Mysterious Team Bangladesh is a pro-Iranian and pro-Palestinian hacktivist group associated with anti-Israel cyber operations during the June 2025 escalation between Israel and Iran. It has been identified among hacktivist actors from Muslim-majority South Asian countries participating in ideologically driven campaigns against Israeli entities and publicly called for "Operation True Promise 3" against Israel while also warning Jordan, Egypt, and Saudi Arabia against interfering with Iranian operations. The group appears to operate within a broader ecosystem of Telegram-coordinated hacktivist alliances supporting Iran and Palestine, where propaganda, mobilization, and claimed offensive activity are amplified across social platforms. Available reporting directly supports its alignment, messaging, and targeting posture in the Israel-Iran conflict context, but does not provide high-confidence corroboration of specific independently verified intrusions or a detailed malware/tooling profile. Its dominant motivation is ideological and political support for Iran and Palestine rather than financial gain.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Geographies tied to known operations.
Attributed origin per open-source reporting.
2 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Hacktivist group publicly supporting Iran and calling for cyber operations against Israel; issues deterrent threats toward regional states perceived as interfering.
Referenced as a South Asian hacktivist group targeting Israeli entities (per CERT-EU brief excerpt); no further detail provided.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.