# domain network attack type
2026-09-14_12-02-09 check-hosts status
The attacks attributed to noname057 primarily target websites in Germany, with a notable focus on various municipalities and regional agencies. Key cities under attack include Düsseldorf, Hamburg, and Frankfurt, among others. The campaign highlights vulnerabilities in local government and infrastructure sites across the country.AI generated
31 targets are under attack, 11 new targets and 20 targets from previous attack
New Targets(11): www.krefeld.de, www.dorsten.de, www.gladbeck.de, solingen.de, www.bergischgladbach.de, www.duisburg.de, www.essen.de, www.oberhausen.de, www.rbk-direkt.de, www.remscheid.de, www.stadt-koeln.de
Targets from prev attack(20): www.bayernets.de, www.bremerhaven.de, www.bezreg-duesseldorf.nrw.de, www.wiesbaden.de, www.rvr.ruhr, www.bochum.de, www.dortmund.de, www.bonn.de, www.tradinghub.eu, www.nrw.de, www.duesseldorf.de, www.hamburg.de, www.hannover.de, www.wirtschaftsfoerderung-hannover.de, frankfurt.de, bundesnetzagentur.de, www.hamburg.com, www.niedersachsen.de, hessen.de, www.bottrop.de
Dismissed Targets(0):
2026-09-14_08-06-07 check-hosts status
The attacks by noname057 primarily targeted websites in Germany, including major cities such as Hamburg, Wiesbaden, Düsseldorf, Hannover, Bochum, and Dortmund. Other affected sites include various regional and federal government platforms, as well as energy and trading organizations. The attacks highlight a significant focus on German infrastructure and public services.AI generated
20 targets are under attack, 20 new targets and 0 targets from previous attack
New Targets(20): www.hamburg.de, www.wiesbaden.de, www.bezreg-duesseldorf.nrw.de, www.bochum.de, www.hannover.de, www.dortmund.de, bundesnetzagentur.de, www.bayernets.de, www.bottrop.de, www.hamburg.com, www.duesseldorf.de, www.nrw.de, www.niedersachsen.de, www.tradinghub.eu, hessen.de, frankfurt.de, www.bremerhaven.de, www.bonn.de, www.rvr.ruhr, www.wirtschaftsfoerderung-hannover.de
Targets from prev attack(0):
Dismissed Targets(17): www.psl.pl, pulawy.grupaazoty.com, dezamet.com.pl, pwe.pzu.pl, www.geoportal.gov.pl, 4bondnet.bondspot.pl, www.powiatzary.pl, zaloguj.netia.pl, www.bondspot.pl, www.netia.pl, grupaazoty.com, inpzu.pl, www.gamrat.pl, www.belma.pl, inwestor.grupaazoty.com, www.cba.gov.pl, powiat.krakow.pl
2026-09-13_08-04-08 check-hosts status
The attacks by noname057 primarily target websites in Poland. Key sectors affected include finance, insurance, and government services, with notable sites such as inwestor.grupaazoty.com, pwe.pzu.pl, and www.cba.gov.pl being compromised. The attacks highlight a focus on critical infrastructure and corporate entities within the country.AI generated
17 targets are under attack, 17 new targets and 0 targets from previous attack
New Targets(17): inwestor.grupaazoty.com, www.psl.pl, pwe.pzu.pl, dezamet.com.pl, inpzu.pl, www.geoportal.gov.pl, pulawy.grupaazoty.com, www.powiatzary.pl, powiat.krakow.pl, 4bondnet.bondspot.pl, grupaazoty.com, www.bondspot.pl, www.netia.pl, www.gamrat.pl, www.cba.gov.pl, zaloguj.netia.pl, www.belma.pl
Targets from prev attack(0):
