ISIS-Mozambique is an Islamic State-aligned militant and terrorist organization operating in Mozambique, particularly in the country’s northern insurgency zone. It is identified as the Mozambican branch or affiliate of the Islamic State and has been active in areas of strategic significance, including territory near major offshore gas developments. Available high-confidence information supports its operational presence in Mozambique, but does not provide sufficient corroborated detail here to attribute specific cyber capabilities, ransomware activity, or broader targeting patterns beyond its geographic area of operation. As a violent extremist organization aligned with ISIS, its dominant motivation is terrorism.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Sectors the actor has been observed targeting.
Geographies tied to known operations.
Attributed origin per open-source reporting.
1 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.