Harakat Ashab al-Yamin al-Islamiyyah is a self-identified militant group that claimed responsibility for a cluster of firebomb attacks against Jewish and American-linked targets in the Netherlands and Belgium. Reported targets included synagogues in Rotterdam and Liège, a Jewish school in Amsterdam, and an office building in Amsterdam associated in the group’s messaging with American and Zionist interests. Dutch authorities treated at least the Rotterdam synagogue attack as terrorism. The group’s public claims were disseminated through multiple Telegram accounts accompanied by attack videos and branded imagery. Its propaganda linked the attacks to conflict involving the United States, Israel, Iran, and Lebanon, and researchers cited in reporting assessed its symbolism and rhetoric as more consistent with Shiite, Iran- and Hezbollah-inspired iconography than with mainstream Sunni jihadist messaging. At the same time, the propaganda was assessed as amateurish and inconsistent, including errors in terminology and presentation, and no established central propaganda channel was identified. Based on the reported incidents, the actor has demonstrated capability for ideologically motivated arson attacks against religious and symbolic targets, propaganda dissemination, and target selection aligned with antisemitic and anti-American themes. Available information does not establish a confirmed state affiliation or a mature organizational structure.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Sectors the actor has been observed targeting.
Geographies tied to known operations.
1 distinct technique observed across reporting, grouped by tactic. Hover any cell for the evidence excerpt; click through for MITRE's full description.
1 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.