This was not a military target on a distant front. It was civilian technological infrastructure inside Israel. According to the Israel Security Agency and Israel Police, a young Israeli who entered the site through national service is suspected of turning that familiarity into the basis for a terrorist plot.
The case at a glance
- The suspect: Mustafa Issa, 19, a resident of Kafr Qasim.
- The alleged target: A data center linked to Amdocs.
- Access to the site: According to the report, he entered it through his national service with the fire service.
- Published investigative findings: Searches for combat manuals, downloaded bomb-making instructions, and attempts to build devices from various materials.
- Items seized: Training equipment and airsoft guns.
- Legal status: A prosecutor’s declaration was filed ahead of an expected indictment; the allegations have not been adjudicated in court.
When trust becomes a vulnerability
National service and emergency organizations depend on trust. Their personnel may learn facilities, procedures, and access points that are not open to the public. Investigators suspect that familiarity gained through a framework intended to save lives and serve society was used to assess how to attack Israeli infrastructure.
That is what makes the case especially troubling: the alleged danger did not begin with an outside breach, but with the possible exploitation of legitimate access and prior knowledge. The case does not justify suspicion toward an entire community. It does require authorities and infrastructure operators to reduce insider risk without unfairly burdening loyal employees and volunteers.
Why a data center is a strategic target
A data center is more than a room full of computers. It may support business services, communications, organizational data, and continuous digital operations. A physical attack can disrupt services, cause data loss, inflict economic harm, and weaken confidence in essential infrastructure.
The case demonstrates why cybersecurity alone is not enough. Digital infrastructure also needs physical security, access controls, entry logs, and anomaly detection—especially when employees, contractors, or volunteers receive access as part of their duties.
From radicalization signals to alleged operational planning
According to the joint ISA and police statement cited by mako, the suspect was influenced by the May 2021 unrest known as Operation Guardian of the Walls and by Hamas’s October 7 massacre. Investigators said he searched for combat manuals, retained bomb-making instructions, attempted to make explosive devices, and shared those attempts with others.
If proven, this would represent more than extremist speech online. It would show an alarming progression from consuming radical material to acquiring knowledge and testing operational capability. Detecting that transition in time is where intelligence, public vigilance, and coordination among security agencies can prevent catastrophe.
Accuracy is part of countering terrorism
The allegations are grave, but they must be described precisely. These are claims attributed to Israel’s security and law-enforcement authorities. As of publication, a prosecutor’s declaration had been filed ahead of an expected indictment, and no court had determined guilt.
That distinction does not weaken the message. Credible public diplomacy rests on facts, distinguishes what is known from what remains under investigation, and does not generalize from one person’s alleged actions to an entire population.
The bottom line
Authorities say a terrorist attack on Israeli technological infrastructure was stopped during the planning stage. The case is a reminder that protecting the home front also means protecting the servers, data centers, and systems on which daily life depends—and preventing trusted access from being abused.
Source: mako report based on a joint statement by the Israel Security Agency and Israel Police, September 15, 2026.