BD Anonymous, also referred to as BD Anonymous Team, is a Bangladeshi hacktivist group active in pro-Iranian and pro-Palestinian cyber campaigns. The group has been identified among globally distributed hacktivist actors aligned with Tehran’s broader proxy-style cyber ecosystem, alongside other Bangladesh-based collectives. Its operations are primarily propaganda-driven and disruptive rather than technically advanced, with activity centered on distributed denial-of-service attacks and occasional doxxing or claimed data exposure. The group has participated in ideologically framed campaigns tied to the Israel–Palestine conflict and wider Middle East tensions, and has also appeared in broader coalition-style activity with other hacktivist actors. Reported targeting includes Israeli interests, U.S.-linked targets, Qatar, South Korea, and international organizations. BD Anonymous has also been observed in campaigns associated with pro-Kremlin hacktivist activity, indicating opportunistic alignment across overlapping geopolitical narratives rather than a purely local agenda. Known behavior includes disruptive attacks against public-facing online services, especially government and institutional websites, as well as public claims of collecting and exposing personal data on high-profile Israeli figures. Available reporting places the group within the lower-to-medium sophistication tier typical of many Telegram-centric hacktivist operations, where visibility, ideological signaling, and coalition branding are central features. The dominant motivation is hacktivism.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Sectors the actor has been observed targeting.
Geographies tied to known operations.
Attributed origin per open-source reporting.
1 distinct technique observed across reporting, grouped by tactic. Hover any cell for the evidence excerpt; click through for MITRE's full description.
7 indicators attributed to this actor: domains, IPs, hashes, and other artifacts pulled from reporting. View more in app.
6 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Messaging-heavy Bangladeshi hacktivist group conducting DDoS attacks against symbolic international and South Korean targets framed around Palestine and anti-Western narratives.
Pro-Iran hacktivist group operating from Bangladesh as part of Iran’s globalized recruitment ecosystem.
Hacktivist group cited making targeting declarations against Israel and the US during the surge; no specific tooling described.
Hacktivist group conducting/claiming DDoS against Qatar Ministry of Interior online services.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.