Israeli police arrested a 40-year-old Ashkelon resident after a months-long investigation into alleged malware attacks on dozens of companies. Authorities are examining seized devices to determine what data was accessed and the motive behind the suspected cyber campaign.

Israel Arrests Ashkelon Man Over Malware Attacks on Dozens of Companies

The420 Correspondent
5 Min Read

Jerusalem: Israeli police have arrested a 40-year-old man from Ashkelon on suspicion of breaching the computer systems of dozens of companies, planting malware and collecting sensitive information. According to police, companies operating across multiple sectors were allegedly targeted in the cyber campaign. However, the investigation is still underway, and authorities have yet to determine how much data was accessed or allegedly stolen and what type of information was involved.

The suspect was arrested by investigators from the Cyber Unit of Lahav 433 following a months-long undercover investigation. Police said the probe began after indications emerged that computer systems belonging to several companies had been compromised and information had allegedly been stolen. After receiving a complaint, investigators began examining the suspected intrusions and gradually identified additional companies whose systems were allegedly linked to the same activity.

FCRF Launches Flagship Certified Cyber Security Auditor (CCSA) Program for Next-Generation Cyber Auditors

As the investigation progressed, cyber investigators began connecting digital evidence collected from separate incidents. Police described the process as a complex analytical operation that ultimately helped investigators identify the suspect. By comparing information obtained from different companies, computer activity and other digital evidence, investigators were gradually able to trace the alleged attacks to the Ashkelon resident.

Sources familiar with the investigation said the suspect allegedly acted alone and was not believed to be connected to any organised criminal group. The sources also said he had no known criminal record. Investigators, however, have not yet determined why he allegedly targeted the companies or how he intended to use the information obtained from their systems.

According to police, there was no clear indication at the time of the arrest that the suspect had attempted to blackmail the companies using the information he allegedly obtained. Investigators are therefore also examining the possible motive behind the alleged cyber campaign. They are trying to establish whether the information was collected for a specific purpose or whether it was intended for use in another activity.

The number of companies allegedly affected increased as the investigation continued. Authorities compared evidence from separate incidents to identify possible links between the attacks. Several company computer systems were subsequently found to have allegedly been compromised. Investigators believe that digital evidence collected from these incidents played a significant role in identifying the suspect.

Following the arrest, police searched the suspect’s home and seized computer equipment and other digital material. Investigators also searched several companies linked to the case. The seized devices could help determine how the alleged malware attacks were carried out, which systems were accessed and what information may have been obtained.

The investigation is being conducted in cooperation with the Cyber Department of Israel’s State Attorney’s Office. Police have accused the suspect of offences under Israel’s Computer Law, along with alleged wiretapping, invasion of privacy, obtaining information or property by fraud and other related offences.

The suspect was brought before the Rishon LeZion Magistrate’s Court for a detention hearing. The court ordered that he remain in custody for an additional six days. At the request of his lawyer, the court also imposed a gag order preventing the publication of his identity. His name has therefore not been made public by the authorities.

Investigators are now examining the seized computers, digital files and other electronic evidence as part of the forensic investigation. Authorities have also not disclosed the identities of the companies allegedly targeted. It remains unclear how much data was affected or whether sensitive corporate or personal information was transferred outside the compromised systems.

The case highlights the risks posed by malware-based cyberattacks, in which attackers can gain access to computer systems and potentially remain undetected for extended periods. In this investigation, connecting digital evidence from separate incidents reportedly proved important in helping authorities identify the suspected hacker.

The allegations against the suspect remain part of an ongoing criminal investigation. Police are continuing to examine the digital evidence and the suspected activities. The suspect’s criminal liability and guilt will ultimately be determined through the judicial process and on the basis of evidence presented before the court.

About the author — Suvedita Nath is a science student with a growing interest in cybercrime and digital safety. She writes on online activity, cyber threats, and technology-driven risks. Her work focuses on clarity, accuracy, and public awareness.

Stay Connected