logo

Hacktivist campaigns increase as United States, Iran, and Israel conflict intensifies

ID: cdd26859-1c66-5fa5-876e-a28cdd0e2c95

STIX ID: report--cdd26859-1c66-5fa5-876e-a28cdd0e2c95

Feed Name: Sophos Blogs

Threat Score
60/100

Date Published: 2026-03-03

Date Updated: 2026-04-30

...
...

CTU observed an uptick in pro‑Iran hacktivist activity across Telegram, X, and forums after U.S./Israeli strikes on Iran, with groups like Handala Hack Team and APTIran claiming attacks (mostly unverified) such as website defacements, DDoS, doxxing, and data leaks; a BaqiyatLock RaaS offering free affiliates further raises ransomware risk. CTU recommends heightened defensive posture, patching internet‑facing systems, monitoring for credential attacks and phishing, and maintaining endpoint/backup readiness.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.