Ransomware victim disclosure
← All victimsWeizmann Institute of Science
Claimed by Handala · listed 1 year ago
Status timeline
- ListedJun 18, 2025
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileThe Weizmann Institute of Science is a leading international research institution located in Rehovot, Israel, founded in 1934. It conducts advanced research across physics, chemistry, biology, mathematics, and computer science, with significant focus on both fundamental and applied sciences.
- Industry
- Scientific Research & Higher Education
- Address
- Rehovot, Israel
- Employees
- 1000-1500
- Founded
- 1934
Attack summary
Severity: high — Claimed breach of core infrastructure of a major research institution with potential access to sensitive scientific research and systems; disclosure status indicates data published; however, specific data categories and proof counts are not provided in excerpt.Handala Group claims to have breached and compromised core infrastructure of the Weizmann Institute of Science in a coordinated hybrid operation. The group characterizes the institution as involved in military and weapons development, though specific data exfiltration claims or proof of data publication are not detailed in the provided excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- core infrastructure systems
- research data
What the group claims
In a complex, coordinated hybrid operation, the Handala Group has successfully breached and compromised the core infrastructure of the Weizmann Institute of Science , an institution deeply embedded in the architecture of occupation, military aggression, and the development of weapons of mass destruction. This institute is not merely an academic body , it is a…
Sources
Source
Indexed 1 year agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

