A hacktivist group known as JBT2026 (Jabaroot) claims to have breached Morocco’s General Directorate for Territorial Surveillance (DGST) and General Directorate of National Security (DGSN) as part of an operation identified as #OP_CEUTA.
According to the group’s claim, approximately 70,000 records belonging to personnel associated with intelligence, security, military, and law-enforcement sectors were allegedly obtained.
The information reportedly includes:
- Names and dates of birth
- National identity card (CIN) numbers
- Recruitment years and ranks
- PPR personnel numbers
- Bank account details (RIB)
If authentic, the combination of personal, professional, and financial information could create significant security and privacy risks. Such data could potentially be used for targeted phishing, impersonation, financial fraud, or profiling of security personnel.
However, the alleged breach has not been independently confirmed. The current status remains pending verification, and available information does not establish how the data was obtained.
Several possibilities remain open, including compromised privileged accounts, insider access, a direct system compromise, a third-party source, or previously exposed data.
The key questions are whether the dataset is authentic, where the information originated, and whether it was obtained through a recent compromise of DGST or DGSN systems.
The incident highlights a broader cybersecurity concern: when identity, employment, and financial information are combined, the exposure of sensitive personnel data can create risks that extend well beyond ordinary data privacy.
