WildCard
- Primary motivation
- espionage
- Sophistication
- advanced
- Resource level
- organization
- Actor type
- unknown
- Profile updated
- 2026-07-07 12:10:25
Targeted industries: education-and-nonprofits government-and-public-sector
Targeted regions: country_code:il
Context
Wildcard is a threat actor that initially targeted Israel's educational sector with the SysJoker malware. They have since expanded their operations and developed additional malware variants, disguised as legitimate software, including one written in the Rust programming language called RustDown. Their precise identity remains unknown, but they have shown advanced capabilities and a focus on critical sectors within Israel.
Reports & references
- intezer.com — Wildcard Evolution Of Sysjoker Cyber Threat (report)