📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global vulnerability Information Technology CRITICAL 2h Global vulnerability Software and Technology HIGH 2h Global vulnerability Software and Cloud Services CRITICAL 2h Global phishing Artificial Intelligence and Email Security HIGH 2h Global phishing Email and Communications CRITICAL 3h Global vulnerability Enterprise Software / E-commerce CRITICAL 4h Global supply_chain Software Development and Technology CRITICAL 4h Global vulnerability Information Technology HIGH 5h Global vulnerability Information Technology HIGH 5h Global vulnerability Information Technology CRITICAL 5h Global vulnerability Information Technology CRITICAL 2h Global vulnerability Software and Technology HIGH 2h Global vulnerability Software and Cloud Services CRITICAL 2h Global phishing Artificial Intelligence and Email Security HIGH 2h Global phishing Email and Communications CRITICAL 3h Global vulnerability Enterprise Software / E-commerce CRITICAL 4h Global supply_chain Software Development and Technology CRITICAL 4h Global vulnerability Information Technology HIGH 5h Global vulnerability Information Technology HIGH 5h Global vulnerability Information Technology CRITICAL 5h Global vulnerability Information Technology CRITICAL 2h Global vulnerability Software and Technology HIGH 2h Global vulnerability Software and Cloud Services CRITICAL 2h Global phishing Artificial Intelligence and Email Security HIGH 2h Global phishing Email and Communications CRITICAL 3h Global vulnerability Enterprise Software / E-commerce CRITICAL 4h Global supply_chain Software Development and Technology CRITICAL 4h Global vulnerability Information Technology HIGH 5h Global vulnerability Information Technology HIGH 5h Global vulnerability Information Technology CRITICAL 5h
VERIFIED · ANONYMIZED · ACTIONABLE

Saudi Cyber Case Study Hub

Real Saudi cyber incidents — anonymized — with lessons learned & framework violations

6 CASES 2022–2024 SAMA · NCA · PDPL
SECTOR:
FRAMEWORK:
6Cases shown
3Critical
3High
SAR 200.5MTotal impact
🔒 ANONYMIZED 🏦 Banking CRITICAL
2023
Major Saudi Bank — Insider Ransomware Attack
A privileged IT administrator at a top-tier Saudi bank used elevated credentials to deploy ransomware across 12 servers before resignation. The attack encrypted customer transactio...
SAMA CSFPDPLISO 27001
🔒 ANONYMIZED 💳 Fintech HIGH
2023
Fintech Startup — API Key Exposed on GitHub
A developer at a Riyadh-based payment fintech accidentally pushed production API keys and database credentials to a public GitHub repository. The credentials were scraped by automa...
SAMA CSFPDPL
🔒 ANONYMIZED 🏛️ Government CRITICAL
2022
Government Ministry — Supply Chain Compromise
A state-sponsored threat actor compromised a software vendor used by multiple Saudi government ministries. The malicious update was installed on 340 government workstations, enabli...
NCA ECCNCA CCCISO 27001
🔒 ANONYMIZED 🏥 Healthcare HIGH
2024
Private Hospital Group — Patient Records on Misconfigured S3
A private hospital group in Jeddah stored scanned patient medical records in an AWS S3 bucket configured as public. The misconfiguration exposed 290,000 patient files including dia...
PDPLNCA ECCISO 27001
🔒 ANONYMIZED ⚡ Energy CRITICAL
2022
Energy Infrastructure — OT Network Lateral Movement
A threat actor gained initial access via a VPN credential stuffing attack on IT systems, then pivoted to the Operational Technology (OT) network through an unsegmented IT/OT bounda...
NCA ECCIEC 62443ISO 27001
🔒 ANONYMIZED 📡 Telecom HIGH
2023
Telecom Operator — SIM Swap Fraud at Scale
Fraudsters bribed telecom employees to perform unauthorized SIM swaps on high-net-worth customer accounts. Over 3 months, 847 accounts were compromised, enabling attackers to bypas...
NCA ECCPDPL
📊 Impact Summary
Major Saudi Bank — Insider Ransomwa… SAR 8.5M
Fintech Startup — API Key Exposed o… SAR 1.2M
Government Ministry — Supply Chain … SAR 45M
Private Hospital Group — Patient Re… SAR 3.8M
Energy Infrastructure — OT Network … SAR 120M
Telecom Operator — SIM Swap Fraud a… SAR 22M
⚖️ Most Violated Controls
IAM / Privileged Access 5/6
Network Segmentation 4/6
PDPL Notification 4/6
Backup & Recovery 3/6
Third-party Risk 3/6
ARIA

Ask ARIA about any case — gap analysis, remediation plan for your org, or compliance assessment against SAMA, NCA, and PDPL.

📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.