Cyber Toufan appear to have got the hots for Microsoft.

Cyber Toufan posted a ceasefire message today, which they plan to respect.

They also claimed responsibility for wiping 200 SMBs in Israel just before the ceasefire.

I haven’t seen anything about that, but they have definitely wiped orgs before, eg they were behind the ESET Wiper.

Here's the fax translated to English, contains the usual death threats.

(Also, just below, not captured in the photo is a QR code which redirects to their Telegram channel)

Cyber Toufan launched a massive cyberattack* on Israel by sending 2500 faxes (yes, faxes) via an online website. I've verified Cyber Toufan sent them.

https://www.globes.co.il/news/article.aspx?did=1001491204

Cyber Toufan’s “OpIsrael” for today’s anniversary was to post a gross video of Hamas killing people with a soundtrack.

They failed to actually do anything cyber, and lots of people smashed the clown emoji.

Cyber Toufan just reappeared, first time since April. Earlier this year they wiped a bunch of Israeli org’s webservers and dumped info.

This time they say “OpIsrael” and 7 October.

Berkshire eSupply have filed a data breach notification in Maine:

The two above orgs are based in the United States.. it looks like #cybertoufan are wiping orgs in the US with connections to Israel. So far it is still restricted targeting though, i.e. they are doing their research.

I still think it’s interesting how asleep the cyber industry is on this - still zero AV detections on the scripts they’re using, tried them with a leading EDR and no rules triggered either.

Berkshire eSupply is also still offline: