# domain network attack type
2026-02-26_12-45-10
The cyberattacks attributed to noname057(16) primarily target websites in Ukraine and Denmark. Key Ukrainian sites include various government and regional portals, such as mariupolrada.gov.ua and smr.gov.ua. In Denmark, multiple government and educational institutions are affected, including mit.dk, www.au.dk, and jobnet.dk. These attacks reflect a focus on both governmental and public service sectors in these countries.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): www.dba.dk, mariupolrada.gov.ua, mit.dk, lifeindenmark.borger.dk, www.vmr.gov.ua, advokatsamfundet.dk, smr.gov.ua, www.naestved.dk, zp.gov.ua, www.au.dk, www.tinglysning.dk, horsens.dk, www.dmi.dk, anklagemyndigheden.dk, www.aau.dk, workindenmark.dk, chervonyi.com.ua, jobnet.dk, danskehavne.dk, www.sdu.dk, awex.com.ua, www.rada-poltava.gov.ua, loga.gov.ua, www.bws.net, nyidanmark.dk, adm.dp.gov.ua, ens.dk
Dismissed Targets(0):
2026-02-26_12-40-10
The attacks attributed to noname057 primarily target websites in Ukraine and Denmark. Key Ukrainian sites include various government and local authority pages such as mariupolrada.gov.ua and adm.dp.gov.ua. In Denmark, the attacks affect multiple domains related to public services and institutions, including lifeindenmark.borger.dk and jobnet.dk. Overall, Ukraine and Denmark are the main countries experiencing these cyber threats.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): mariupolrada.gov.ua, chervonyi.com.ua, loga.gov.ua, lifeindenmark.borger.dk, adm.dp.gov.ua, www.sdu.dk, anklagemyndigheden.dk, www.dmi.dk, danskehavne.dk, www.tinglysning.dk, www.vmr.gov.ua, nyidanmark.dk, zp.gov.ua, smr.gov.ua, www.bws.net, www.rada-poltava.gov.ua, www.dba.dk, awex.com.ua, advokatsamfundet.dk, horsens.dk, jobnet.dk, workindenmark.dk, ens.dk, www.naestved.dk, www.aau.dk, www.au.dk, mit.dk
Dismissed Targets(0):
2026-02-26_12-35-08
The attacks attributed to noname057 primarily target websites in Ukraine and Denmark. Key Ukrainian sites include various government and regional platforms, such as mariupolrada.gov.ua and adm.dp.gov.ua. In Denmark, several educational and governmental sites like aau.dk, dmi.dk, and jobnet.dk are affected.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): mariupolrada.gov.ua, chervonyi.com.ua, loga.gov.ua, lifeindenmark.borger.dk, adm.dp.gov.ua, www.sdu.dk, anklagemyndigheden.dk, www.dmi.dk, danskehavne.dk, www.tinglysning.dk, www.vmr.gov.ua, zp.gov.ua, nyidanmark.dk, smr.gov.ua, www.bws.net, www.rada-poltava.gov.ua, www.dba.dk, awex.com.ua, advokatsamfundet.dk, horsens.dk, jobnet.dk, workindenmark.dk, ens.dk, www.naestved.dk, www.aau.dk, www.au.dk, mit.dk
Dismissed Targets(0):
2026-02-26_12-30-10
The attacks attributed to noname057 primarily target websites in Denmark and Ukraine. Key Danish sites include government and educational institutions such as naestved.dk, jobnet.dk, and au.dk. In Ukraine, the attackers focus on local government websites like mariupolrada.gov.ua and adm.dp.gov.ua, as well as other regional platforms. This indicates a significant focus on both countries, with Denmark being targeted for its governmental and public services, while Ukraine faces attacks on its local governance and administrative sites.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): www.naestved.dk, jobnet.dk, www.dmi.dk, nyidanmark.dk, anklagemyndigheden.dk, www.au.dk, mariupolrada.gov.ua, lifeindenmark.borger.dk, awex.com.ua, chervonyi.com.ua, adm.dp.gov.ua, www.sdu.dk, workindenmark.dk, www.aau.dk, smr.gov.ua, loga.gov.ua, www.tinglysning.dk, danskehavne.dk, www.vmr.gov.ua, zp.gov.ua, horsens.dk, advokatsamfundet.dk, www.bws.net, www.dba.dk, mit.dk, www.rada-poltava.gov.ua, ens.dk
Dismissed Targets(0):
2026-02-26_12-15-38
Noname057(16) has targeted various websites primarily in Denmark and Ukraine. The main countries under attack include Denmark, with numerous sites such as naestved.dk, bws.net, and workindenmark.dk, and Ukraine, featuring sites like adm.dp.gov.ua, loga.gov.ua, and mariupolrada.gov.ua. The attacks span government, educational, and local municipal websites in these regions.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): www.naestved.dk, www.bws.net, jobnet.dk, danskehavne.dk, workindenmark.dk, adm.dp.gov.ua, loga.gov.ua, zp.gov.ua, mit.dk, www.au.dk, awex.com.ua, www.rada-poltava.gov.ua, www.vmr.gov.ua, www.tinglysning.dk, advokatsamfundet.dk, www.sdu.dk, ens.dk, www.dba.dk, www.dmi.dk, chervonyi.com.ua, horsens.dk, lifeindenmark.borger.dk, smr.gov.ua, www.aau.dk, nyidanmark.dk, anklagemyndigheden.dk, mariupolrada.gov.ua
Dismissed Targets(0):
2026-02-26_12-00-10
