Ransomware victim disclosure
← All victimsIsrael Institute for National Security Studies (INSS)
Claimed by Handala · listed 3 months ago
Status timeline
- ListedMar 4, 2026
- Data leakeddate unknown
At a glance
- Group
- Handala
- Status
- Data leaked
- Country
- Israel
- Sector
- Public Sector
- Listed on leak site
- Mar 4, 2026
About the victim
AI dossier — public-source company profileThe Israel Institute for National Security Studies (INSS) is a leading Israeli think tank focused on national security and strategic research. It is affiliated with Tel Aviv University and produces policy analysis, research, and recommendations for Israeli government and military decision-makers. INSS operates as a publicly prominent institution advising on defence, foreign policy, and regional security matters.
- Industry
- National Security & Strategic Policy Research
- Employees
- 51-200
- Founded
- 1977
Attack summary
Severity: high — INSS is a national-security-focused think tank with access to sensitive policy, intelligence-adjacent research, and government-linked personnel data. A confirmed data publication from such an institution constitutes a high-severity disclosure due to the strategic sensitivity of the content, even without explicit confirmation of PII at scale.The Handala group claims to have hacked INSS, implying unauthorised access to internal systems and data; the post carries strong ideological framing but does not explicitly detail whether encryption or exfiltration occurred, though the disclosed status indicates data has been published.
Data the group says was taken
AI dossier — extracted from the leak post- Internal institutional documents
- Strategic research materials
- Staff or researcher information
What the group claims
INSS Hacked Your national security is built on deception, media manipulation, and the brainwashing of Jews. How did your national security institution imagine it could end the war in just a few days? But this time is different, and there will be no end. This is a war between good and evil, and all the…
Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

