Cybercrime

Pro-Iranian Hacking Group Claims Credit for Hack of FBI Director Kash Patel’s Personal Account

The group that it was making available for download emails and other documents from Patel’s account.

Iranian ICS hack

A pro-Iranian hacking group claimed Friday to have hacked an account of FBI Director Kash Patel and has posted online what appear to be years-old photographs of him, along with a work resume and other personal documents. Many of those records appeared to be more than a decade old.

“Kash Patel, the current head of the FBI, who once saw his name displayed with pride on the agency’s headquarters, will now find his name among the list of successfully hacked victims,” said a message posted Friday from the group Handala.

The message was accompanied by more than a half dozen photos of Patel, including ones of him standing beside an antique sports car and another with a cigar in his mouth. The group also said that it was making available for download emails and other documents from Patel’s account. Many of the records appeared to relate to his personal travels and business from more than 10 years ago.

The FBI had no immediate comment on Friday, but a person familiar with the matter who spoke on condition of anonymity to discuss nonpublic information confirmed that a personal email account of Patel’s had been breached. It was not clear when the hack claimed by Handala might have occurred, but news reports from December 2024 said that Patel had been informed by FBI that he had been targeted as part of an Iranian hack.

Handala is a pro-Iranian, pro-Palestinian hacking group that earlier this month claimed credit for disrupting systems at Stryker, a Michigan-based medical technology company. Handala said the attack was in retaliation for suspected U.S. strikes that killed Iranian schoolchildren. They’re a prominent example of the proxy groups that carry out cyber attacks on behalf of Iran.

The Justice Department singled out Handala in an announcement last week in which it said it had seized four web domains tied to Iranian hacking schemes and the threatening of dissidents.

Advertisement. Scroll to continue reading.

UPDATE, March 30: The FBI has confirmed that an email account of Director Patel has been hacked, but said the compromised information is old.

Related: Iran Readied Cyberattack Capabilities for Response Prior to Epic Fury

Related: US Confirms Handala Link to Iran Government Amid Takedown of Hackers’ Sites

Related Content

Cyberwarfare

The 17 members of the Mabna Institute targeted hundreds of universities and organizations in the US and abroad.

ICS/OT

Georgia has been confirmed as one of the attacked states after Clayton County reported a pump station disruption.

ICS/OT

Michigan, South Dakota, and Georgia are reportedly on the list of states whose water systems have been targeted by Iran-linked hackers.

Malware & Threats

Iran has the “geopolitical motivations” and a recent history of targeting water systems, experts pointed out.

ICS/OT

An updated advisory from federal agencies provides information on the techniques used to hack programmable logic controllers.

Cyberwarfare

Researchers say the Iran-linked threat actor used an adaptable modular malware framework and compromised IT service providers to reach high-value targets in Israel.

ICS/OT

Mandiant has helped the California water utility investigate the cyberattack launched by Iranian hacker group Handala.

ICS/OT

California Water Service says there is no indication of operational disruptions to its water and wastewater systems. 

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version