Dismissed Targets(29): dtms.wiesbaden.de, www.karlgross.de, wohnungswirtschaft.wiesbaden.de, avb.rmv.de, www.rmv.de, www.auswaertiges-amt.de, www.maritimes-cluster.de, matomo.maritimes-cluster.de, www.caritas.de, geo.rmv.de, gascade.de, www.eswe-verkehr.de, www.saalekreis.de, www.maskpol.com.pl, stats.eswe-verkehr.de, www.erfurt.de, bf-backend.rmv.de, etracking.karlgross.de, www.ihk-muenchen.de, www.jadeweserport.de, ecm.karlgross.de, www.kreis-oh.de, membership-application.maritimes-cluster.de, piwi.wiesbaden.de, www.nasa.de, thyssengas.com, einnahmen.rmv.de, www.gasunie.de, gts.rmv.de
2026-09-12_08-06-08 check-hosts status
The attacks attributed to noname057 primarily targeted websites in Germany, with a significant focus on local government, transportation, and infrastructure services. Key sites affected include various regional and municipal platforms, as well as organizations related to transportation and public utilities. Additionally, there was an attack on a Polish site, indicating a broader scope in Europe.AI generated
29 targets are under attack, 29 new targets and 0 targets from previous attack
New Targets(29): dtms.wiesbaden.de, www.erfurt.de, einnahmen.rmv.de, geo.rmv.de, matomo.maritimes-cluster.de, www.ihk-muenchen.de, www.gasunie.de, www.kreis-oh.de, www.karlgross.de, www.caritas.de, www.saalekreis.de, bf-backend.rmv.de, membership-application.maritimes-cluster.de, ecm.karlgross.de, www.rmv.de, www.auswaertiges-amt.de, etracking.karlgross.de, www.maritimes-cluster.de, gts.rmv.de, www.eswe-verkehr.de, wohnungswirtschaft.wiesbaden.de, gascade.de, www.maskpol.com.pl, www.nasa.de, stats.eswe-verkehr.de, www.jadeweserport.de, thyssengas.com, piwi.wiesbaden.de, avb.rmv.de
Targets from prev attack(0):
Dismissed Targets(29): www.ontras.com, www.stex-gmbh.com, pgnig.pl, pho.pl, biznes24.pgnig.pl, start-ni-mitte.de, www.powiat.kielce.pl, 1ticket.de, auth-portale.m-net.de, ebok.pgnig.pl, oge.net, www.orange.pl, zugang2.wiesbaden.de, oneplace.marketplanet.pl, auth.m-net.de, faehren.net, warmia.mazury.pl, duisport.de, nominacje24.pgnig.pl, www.hafen-trier.de, www.kielce.eu, bestellen.glasfaser.swhl.de, www.nowega.de, login-netzplan.swhl.de, anmeldung.mdv-verbundgebiet.de, stellenangebote.swhl.de, www.m-net.de, platforma.org, zary.pl
2026-09-11_22-42-07 check-hosts status
The attacks attributed to noname057 primarily target websites in Poland and Germany. Key sectors affected include local government, telecommunications, and energy. The attacks highlight vulnerabilities in public services and commercial platforms, with notable sites including powiat.kielce.pl and orange.pl in Poland, and anmeldung.mdv-verbundgebiet.de and stellenangebote.swhl.de in Germany.AI generated
29 targets are under attack, 0 new targets and 29 targets from previous attack
New Targets(0):
Targets from prev attack(29): www.powiat.kielce.pl, www.orange.pl, www.kielce.eu, oge.net, pho.pl, anmeldung.mdv-verbundgebiet.de, stellenangebote.swhl.de, ebok.pgnig.pl, zary.pl, www.hafen-trier.de, platforma.org, warmia.mazury.pl, auth.m-net.de, biznes24.pgnig.pl, www.m-net.de, 1ticket.de, oneplace.marketplanet.pl, login-netzplan.swhl.de, auth-portale.m-net.de, www.ontras.com, bestellen.glasfaser.swhl.de, start-ni-mitte.de, faehren.net, www.stex-gmbh.com, pgnig.pl, duisport.de, zugang2.wiesbaden.de, www.nowega.de, nominacje24.pgnig.pl
Dismissed Targets(2): www.psl.pl, www.powiatzary.pl
2026-09-11_22-26-09 check-hosts status
