Multi-Country DDoS Campaign: Weekly DDoS Threat Intelligence Analysis
ID: 32c0bfab-4bd5-5adb-bba1-b3a5999c75b7
STIX ID: report--32c0bfab-4bd5-5adb-bba1-b3a5999c75b7
Feed Name: SOCRadar Blog
**Executive summary:** Between Jan 26–Feb 1, 2026 SOCRadar observed a coordinated multi‑vector DDoS campaign by pro‑Russian hacktivist NoName057(16) using the DDoSia framework, logging 5,830 attacks across 160 domains and 181 IPs—primarily targeting the United Kingdom (55%) but also Ukraine, Czechia and international commercial entities—impacting government, critical infrastructure (water, transport, energy) and private sector services; attacks combined volumetric TCP floods and application‑layer HTTP/2/3 and nginx_loris techniques and the report includes defensive recommendations such as cloud DDoS protection, WAF tuning, rate limiting, and incident response planning.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
