CSIDB logo
Threat actor

Muslim Cyber Army

Attribution profile

Type
Activist
Location
India
Known incidents
1 incident
First seen
2016-07-10
Last seen
2016-07-10
Updated
2026-07-31 07:47
Aliases
1 alias

STIX characteristics

Threat actor characteristics are available to members.

Profile narrative

The threat actor known as Muslim Cyber Army operates under that alias and is based in India. It publicly identifies itself as part of the Anonymous collective’s #OpIndia campaign. The group’s name appears in a 2016 blog post titled “Anonymous #OpIndia Reborn” where it declares its affiliation. This association with Anonymous situates the actor within a broader hacktivist movement focused on Indian targets. No further details about its internal structure, size, or sponsorship are provided in the source material. The actor’s location is noted only as India, with no more specific geographic information given.

On July 10, 2016, the Muslim Cyber Army claimed responsibility for an incident at Goa University in the state of Goa, India. The attack involved an intentional internet service shutdown that disrupted campus connectivity. Simultaneously, the actors leaked sensitive user information, exposing the personal details of thousands of individuals. These actions were described in the same blog post as part of an “Update Hybrid Communications Internet Shutdown and Leak Thousands of User Details” operation. The described tactics therefore consist of network disruption and data exfiltration, without reference to malware, specific exploit tools, or initial access vectors. No financial gain or espionage motive is mentioned; the activity is framed as a disruptive hacktivist operation. The Goa University case remains the sole publicly reported operation attributed to Muslim Cyber Army in the available sources. Consequently, the profile is limited to the observed targeting of an educational institution in western India and the associated disruption‑and‑leak tactics. No additional sectors, regions, or campaign patterns are documented in the provided material. Any further characterization would require speculation beyond the facts presented.

Incidents

Attributed incidents are available to members.

1 incident
CSIDB