The attacks attributed to noname057 primarily targeted websites in Germany and Poland. Key sectors affected include transportation, energy, and local government services. Notable targets include regional transport companies, energy providers, and job listing platforms. The attacks indicate a focus on disrupting services that are essential for local infrastructure and communication.AI generated
31 targets are under attack, 0 new targets and 31 targets from previous attack
New Targets(0):
Targets from prev attack(31): start-ni-mitte.de, www.ontras.com, stellenangebote.swhl.de, www.hafen-trier.de, www.stex-gmbh.com, pgnig.pl, www.nowega.de, duisport.de, platforma.org, warmia.mazury.pl, www.m-net.de, oneplace.marketplanet.pl, nominacje24.pgnig.pl, ebok.pgnig.pl, faehren.net, anmeldung.mdv-verbundgebiet.de, www.psl.pl, bestellen.glasfaser.swhl.de, www.powiatzary.pl, pho.pl, auth.m-net.de, www.powiat.kielce.pl, zugang2.wiesbaden.de, 1ticket.de, login-netzplan.swhl.de, www.kielce.eu, biznes24.pgnig.pl, oge.net, zary.pl, auth-portale.m-net.de, www.orange.pl
Dismissed Targets(3): gascade.de, thyssengas.com, www.gasunie.de
2026-09-11_12-02-12 check-hosts status
The attacks by noname057 primarily targeted websites in Poland and Germany. Key sectors affected include energy, telecommunications, and local government services. Notable attacks were on sites like pgnig.pl and stex-gmbh.com, highlighting a focus on critical infrastructure and service providers in these countries.AI generated
34 targets are under attack, 14 new targets and 20 targets from previous attack
New Targets(14): zary.pl, oneplace.marketplanet.pl, ebok.pgnig.pl, biznes24.pgnig.pl, pho.pl, nominacje24.pgnig.pl, warmia.mazury.pl, platforma.org, www.orange.pl, www.kielce.eu, www.powiat.kielce.pl, pgnig.pl, www.powiatzary.pl, www.psl.pl
Targets from prev attack(20): bestellen.glasfaser.swhl.de, faehren.net, www.stex-gmbh.com, 1ticket.de, auth.m-net.de, login-netzplan.swhl.de, zugang2.wiesbaden.de, thyssengas.com, gascade.de, www.nowega.de, auth-portale.m-net.de, start-ni-mitte.de, oge.net, www.ontras.com, www.m-net.de, www.gasunie.de, duisport.de, anmeldung.mdv-verbundgebiet.de, www.hafen-trier.de, stellenangebote.swhl.de
Dismissed Targets(0):
2026-09-11_08-06-07 check-hosts status
The attacks attributed to noname057 primarily target websites in Germany, with notable emphasis on sectors such as telecommunications, transportation, and energy. The affected sites include regional service providers, infrastructure companies, and public transportation platforms, indicating a focus on critical services within the country.AI generated
20 targets are under attack, 20 new targets and 0 targets from previous attack
New Targets(20): www.nowega.de, www.stex-gmbh.com, 1ticket.de, start-ni-mitte.de, zugang2.wiesbaden.de, auth-portale.m-net.de, bestellen.glasfaser.swhl.de, auth.m-net.de, duisport.de, www.m-net.de, www.gasunie.de, anmeldung.mdv-verbundgebiet.de, www.ontras.com, www.hafen-trier.de, oge.net, login-netzplan.swhl.de, gascade.de, stellenangebote.swhl.de, faehren.net, thyssengas.com
Targets from prev attack(0):
Dismissed Targets(29): stats.eswe-verkehr.de, www.malteser.de, zaloguj.netia.pl, crist.com.pl, www.energa.pl, 24.energa.pl, www.ekolot.pl, www.brot-fuer-die-welt.de, www.netia.pl, getin.pl, newhurt.orlen.pl, aboonline.eswe-verkehr.de, energa-operator.pl, www.portgdansk.pl, www.hafen-mannheim.de, ir.energa.pl, grupa.energa.pl, www.pzlswidnik.pl, matomo.eswe-verkehr.de, www.belma.pl, www.caritas.de, zgloszenia.energa-operator.pl, media.energa.pl, www.navikon.pl, www.hafenstuttgart.de, www.eswe-verkehr.de, elsen.pl, kartuskipowiat.pl, www.cba.gov.pl
