Ransomware victim disclosure
← All victimsNo Place to Hide: Unmasking the Masterminds Behind War Drones
Claimed by Handala · listed 7 months ago
Status timeline
- ListedDec 20, 2025
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileThis entry does not represent a conventional company. The leak post by Handala targets named individuals — described as principal designers of Israeli military drone programs — rather than a corporate entity. The disclosed information relates to personnel involved in Israeli regime drone development and military operations.
- Industry
- Defence & Military Drone Technology
Attack summary
Severity: critical — The deliberate public doxing of named defence-sector individuals constitutes a critical severity disclosure due to the direct personal safety risk to the identified persons, the sensitive nature of military/defence programme information, and the stated intent to expose those involved in classified or sensitive government defence activities.Handala claims to have identified and published the full personal profiles of 14 principal designers behind Israeli military drone programs, framing this as a targeted doxing operation rather than a ransomware or encryption attack. No ransom demand is stated; the action appears to be politically motivated data exposure.
Data the group says was taken
AI dossier — extracted from the leak post- Full personal profiles of named individuals
- Names of drone program designers
- Potentially identifying biographical or professional data
What the group claims
As part of our ongoing commitment and in accordance with our tradition every Saturday, today Handala RedWanted is releasing the names and full profiles of 14 principal designers behind the Israeli regime’s drone programs. These individuals play a central role in developing and advancing drone technologies that have been used extensively in military operations, resulting…
Sources
Source
Indexed 7 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

