You are exploring the Free preview. To unlock full read-only access to all public profiles and in-app notifications, create a free research account. For analyst / premium plans capabilities (editing, advanced tabs, exports), please contact us

Threat Actor Characterization

You’re viewing the read-only version. Sign in for analyst tools (editors, promote draft, file/relations management, etc.)
Anonymous Indonesia

Anonymous Indonesia

ID: bac34c6371e08e5e9b8cce50c667562688897
Hacktivist Group Defacement Crew Hacktivism
Threat types: Defacement, Intrusion
Indonesia
Updated: 2026-01-13
Created: 2025-10-17
Progress: 45% Completeness: 43% Freshness: 50%
Operation zone:
Aliases Limited alias preview
No aliases registered.
Actor Network Graph
Open Network Graph
Read-only preview for anonymous visitors. Sign in with a free Research account for full workspace.
MITRE ATT&CK®

Anonymous Indonesia — campaign label used around 2013 for solidarity defacements following a local arrest; >12 Indonesian government sites defaced in a short window; emblematic of mass-participation hacktivism rather than a tight crew.


Technique Technique name Tactics Evidence
T1491.002 External Defacement TA0040
  • 2013-01-31 — VOA reports >12 Indonesian government sites defaced by ‘Anonymous Indonesia’ after an arrest in East Java. · ref
T1498 Network Denial of Service TA0040
  • 2013 — Anonymous campaigns often pair defacement with DDoS; Indonesia wave referenced in broader Anonymous reporting (context). INFERENCE. · ref
Strategic Intelligence
Limited preview
Last updated: 2025-10-17T21:03:34+00:00
Anonymous Indonesia (Campaign Label)

CLASSIFICATION: Unclassified / Open Source


Executive Summary

Anonymous Indonesia surfaced prominently in January 2013 after the arrest of a local hacker, with >12 government sites defaced in solidarity. This is best treated as a campaign label within the wider Anonymous universe—large participation, IO-heavy, and not a fixed org. Confidence: medium (press corroboration).

  • T1491.002 — Defacement (External): govt sites altered with message/political protest.
  • T1498 — Network DoS: commonly paired in Anonymous ops (contextual inference).


Full strategic intelligence is available in Analyst and Premium plans.
Executive Analyst Brief for CISO
Empty Limited preview
No content yet.
Tip: Hover the section title to learn what’s included in Analyst / Premium plans.
Executive brief now
Saved successfully.
Hunting Playbook
Empty Limited preview
No content yet.
Tip: Hover the section title to learn what’s included in Analyst / Premium plans.
Hunting Playbook now
Saved successfully.
IOC Appendix
Empty Limited preview
No content yet.
IOC Appendix now
Saved successfully.
OSINT Library
Empty Limited preview
No content yet.
OSINT Library now
Saved successfully.
Social Medial & Communication
SOCMINT integrated: 0/0

No social links registered for this profile.
Notes: preview mode hides sensitive social/contact details.
Reference Images/Associated Evidence Limited

Showing 1–1 of 1 images
Logo variant Free Preview
Logo variant