2026-09-10_12-06-11 check-hosts status
The attacks attributed to noname057 primarily targeted websites in Poland and Germany. Key sectors affected include telecommunications, transportation, energy, and charitable organizations. Notable sites include Netia, Caritas, and various energy operators, highlighting a focus on critical infrastructure and social services in these countries.AI generated
29 targets are under attack, 9 new targets and 20 targets from previous attack
New Targets(9): www.eswe-verkehr.de, aboonline.eswe-verkehr.de, www.hafen-mannheim.de, www.malteser.de, www.hafenstuttgart.de, www.brot-fuer-die-welt.de, www.caritas.de, stats.eswe-verkehr.de, matomo.eswe-verkehr.de
Targets from prev attack(20): www.netia.pl, crist.com.pl, energa-operator.pl, zaloguj.netia.pl, www.portgdansk.pl, elsen.pl, www.belma.pl, getin.pl, media.energa.pl, www.cba.gov.pl, ir.energa.pl, www.energa.pl, www.ekolot.pl, kartuskipowiat.pl, 24.energa.pl, newhurt.orlen.pl, www.navikon.pl, grupa.energa.pl, zgloszenia.energa-operator.pl, www.pzlswidnik.pl
Dismissed Targets(0):
2026-09-10_08-06-07 check-hosts status
The attacks attributed to noname057 primarily targeted websites in Poland. Key sectors affected include energy, telecommunications, and government services, with notable targets such as Energa, Netia, and various local government sites.AI generated
20 targets are under attack, 20 new targets and 0 targets from previous attack
New Targets(20): getin.pl, energa-operator.pl, grupa.energa.pl, www.netia.pl, newhurt.orlen.pl, crist.com.pl, media.energa.pl, www.navikon.pl, elsen.pl, www.cba.gov.pl, ir.energa.pl, www.belma.pl, 24.energa.pl, zgloszenia.energa-operator.pl, www.pzlswidnik.pl, zaloguj.netia.pl, www.energa.pl, www.portgdansk.pl, www.ekolot.pl, kartuskipowiat.pl
Targets from prev attack(0):
Dismissed Targets(31): www.ihk-muenchen.de, avb.rmv.de, strefaklienta.atman.pl, www.brunsbuettel-ports.de, www.bundeskartellamt.de, wohnungswirtschaft.wiesbaden.de, panel.kylos.pl, www.hafen-hamburg.de, einnahmen.rmv.de, www.seaports.de, rostock-port.de, knds.com, www.kylos.pl, www.geoportal.gov.pl, www.auswaertiges-amt.de, dtms.wiesbaden.de, powiat.krakow.pl, www.giz.de, wingcopter.com, www.ihk-nuernberg.de, piwi.wiesbaden.de, www.rmv.de, ezamowienia.gov.pl, talismann.online, www.portofkiel.com, geo.rmv.de, bf-backend.rmv.de, www.poland.travel, gts.rmv.de, www.jadeweserport.de, www.ihk.de
2026-09-09_12-04-08 check-hosts status
The attacks attributed to noname057 primarily targeted websites in Germany and Poland. Key sectors affected include transportation, local government, and economic institutions. Notable sites include various regional transport authorities in Germany, such as dtms.wiesbaden.de and rmv.de, as well as Polish government and travel sites like poland.travel and geoportal.gov.pl.AI generated
31 targets are under attack, 8 new targets and 23 targets from previous attack
New Targets(8): strefaklienta.atman.pl, panel.kylos.pl, www.geoportal.gov.pl, ezamowienia.gov.pl, www.kylos.pl, powiat.krakow.pl, talismann.online, www.poland.travel
