies supplier disclosed that the assault began on August 12 and the disruption continues as its IT employees works across the clock to mitigate its results.
Based in 1992 as Metropolis of London Telecommunications (COLT) and bought by Constancy Investments in 2015, Colt is a significant telecommunications service supplier working in 30 international locations throughout Europe, Asia, and North America. The corporate employs 75,000 km of fiber networks linking 900 information facilities.
Providers nonetheless offline
Initially, the corporate introduced a “technical problem” with out confirming a cyber incident. Nonetheless, the character of the occasion was communicated in subsequent standing updates.
The assault compelled the agency to take particular programs offline as a protecting measure, which affected the operations of assist companies, together with Colt On-line and the Voice API platform.
Buyer communication via on-line portals is at the moment unavailable, and shoppers are suggested to contact Colt by e mail or telephone and anticipate slower-than-usual responses.
The corporate underlined that the impacted programs are assist companies, not the core buyer community infrastructure.
As of as we speak, there isn’t any estimation for restoring affected programs and operations.
Colt says it has notified the authorities concerning the incident with out offering any particulars concerning the perpetrators or the kind of assault.
WarLock claims the assault
A menace actor utilizing the alias ‘cnkjasdfgd’ and claiming to be a member of the WarLock ransomware gang claimed the assault and supplied to promote for $200,000 a batch of 1 million paperwork allegedly stolen from Colt.
A number of information samples have additionally been printed to show the validity of the recordsdata. In response to the menace actor, the stolen recordsdata embody monetary, worker, buyer, and govt information, inside emails, and software program growth data.

Supply: KELA
Though the telecommunications firm didn’t disclose the reason for the breach, safety researcher Kevin Beaumont says that the hacker seemingly managed to realize preliminary entry by exploiting a distant code execution vulnerability in Microsoft SharePoint tracked as CVE-2025-53770.
The safety problem has been exploited as a zero-day since at the least July 18 and is taken into account essential in severity. Microsoft addressed it in a safety replace on July 21.
In response to Beaumont, the hackers stole just a few hundred gigabytes of recordsdata with buyer information and documentation.
BleepingComputer has contacted Colt to ask for verification of those allegations, and a spokesperson despatched us the beneath remark:
“We’re conscious of claims relating to the cyber incident. We’re at the moment investigating these claims.”
“Our technical crew is concentrated on restoring the inner programs impacted by the cyber incident and is working intently with third-party cyber consultants. We’re grateful for our clients’ understanding as we work in the direction of a decision to repair the impacted inside programs.” – Colt spokesperson
Replace 8/15 – Added remark from Colt

