TI Mindmap HUB
Threat Intelligence Report

“Handala Hack” – Unveiling Group’s Modus Operandi

📅 March 13, 2026 📰 research.checkpoint.com 🔍 0 CVE(s) referenced

Handala Hack, an Iranian state-linked threat group, continues to execute rapid, hands-on destructive attacks against high-profile targets using a blend of persistent credential theft, lateral movement via RDP and tunneling tools, and simultaneous deployment of multiple wipers, now enhanced with AI-assisted scripting and legitimate encryption utilities to maximize operational impact and complicate recovery.

vendor

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

🔐 Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

📊 Visual Mindmap
🎯 IOC Extraction
⚔️ MITRE ATT&CK TTPs
📦 STIX 2.1 Bundle