Targets from prev attack(23): dtms.wiesbaden.de, einnahmen.rmv.de, knds.com, www.seaports.de, www.ihk-nuernberg.de, www.portofkiel.com, www.bundeskartellamt.de, wohnungswirtschaft.wiesbaden.de, avb.rmv.de, rostock-port.de, www.jadeweserport.de, www.hafen-hamburg.de, www.giz.de, www.ihk.de, geo.rmv.de, www.ihk-muenchen.de, www.brunsbuettel-ports.de, bf-backend.rmv.de, gts.rmv.de, www.auswaertiges-amt.de, wingcopter.com, www.rmv.de, piwi.wiesbaden.de
Dismissed Targets(0):
2026-09-09_08-06-08 check-hosts status
The attacks attributed to noname057 primarily target websites in Germany. Key sectors affected include government agencies, transportation, and logistics, with notable sites such as the Federal Cartel Office, various regional chambers of commerce, and port authorities. The attacks highlight a concentrated focus on critical infrastructure within Germany.AI generated
23 targets are under attack, 23 new targets and 0 targets from previous attack
New Targets(23): www.bundeskartellamt.de, www.ihk.de, geo.rmv.de, www.rmv.de, dtms.wiesbaden.de, www.brunsbuettel-ports.de, www.jadeweserport.de, wohnungswirtschaft.wiesbaden.de, www.auswaertiges-amt.de, wingcopter.com, gts.rmv.de, avb.rmv.de, www.ihk-nuernberg.de, www.giz.de, bf-backend.rmv.de, www.hafen-hamburg.de, rostock-port.de, www.ihk-muenchen.de, knds.com, einnahmen.rmv.de, www.portofkiel.com, piwi.wiesbaden.de, www.seaports.de
Targets from prev attack(0):
Dismissed Targets(29): ebok.multimedia.pl, www.nitrochem.com.pl, pwe.pzu.pl, matomo.maritimes-cluster.de, grupaazoty.com, izam.parker.com.pl, partnerstocznia.pl, secure.velobank.pl, www.savethechildren.de, pulawy.grupaazoty.com, www.gruene-hessen.de, www.maritimes-cluster.de, www.karlgross.de, www.velobank.pl, media.pzu.pl, membership-application.maritimes-cluster.de, www.pzu.pl, www.bumar.gliwice.pl, ecm.karlgross.de, moje.pzu.pl, www.multimedia.pl, inpzu.pl, dezamet.com.pl, elta.com.pl, www.portpolice.pl, etracking.karlgross.de, inwestor.grupaazoty.com, parker.com.pl, www.tma-bulk.eu
2026-09-08_12-04-08 check-hosts status
The attacks attributed to noname057 primarily targeted websites in Poland and Germany. Key sectors affected include finance, manufacturing, and non-profit organizations, with notable targets such as PZU, Grupa Azoty, and Save the Children. The attacks highlight a focus on critical infrastructure and corporate entities within these countries.AI generated
29 targets are under attack, 9 new targets and 20 targets from previous attack
New Targets(9): www.gruene-hessen.de, matomo.maritimes-cluster.de, www.maritimes-cluster.de, ecm.karlgross.de, membership-application.maritimes-cluster.de, www.tma-bulk.eu, etracking.karlgross.de, www.karlgross.de, www.savethechildren.de
Targets from prev attack(20): inwestor.grupaazoty.com, inpzu.pl, izam.parker.com.pl, grupaazoty.com, www.nitrochem.com.pl, pulawy.grupaazoty.com, ebok.multimedia.pl, www.portpolice.pl, partnerstocznia.pl, www.multimedia.pl, elta.com.pl, secure.velobank.pl, pwe.pzu.pl, www.pzu.pl, www.velobank.pl, parker.com.pl, www.bumar.gliwice.pl, dezamet.com.pl, media.pzu.pl, moje.pzu.pl
Dismissed Targets(0):
2026-09-08_08-02-08 check-hosts status
The attacks attributed to noname057 primarily target websites in Poland. Key sectors affected include defense, finance, and chemical industries, with notable organizations such as Bumar, PZU, and Grupa Azoty being among the victims. The attacks highlight a concentrated effort against Polish infrastructure and corporate entities.AI generated
