MENA hacktivist groups and the operations they publicly claim — DDoS, defacement and hack-and-leak postings, curated from public claim channels. Every row is a claim by the group, not a confirmed breach or verified outage — metadata only, same posture as Ransomware Watch. A group name links to its actor profile when matched, and shared tradecraft/infrastructure across sources is what Correlated Activity clusters.
This is a curated collection, not a live feed: new claims are added as the analyst verifies them as public postings, not in real time.
Group claims, not confirmed impacts — metadata only.
20 of 40 shown · filtered to DDoS
| Group | Type | Target | Sector | Country | Claimed | Motive |
|---|---|---|---|---|---|---|
| BD Anonymous Team | DDoS | Qatar Ministry of Interior online services | Government / Interior | QatarQA | 2026-02-28 | pro-palestine |
| Dark Storm Team | DDoS | Israeli financial entities (DDoS and claimed data-leak activity; secondary spillover into Saudi Arabia) | Financial Services | IsraelIL | 2026-02-28 | pro-palestine |
| DieNet | DDoS | Kuwait government/critical infrastructure (Ministry of Defense, Kuwait Airport, Kuwait Finance House, National Bank of Kuwait, Gulf Bank) — part of a Gulf-wide (BH/QA/AE/KW/SA) DDoS wave | Government / Finance / Aviation | KuwaitKW | 2026-02-28 | pro-iran |
| Handala Hack Team | DDoS | Jordanian fuel-station / gas infrastructure (nationwide disruption claimed, unverified) | Energy / Fuel Distribution | JordanJO | 2026-02-28 | pro-iran |
| Team Fearless | DDoS | Multiple Qatar government websites (cited Doha inaction after Israeli strike on Hamas leadership in Doha) | Government | QatarQA | 2025-09-10 | pro-palestine |
| Mr Hamza | DDoS | Israeli government / critical websites (unnamed; #OpIsrael, peaked 16 Jun 2025 after Israeli strikes on Iran) | Government / Multiple | IsraelIL | 2025-06-16 | pro-iran |
| Anonymous Sudan ↗ | DDoS | UAE entities (unspecified) — claimed as retaliation over alleged RSF support | — | UAEAE | 2024-02-01 | anti-UAE |
| Anonymous Sudan ↗ | DDoS | The Jerusalem Post website | Media | IsraelIL | 2023-10-08 | opisrael |
| KillNet ↗ | DDoS | Israeli government website (and claimed Shabak/Shin Bet site) | Government | IsraelIL | 2023-10-08 | pro-russia |
| Mysterious Team Bangladesh | DDoS | UAE government ministries (Defence, Energy & Infrastructure, Health & Prevention portals) | Government | UAEAE | 2023-05-20 | opuae |
| Anonymous Sudan ↗ | DDoS | Flydubai airline website | Aviation | UAEAE | 2023-05-06 | anti-UAE |
| Anonymous Sudan ↗ | DDoS | Dubai Police and UAE government / media websites | Government / Law Enforcement | UAEAE | 2023-05-06 | anti-UAE |
| Anonymous Sudan ↗ | DDoS | UAE government portals and Emirati banks (8 official UAE domains) | Government / Banking | UAEAE | 2023-05-05 | anti-UAE |
| Anonymous Sudan ↗ | DDoS | Iron Dome / missile-alert systems (claim unconfirmed by Israel) | Defense | IsraelIL | 2023-05-02 | opisrael |
| Anonymous Sudan ↗ | DDoS | Israeli government, port and Mossad websites | Government | IsraelIL | 2023-04-26 | opisrael |
| Anonymous Sudan ↗ | DDoS | Israel Post and Israeli banks (Bank Leumi, Discount Bank, Mizrahi-Tefahot, First International Bank) | Postal / Banking | IsraelIL | 2023-04-14 | opisrael |
| RipperSec | DDoS | Israeli media, government and supporting organisations (Medusa botnet; aggregate 2024 campaign) | Government / Media | IsraelIL | — | pro-palestine |
| SN_BLACKMETA | DDoS | Israeli telecoms and the Tel Aviv Stock Exchange | Telecom / Finance | IsraelIL | — | pro-palestine |
| SN_BLACKMETA | DDoS | Saudi Ministry of Defense website | Government / Defense | Saudi ArabiaSA | — | pro-palestine |
| SN_BLACKMETA | DDoS | Middle Eastern financial institution (reported as a UAE bank) — six-day, ~100-hour DDoS | Financial Services | UAEAE | — | pro-palestine |
Columns match spec §7 doctrine: group (linked when matched, plain when not), op-type badge, target, sector, country, claim date, motive. No claim/leak/onion URL is ever stored or shown, mirroring Ransomware Watch.