United Kingdom Under DDoS Siege: Weekly DDoS Threat Intelligence Analysis
ID: f1fa5c86-fea9-53dc-85ab-3a8280af49f4
STIX ID: report--f1fa5c86-fea9-53dc-85ab-3a8280af49f4
Feed Name: SOCRadar Blog
SOCRadar observed a concentrated DDoS campaign by pro‑Russian hacktivist NoName057(16)/DDoSia from 5–11 January 2026 that generated 1,812 recorded attacks against 86 unique domains and 87 IPs—85.2% of which targeted the United Kingdom—focusing on government, critical infrastructure (ports, rail), and financial sectors; attacks were multi‑vector (TCP SYN/ACK floods, HTTP GET/POST floods, nginx_loris, HTTP/2) heavily targeting HTTPS (port 443), and the report includes targeted host lists, attack metrics, and recommended mitigations such as cloud DDoS protection, WAF tuning, rate limiting, and incident preparedness.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
