Inside Handala’s Hack on the FBI Director
ID: 1aaae907-3c0e-5675-afa6-ced2555d43ff
STIX ID: report--1aaae907-3c0e-5675-afa6-ced2555d43ff
Feed Name: SOCRadar Blog
**Executive summary:** This report profiles the Handala group (allegedly an Iranian MOIS-backed persona) and documents a string of high-impact operations in early 2026 — including the breach and release of FBI Director Kash Patel's personal emails, a March 11 campaign that used compromised Microsoft Intune Global Admin credentials to factory-reset and wipe ~200,000 Stryker devices across 79 countries, doxxing of Lockheed Martin engineers, attacks on Israeli infrastructure and officials, and Telegram session hijacking — highlighting a mix of credential abuse, use of legitimate administrative tooling, data leaks, and psychological operations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
