NoName057

Threat Actor updated 10 days ago (2024-10-17T13:00:57.315Z)
Download STIX
Preview STIX
NoName057 is a pro-Russian threat actor or hacking group that has been implicated in several major cyber attacks, particularly distributed denial of service (DDoS) attacks. In August 2023, NoName057 launched significant DDoS attacks against Czech banks and the Czech stock exchange. The hackers demanded that these financial institutions cut off support to Ukraine, indicating geopolitical motivations behind their actions. This attack was also stated as retaliation for Finland's decision to join NATO. The group has been prolific in its activities, with third parties attributing 924 attacks to NoName057 according to the CyberPeace Institute. Among these, they were responsible for a series of ransomware attacks, targeting prominent organizations such as Talanx, the Federal Office of Logistics and Mobility, Hamburger Feuerkasse, and the German Customs Administration. The targets and nature of these attacks suggest a broad and potentially politically motivated campaign. In addition to these direct attacks, NoName057 has been active in hacktivist circles, waging political and religious warfare against nations or officials opposing their ideals and goals. They have been particularly active in Moldova, which has suffered repeated cyber attacks from this group over several months. Despite these activities, official responses or statements from targeted organizations remain sparse, leading to uncertainty about the full extent and impact of NoName057's actions.
Description last updated: 2024-10-17T12:23:47.978Z
What's your take? (Question 1 of 4)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Hacktivist
Telegram
Ddos
Russia
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Associated Threat Actors
To see the evidence that has resulted in these threatActor associations, create a free account
Alias DescriptionAssociation TypeVotes
The KillNet Threat Actor is associated with NoName057. Killnet, a threat actor group with strong affiliations to Russia, has been implicated in a series of high-profile cyberattacks. The group's activities have been linked to Russia's geopolitical objectives and have been particularly active following Russia's ban from the 2022 FIFA World Cup due to itsUnspecified
2
Source Document References
Information about the NoName057 Threat Actor was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
DARKReading
5 days ago
InfoSecurity-magazine
3 months ago
BankInfoSecurity
a month ago
DARKReading
a month ago
CERT-EU
8 months ago
CERT-EU
10 months ago
CERT-EU
10 months ago
CERT-EU
a year ago
CERT-EU
a year ago
CERT-EU
a year ago
BankInfoSecurity
a year ago
Securityaffairs
a year ago
CERT-EU
a year ago
CERT-EU
a year ago
CERT-EU
a year ago
Securityaffairs
2 years ago
BankInfoSecurity
a year ago
CERT-EU
a year ago
CERT-EU
2 years ago
CERT-EU
a year ago