Morocco: What We Know About Jabaroot's Latest 'Security' Leak
Hacker group Jabaroot claimed to have leaked data of 70,000 Moroccan security and intelligence agents, but sources indicate the data did not originate from a direct hack of Moroccan security services.
Intelligence analysis by Gemini 2.5 Flash

The hacker group Jabaroot announced on Telegram the release of files containing approximately 70,000 names, which they assert belong to Moroccan security and intelligence personnel. However, internal information suggests that these leaked details were not obtained through a direct breach of Moroccan security agencies.
Imagine a group of digital pranksters said they found a secret list of all the grown-ups who keep Morocco safe, like police and spies. They put the list online. But grown-ups who know about these things say, "Nope, that list didn't come from our secret files!" So, it's a bit of a mystery where the list really came from.
Analysis
Jabaroot's Claim
The hacker group Jabaroot made a significant claim on August 24, publishing files on Telegram that they asserted contained the identities of approximately 70,000 individuals associated with Moroccan security and intelligence services. These alleged leaks specifically named agents from prominent agencies such as the General Directorate of National Security (DGSN) and the General Directorate of Territorial Surveillance (DGST). Such a large-scale exposure, if legitimate, would represent a severe breach of national security, potentially compromising ongoing operations and endangering personnel. The group's public declaration aims to demonstrate its capabilities and potentially sow discord or distrust within the targeted nation's security framework.
Moroccan Security Services
The article, however, introduces a crucial counter-narrative, stating that according to its own sources, the data did not originate from a direct hack of Moroccan security services. This suggests that while the data might exist, its provenance is disputed, raising questions about the nature of the leak and Jabaroot's claims. The discrepancy between the hackers' assertion and the internal assessment from the article's sources points to a potential disinformation effort or a leak from a different, perhaps less direct, source. This immediate refutation by sources close to the Moroccan security apparatus indicates the high stakes involved in such claims.
Disinformation
The incident underscores the growing challenge of cybersecurity and the weaponization of information in the digital age, particularly in the context of state security. Whether the data is authentic or fabricated, and regardless of its true origin, the act of publishing such a list can sow distrust, create panic, and potentially be used for political or destabilizing purposes. The immediate denial or clarification from sources close to the Moroccan security apparatus indicates the sensitivity and potential impact of such claims on public perception and national confidence. This event highlights the need for robust cybersecurity defenses and effective communication strategies to counter potential disinformation campaigns.
Key points
- Hacker group Jabaroot claimed to have leaked data of 70,000 Moroccan security and intelligence agents.
- The alleged leak included names from the General Directorate of National Security (DGSN) and the General Directorate of Territorial Surveillance (DGST).
- Sources indicate the data did not originate from a direct hack of Moroccan security services.
- The incident highlights potential disinformation tactics targeting state security.
The fact that internal sources quickly refuted the claim of a direct hack on Moroccan security services suggests a robust defense and rapid response capability, potentially mitigating public panic and discrediting the hackers' narrative. This swift clarification could prevent widespread misinformation and maintain trust in national security institutions.
Despite the official denial, the mere publication of such a list, even if its origin is disputed, could still create anxiety among security personnel and the public, potentially undermining morale or fostering distrust. It also highlights the persistent threat of cyberattacks and disinformation campaigns against state entities, regardless of their immediate success.