You are exploring the Free preview. To unlock full read-only access to all public profiles and in-app notifications, create a free research account. For analyst / premium plans capabilities (editing, advanced tabs, exports), please contact us

Threat Actor Characterization

You’re viewing the read-only version. Sign in for analyst tools (editors, promote draft, file/relations management, etc.)
Sylhet Gang-SG

Sylhet Gang-SG

ID: 4ad91a71c6b7e3f4077d96d57c8a727b
Hacktivist Group DDoS Crew Hacktivism
Threat types: Hacktivism, Intrusion, DDoS, DoS
Bangladesh ISR, SAU, USA
Updated: 2026-03-14
Created: 2025-10-23
Progress: 83% Completeness: 88% Freshness: 70%
Operation zone: Israel, Saudi Arabia, United States
Aliases Limited alias preview
SG Sylhet Gang Sy************ Sy*****************
Sy*****************
Showing 2 of 5 aliases in free preview.
Actor Network Graph
Open Network Graph
Read-only preview for anonymous visitors. Sign in with a free Research account for full workspace.
MITRE ATT&CK®

Sylhet Gang-SG is a hacktivist group described in OSINT as a disruption actor and, notably, a message amplifier/recruitment node in a broader pro-resistance/anti-Israel/anti-Western hacktivist ecosystem. Reporting emphasizes Telegram-based amplification, alliance signaling, and participation in disruptive operations (DDoS/DoS). Many incident details are claim-led and should be validated by telemetry.


Technique Technique name Tactics Evidence
T1585 Establish Accounts TA0042
  • 2025-10-06 — Telegram channel network behavior and forwarding/alliance messaging indicates use of online personas and social channels for mobilization and influence. · ref
  • 2026-03-03 — Sylhet Gang-SG described as amplifier/recruitment engine in hacktivist front reporting. · ref
T1595 Active Scanning TA0043
  • 2026-03-03 — INFERENCE (confidence: medium): trigger-driven target selection and validation of exposed public services is implied by described operational model of coordinated DDoS campaigns. · ref
T1498 Network Denial of Service TA0040
  • 2023-12-01 — Sylhet Gang-SG listed among notable DDoS groups, consistent with service disruption operations. · ref
  • 2025-06-18 — Hacktivist front mapping includes Sylhet Gang-SG under service disruption/disruptive operations context. · ref
T1491.002 External Defacement TA0040
  • 2026-03-03 — INFERENCE (confidence: low): opportunistic defacement/compromise can co-occur in hacktivist ecosystems, but is not the most consistently evidenced behavior for Sylhet Gang-SG in curated sources. · ref
Strategic Intelligence
Limited preview
Last updated: 2026-03-05T20:19:38+00:00

SYLHET GANG-SG - Hacktivist group / influence-amplifier + disruptive ops (primarily DDoS/DoS; claim-led ecosystem behaviors)

Classification: Unclassified / Open Source Intelligence (OSINT) — TLP:WHITE

Full strategic intelligence is available in Analyst and Premium plans.
Executive Analyst Brief for CISO
Saved Limited preview

Executive Analyst Brief for Decision Makers — SYLHET GANG-SG

Classification: Unclassified / OSINT — TLP:WHITE

Upgrade to access the full executive brief.
Tip: Hover the section title to learn what’s included in Analyst / Premium plans.
Executive brief now
Saved successfully.
Hunting Playbook
Saved Limited preview

Hunting Playbook — SYLHET GANG-SG

Goal: detect and triage DDoS/DoS waves, distinguish “claim noise” from real impact, and catch opportunistic web compromise if it occurs during disruption windows.

Upgrade to access the full hunting playbook.
Tip: Hover the section title to learn what’s included in Analyst / Premium plans.
Hunting Playbook now
Saved successfully.
IOC Appendix
Saved Limited preview
Last updated: 2026-03-05T20:21:29+00:00

IOC Appendix — SYLHET GANG-SG (TLP:WHITE)

Classification: Unclassified / OSINT — TLP:WHITE

More IOC context for Research. Full appendix for Analyst and Premium plans.
IOC Appendix now
Saved successfully.
OSINT Library
Saved Limited preview
Last saved: 2026-03-05T20:21:54+00:00

OSINT Library — SYLHET GANG-SG


2026-03-03 — Palo Alto Networks Unit 42 — “Threat Brief: March 2026 Escalation of Cyber Risk ...”

Full OSINT references available for Research / Analyst.
OSINT Library now
Saved successfully.
Social Medial & Communication
SOCMINT integrated: 0/4

Address Verification SOCMINT
t.me/Syl********** Restricted Not integrated
t.me/SG2****** Restricted Not integrated
t.me/syl******************* Restricted Not integrated
t.me/SgP********* Restricted Not integrated
Notes: preview mode hides sensitive social/contact details.
Reference Images/Associated Evidence Limited

Showing 1–2 of 2 images
Propaganda Free Preview
Propaganda
Reference image Free Preview
Reference image