logo

Inside Handala’s Hack on the FBI Director

ID: 1aaae907-3c0e-5675-afa6-ced2555d43ff

STIX ID: report--1aaae907-3c0e-5675-afa6-ced2555d43ff

Feed Name: SOCRadar Blog

Threat Score
92/100

Date Published: 2026-03-30

Date Updated: 2026-04-30

Author: Ameer Owda

...
...

**Executive summary:** This report profiles the Handala group (allegedly an Iranian MOIS-backed persona) and documents a string of high-impact operations in early 2026 — including the breach and release of FBI Director Kash Patel's personal emails, a March 11 campaign that used compromised Microsoft Intune Global Admin credentials to factory-reset and wipe ~200,000 Stryker devices across 79 countries, doxxing of Lockheed Martin engineers, attacks on Israeli infrastructure and officials, and Telegram session hijacking — highlighting a mix of credential abuse, use of legitimate administrative tooling, data leaks, and psychological operations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.