WildCard

Primary motivation
espionage
Sophistication
advanced
Resource level
organization
Actor type
unknown
Profile updated
2026-07-07 12:10:25

Targeted industries: education-and-nonprofits government-and-public-sector

Targeted regions: country_code:il

Context

Wildcard is a threat actor that initially targeted Israel's educational sector with the SysJoker malware. They have since expanded their operations and developed additional malware variants, disguised as legitimate software, including one written in the Rust programming language called RustDown. Their precise identity remains unknown, but they have shown advanced capabilities and a focus on critical sectors within Israel.

Reports & references

  • intezer.com — Wildcard Evolution Of Sysjoker Cyber Threat (report)

External references