Abstract:Australian broker ThinkMarkets suffers a Chaos ransomware attack; 512GB of sensitive company and client data leaked online.

Australian online brokerage ThinkMarkets has been listed as a victim of a ransomware attack by a group calling itself Chaos, which claims to have stolen and leaked 512 gigabytes of sensitive data.
The group posted ThinkMarkets on its dark web extortion site on 8 December, alongside another unnamed victim. The leaked files appear to include human resources records, client disputes, legal advice, company policies, and trading information. Cyber Daily reporters also observed passport scans of employees and know-your-customer (KYC) documents belonging to clients.
ThinkMarkets has not issued a public statement or responded to requests for comment.

Chaos is a relatively new ransomware group, first detected in February 2025, and has claimed 28 victims to date. Analysts at Talos Intelligence describe the group as active on Russian-language hacking forums, where it promotes its ransomware and recruits affiliates.
The malware is advertised as compatible with Windows, ESXi, Linux, and NAS systems, offering features such as individual file encryption keys, rapid encryption speeds, and network resource scanning. Chaos also provides an automated management panel for affiliates, requiring a paid entry fee that is refunded after the first ransom payment.
The group has stated it avoids targeting BRICS/CIS countries, hospitals, and government entities, focusing instead on corporate victims.
Headquartered in Melbourne, ThinkMarkets operates globally with offices in the Middle East, South Africa, Europe, and the United States. Originally launched as ThinkForex in 2012 under regulation by the Australian Securities and Investments Commission (ASIC), the firm rebranded as ThinkMarkets in 2016.
The company markets itself as a provider of innovative online trading services, offering clients advanced tools, educational resources, and customer support.


Did your funds fail to reach your account despite being approved by EASY TRADING ONLINE, an Australia-based brokerage entity? Have you been subject to months of withdrawal delays despite being compliant with norms? Did your trading account suddenly become invalid upon a withdrawal request? All of these complaints have come up on broker review platforms such as WikiFX. This EASY TRADING ONLINE review studies multiple user complaints while also updating its existing regulatory status.

SEBI changed India’s commodity derivatives position-limit framework on 9 September 2026, and the circular took effect immediately. The new SEBI commodity position limits double the client-level caps for agricultural commodities to 2% of deliverable supply for Broad commodities, 1% for Narrow commodities and 0.5% for sensitive commodities. SEBI also capped the daily monetary penalty for a client-level breach: ₹200,000 where the violation exceeds 2% of the prescribed limit, and ₹10,000 where it is up to 2%. Traders should not read the change as permission to ignore exchange risk controls; excess positions can still be squared off.

RYOEX’s Saint Lucia licence-information link opens a legal opinion dated 20 May 2025. The document identifies 2023-00370 as a company number and describes the local legal framework; it is not a trading licence issued by a regulator. This RYOEX review separates that document from the website’s marketing language, checks the different statuses of two account complaints, and explains the separate authorisation question facing Indian residents.

SIMPLEFX, a Saint Vincent and the Grenadines-based brokerage entity, receives complaints mostly about trading chart manipulations. Generally, while researching broker reviews, complaints usually centre on hassles concerning fund withdrawals. User complaints for this broker have come from many regions, including South Asia. This SIMPLEFX review examines these user allegations and shares its regulatory framework.