Cyberattacks Targeting International Domains: Weekly DDoS Threat Intelligence Analysis
ID: 00607685-5cee-5849-8db1-4bb75cabcf0a
STIX ID: report--00607685-5cee-5849-8db1-4bb75cabcf0a
Feed Name: SOCRadar Blog
Between 22–28 December 2025 SOCRadar observed a coordinated, multi-vector DDoS campaign by NoName057(16)/DDoSia totaling 6,567 recorded attacks against 158 domains and 161 IPs across Europe—primarily Finland and France—with heavy targeting of HTTPS (port 443) and critical sectors (government, energy, transportation, telecommunications). The report documents attack volumes and methods (HTTP/TCP floods, HTTP/2, nginx_loris), lists top targeted hosts and IPs, highlights the strategic nature of targeting, and provides immediate, medium-term, and strategic mitigation recommendations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
