Denmark, Greenland, and Ukraine Under DDoS Assault: Weekly DDoS Threat Intelligence Analysis
ID: 410970b6-984f-56a9-a86d-ce9b2092b491
STIX ID: report--410970b6-984f-56a9-a86d-ce9b2092b491
Feed Name: SOCRadar Blog
**Executive summary:** Between Feb 23–Mar 1, 2026, the pro‑Russian hacktivist collective NoName057(16) executed a coordinated DDoSia campaign with 6,649 recorded attacks against 126 unique domains and 135 IPs across Denmark (41.4%), Ukraine (22.8%), and Greenland (19.3%), targeting government, defense, transport, tourism, and critical infrastructure using multi‑vector techniques (HTTP GET/POST, TCP SYN/ACK, UDP, nginx_loris) primarily against HTTPS (port 443); the report enumerates targets, attack methods, operational tempo (23 target list updates), and recommended mitigations including DDoS scrubbing, rate limiting, SYN protection, CDN/anycast, and inter‑CERT coordination.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
