logo

Hacktivists Launch DDoS Attacks At U.S. Following Iran Bombings

ID: a58e3ad0-e1e2-5ef0-b2e1-4d80ab999850

STIX ID: report--a58e3ad0-e1e2-5ef0-b2e1-4d80ab999850

Feed Name: Cyble Blog

Threat Score
65/100

Date Published: 2025-07-03

Date Updated: 2026-07-20

...
...

Cyble reports a wave of hacktivist activity tied to the Israel–Iran conflict that has expanded to U.S. targets after recent strikes; observed activity includes DDoS attacks, website defacements, unauthorized access, credential and data leaks, and ransomware/extortion claims across dozens of groups (notably Mr Hamza, Team 313, Keymous+, Cyber Jihad, Handala and Israel-linked Predatory Sparrow). The report notes DHS warnings about likely low-level attacks and potential government-affiliated activity, presents claims and partial corroboration (check-host.net results, data samples), documents regional scale with many Iran-aligned groups active, and recommends DDoS protection, hardening of web-exposed assets, zero-trust controls, monitoring, and incident response preparedness.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.