Threat Actor Characterization
You’re viewing the read-only version.
Sign in for analyst tools (editors, promote draft, file/relations management, etc.)
RootSec
ID: 15df8c520255aa33f1e054bf9db3d21c67947
Hacktivist Group
Data Leak Channel
Hacktivism
Threat types: Hacktivism, DDoS Attack, Data Leak
Progress: 81%
Completeness: 86%
Freshness: 70%
Operation zone: Israel, Morocco
Aliases
Limited alias preview
| RootSec MA | — | — | — |
Actor Network Graph
Open Network GraphMITRE ATT&CK®
confidence: medium
RootSec is referenced in OSINT as a hacktivist-facing label associated primarily with DDoS/service disruption, external defacement, and periodic credential/data exposure claims.
| Technique | Technique name | Tactics | Evidence |
|---|---|---|---|
| T1498 | Network Denial of Service | TA0040 |
|
| T1491.002 | External Defacement | TA0040 |
|
| T1078 | Valid Accounts | TA0001 TA0003 TA0004 TA0005 |
|
| T1110.003 | Password Spraying | TA0006 |
|
Executive brief
now
Saved successfully.
Hunting Playbook
now
Saved successfully.
IOC Appendix
now
Saved successfully.
OSINT Library
now
Saved successfully.