INF Group Publishes Database with Data of 86,000 Citizens
Serbian hacker group releases personal data allegedly from Croatia's judicial system on a dark web forum, including OIBs and JMBGs, with no official response from authorities yet.
Serbian hacker group releases personal data allegedly from Croatia's judicial system on a dark web forum, including OIBs and JMBGs, with no official response from authorities yet.
The hacker group INF Group, allegedly operating from Serbia, published a database containing a total of 86,000 individuals from the Republic of Croatia on a dark web forum on Monday, August 10, 2026. According to their claims, the data originates directly from Croatia's judicial system, and the release was accompanied by a message: "Here we are, we're active, and we're coming for everything you hold dear. Croatia will remember us," which they ironically concluded with "Greetings! <3".
This incident marks a continuation of a series of hacks on Croatian institutions for which the same group has claimed responsibility. With this move, the hackers have confirmed they remain operational, despite recent arrests and media reports about the prevention of their activities. Reactions or statements from Croatian authorities, as in most previous cases, are still absent.
The released database includes first and last names, personal identification numbers (OIB), dates of birth, and unique master citizen numbers (JMBG). INF Group notes that the JMBG is still internally used in Croatia's judicial systems. The group decided to share the data completely free of charge instead of selling it.
The hackers explained that they have added 26,000 new records to the existing data they already possessed, which amounted to around 60,000 entries. They describe this act as revenge for the arrests carried out, which they claim involved innocent individuals with no connection to their activities. "An innocent person was arrested," they stated from INF Group, referring to a Serbian citizen arrested a few days ago.
This event highlights the ongoing vulnerability of Croatian state systems and the escalation of cyber threats from the region. The fact that sensitive personal data of citizens is once again available on the dark web, without any official confirmation or denial from competent authorities, leaves room for concern among citizens whose data may have been compromised.
Details on the exact method by which the data leaked from the judicial system, as well as confirmation of the authenticity of the entire database, are unknown. INF Group has made it clear through their message that they do not intend to stop, raising questions about the readiness of Croatian institutions to deal with such types of attacks.