Islamic Hacker Army is a hacktivist threat actor active in anti-India and anti-Israel cyber campaigns. It has been identified among pro-Pakistan and Islamically oriented groups involved in the 2025 India-Pakistan crisis, where such actors conducted high-visibility operations including distributed denial-of-service attacks, website defacements, intrusion attempts, phishing, and unverified breach claims against Indian government, defense, and related institutions. The group has also been named among actors targeting Israeli entities, including reported activity against Israeli websites and defense-related systems. Reporting associates the group with disruptive and propaganda-oriented operations rather than consistently advanced tradecraft. However, some accounts attribute to Islamic Hacker Army the use of custom backdoors, wiper malware, botnet-enabled DDoS activity, and vulnerability scanning, indicating at least occasional capability beyond simple defacement. Claimed membership or presence has been linked to multiple countries, but available information does not support a single high-confidence national attribution. Islamic Hacker Army is best characterized as an ideologically motivated hacktivist actor operating in the context of regional geopolitical conflicts, especially those involving India, Pakistan, Israel, and Iran.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Sectors the actor has been observed targeting.
Geographies tied to known operations.
1 distinct technique observed across reporting, grouped by tactic. Hover any cell for the evidence excerpt; click through for MITRE's full description.
2 malware families attributed to this actor across reporting.
6 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Referenced only as a named threat actor in a related post title targeting an Israeli site; no operational details are provided in the main content.
Pan-Islamic hacktivist/proxy collective using global cloud/offshore infrastructure; described using custom backdoors and wipers plus DDoS and mass exploitation tooling against energy/telecom targets.
Islamic Hacker Army is a hacktivist group targeting Iranian organizations, likely using DDoS and data leak tactics.
Targets Israeli military research systems.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.