Hacktivist group

LunarisSec

LunarisSec is an Algeria-branded cyber collective with an active Telegram channel, a linked community chat, an X account and a public creator persona using the handle @[redacted]. The group’s own channel repeatedly uses Algerian identity markers and presents LunarisSec as both a vulnerability-research/security-services brand and a politically motivated digital-rights actor.

Public posts observed during June and July 2026 described vulnerability findings affecting French organizations and stated that several issues had been reported to the affected parties. In late July, the channel shifted into an overt political-pressure narrative around the European Union’s proposed Chat Control framework, demanding abandonment of the proposal, preservation of end-to-end encryption and greater transparency.

Independent reporting corroborated the existence and messaging of that campaign, but also noted the absence of verifiable evidence supporting LunarisSec’s more serious assertions about access to or vulnerabilities within European systems. No mature body of independently confirmed intrusions, malware, destructive tooling or persistent infrastructure was identified in the reviewed evidence.

INFERENCE (confidence: medium): LunarisSec is attempting to convert vulnerability-research visibility into political leverage and brand legitimacy. Its combination of disclosure-style activity, commercial security positioning and coercive hacktivist rhetoric creates a dual-use identity in which legitimate research signals and offensive threats coexist.

Assessment confidence is high for the actor’s public identity, Algeria branding, creator account and declared political intent; medium for individual vulnerability findings as described by the actor; and low for claims of successful compromise or operational impact without victim-side or technical corroboration.

Created by iQBlack CTI Team
Contributors 1
Last updated 2026-08-18