20 targets are under attack, 20 new targets and 0 targets from previous attack
New Targets(20): www.bumar.gliwice.pl, pulawy.grupaazoty.com, www.pzu.pl, elta.com.pl, www.multimedia.pl, secure.velobank.pl, inpzu.pl, ebok.multimedia.pl, pwe.pzu.pl, www.portpolice.pl, www.nitrochem.com.pl, parker.com.pl, inwestor.grupaazoty.com, partnerstocznia.pl, moje.pzu.pl, dezamet.com.pl, grupaazoty.com, izam.parker.com.pl, www.velobank.pl, media.pzu.pl
Targets from prev attack(0):
Dismissed Targets(32): www.maskpol.com.pl, mailing.gruene-hessen.de, www.sbahn-hannover.de, minio.pamyra.de, www.kvg-kiel.de, epaper.taz.de, mailing.cicero.de, shop.taz.de, www.kreis-oh.de, www.gamrat.pl, 4brokernet.gpw.pl, www.funkemedien.de, www.nasa.de, www.saalekreis.de, www.burda.com, frontend-api.sbahn-hannover.de, www.taz.de, discover-poland.pl, www.ewgt.com.pl, anhoerung.kiel.de, www.ttline.com, telesystem.eu, analytics.tkmsgroup.com, portal.taz.de, www.play.pl, www.bondspot.pl, www.vergabe24.de, www.erfurt.de, www.etop.pl, testfreight.ttline.com, www.vms.de, 4bondnet.bondspot.pl
2026-09-07_12-04-08 check-hosts status
Noname057(16) has targeted various websites primarily located in Germany and Poland. Notable attacks include sites such as minio.pamyra.de, www.kreis-oh.de, and www.vergabe24.de in Germany, as well as www.gamrat.pl and www.etop.pl in Poland. Other affected countries include the United States, with the attack on www.nasa.de, and a few sites in other European nations. The attacks highlight a focus on diverse sectors, including transportation, media, and government services.AI generated
32 targets are under attack, 10 new targets and 22 targets from previous attack
New Targets(10): www.bondspot.pl, www.ewgt.com.pl, telesystem.eu, 4brokernet.gpw.pl, www.etop.pl, www.gamrat.pl, www.play.pl, www.maskpol.com.pl, 4bondnet.bondspot.pl, discover-poland.pl
Targets from prev attack(22): minio.pamyra.de, www.kreis-oh.de, www.taz.de, www.vergabe24.de, www.ttline.com, mailing.cicero.de, mailing.gruene-hessen.de, www.sbahn-hannover.de, www.vms.de, www.burda.com, anhoerung.kiel.de, www.saalekreis.de, www.nasa.de, epaper.taz.de, www.erfurt.de, shop.taz.de, testfreight.ttline.com, analytics.tkmsgroup.com, www.kvg-kiel.de, www.funkemedien.de, portal.taz.de, frontend-api.sbahn-hannover.de
Dismissed Targets(0):
2026-09-07_08-06-09 check-hosts status
The attacks attributed to noname057 primarily targeted websites in Germany, with notable examples including government portals, media outlets, and transportation services. Key sites affected include saalekreis.de, cicero.de, and taz.de, indicating a focus on both public and private sectors within the country.AI generated
22 targets are under attack, 22 new targets and 0 targets from previous attack
New Targets(22): www.saalekreis.de, mailing.cicero.de, anhoerung.kiel.de, www.vergabe24.de, testfreight.ttline.com, www.kvg-kiel.de, www.nasa.de, frontend-api.sbahn-hannover.de, www.erfurt.de, epaper.taz.de, www.sbahn-hannover.de, portal.taz.de, minio.pamyra.de, mailing.gruene-hessen.de, www.funkemedien.de, www.vms.de, www.kreis-oh.de, shop.taz.de, analytics.tkmsgroup.com, www.ttline.com, www.burda.com, www.taz.de
Targets from prev attack(0):
Dismissed Targets(11): siil.cooppank.ee, digiprojekt.gren.ee, eteenusviru.gren.ee, mail.astri.ee, seib.gren.ee, eteenustartu.gren.ee, tartu.astri.ee, veeteed.com, eteenusparnu.gren.ee, m.energia.ee, auth.praamid.ee