The sites attacked by noname057 primarily belong to Denmark and Ukraine. Key targets include various government and educational institutions in Denmark, such as jobnet.dk and au.dk, as well as several Ukrainian government websites like loga.gov.ua and mariupolrada.gov.ua. This indicates a focus on both Danish and Ukrainian entities, highlighting the geopolitical tensions affecting these countries.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): jobnet.dk, danskehavne.dk, www.naestved.dk, anklagemyndigheden.dk, loga.gov.ua, zp.gov.ua, mariupolrada.gov.ua, www.au.dk, ens.dk, www.dba.dk, nyidanmark.dk, horsens.dk, www.rada-poltava.gov.ua, workindenmark.dk, advokatsamfundet.dk, www.aau.dk, www.tinglysning.dk, www.vmr.gov.ua, awex.com.ua, lifeindenmark.borger.dk, www.bws.net, chervonyi.com.ua, smr.gov.ua, www.dmi.dk, adm.dp.gov.ua, mit.dk, www.sdu.dk
Dismissed Targets(0):
2026-02-26_11-55-08
The attacks attributed to noname057 primarily target websites in Denmark and Ukraine. Key Danish sites include jobnet.dk, danskehavne.dk, and au.dk, while Ukrainian targets encompass loga.gov.ua, zp.gov.ua, and mariupolrada.gov.ua. This indicates a focus on both governmental and employment-related platforms in these countries.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): jobnet.dk, danskehavne.dk, www.naestved.dk, anklagemyndigheden.dk, loga.gov.ua, zp.gov.ua, mariupolrada.gov.ua, www.au.dk, ens.dk, www.dba.dk, nyidanmark.dk, horsens.dk, www.rada-poltava.gov.ua, workindenmark.dk, advokatsamfundet.dk, www.aau.dk, www.tinglysning.dk, www.vmr.gov.ua, awex.com.ua, lifeindenmark.borger.dk, www.bws.net, chervonyi.com.ua, smr.gov.ua, adm.dp.gov.ua, www.dmi.dk, mit.dk, www.sdu.dk
Dismissed Targets(0):
2026-02-26_11-50-09
The attacks attributed to noname057 primarily target websites in Ukraine and Denmark. Key Ukrainian sites include government and local authority platforms such as awex.com.ua, zp.gov.ua, and mariupolrada.gov.ua. In Denmark, the focus is on various governmental and educational institutions, including ens.dk, workindenmark.dk, and www.au.dk. The attacks reflect a concentrated effort on critical infrastructure in these two countries.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): awex.com.ua, zp.gov.ua, ens.dk, workindenmark.dk, chervonyi.com.ua, www.tinglysning.dk, www.aau.dk, danskehavne.dk, www.au.dk, smr.gov.ua, lifeindenmark.borger.dk, advokatsamfundet.dk, loga.gov.ua, www.naestved.dk, www.dmi.dk, www.dba.dk, anklagemyndigheden.dk, mariupolrada.gov.ua, www.vmr.gov.ua, mit.dk, www.sdu.dk, horsens.dk, jobnet.dk, www.bws.net, www.rada-poltava.gov.ua, adm.dp.gov.ua, nyidanmark.dk
Dismissed Targets(0):
2026-02-26_11-15-09
The attacks attributed to noname057 primarily target websites in Denmark and Ukraine. Key Danish sites include jobnet.dk, advokatsamfundet.dk, and aau.dk, while notable Ukrainian targets consist of chervonyi.com.ua, loga.gov.ua, and zp.gov.ua. This indicates a focus on both public services and governmental institutions in these two countries.AI generated
27 targets are under attack, 0 new targets and 27 targets from previous attack
New Targets(0):
Targets from prev attack(27): jobnet.dk, advokatsamfundet.dk, chervonyi.com.ua, www.aau.dk, loga.gov.ua, danskehavne.dk, ens.dk, www.naestved.dk, www.au.dk, mit.dk, www.bws.net, www.sdu.dk, zp.gov.ua, awex.com.ua, www.rada-poltava.gov.ua, workindenmark.dk, adm.dp.gov.ua, lifeindenmark.borger.dk, www.dmi.dk, smr.gov.ua, anklagemyndigheden.dk, mariupolrada.gov.ua, www.dba.dk, www.tinglysning.dk, www.vmr.gov.ua, nyidanmark.dk, horsens.dk
Dismissed Targets(0):
2026-02-26_11-10-09
The attacks attributed to noname057 primarily target websites in Ukraine and Denmark. Key Ukrainian sites include government and municipal platforms such as zp.gov.ua, smr.gov.ua, and mariupolrada.gov.ua. In Denmark, the attacks focus on various institutions including educational websites like au.dk and a range of governmental services such as anklagemyndigheden.dk and jobnet.dk.AI generated
27 targets are under attack, 3 new targets and 24 targets from previous attack
New Targets(3): smr.gov.ua, www.rada-poltava.gov.ua, mariupolrada.gov.ua
Targets from prev attack(24): zp.gov.ua, anklagemyndigheden.dk, www.bws.net, www.au.dk, advokatsamfundet.dk, horsens.dk, workindenmark.dk, www.sdu.dk, www.dba.dk, www.vmr.gov.ua, mit.dk, adm.dp.gov.ua, lifeindenmark.borger.dk, chervonyi.com.ua, www.tinglysning.dk, ens.dk, loga.gov.ua, www.dmi.dk, www.naestved.dk, www.aau.dk, danskehavne.dk, nyidanmark.dk, jobnet.dk, awex.com.ua
Dismissed Targets(0):
2026-02-26_11-05-08
The attacks by noname057(16) primarily targeted websites in Ukraine and Denmark. Key Ukrainian sites include zp.gov.ua, vmr.gov.ua, adm.dp.gov.ua, lifeindenmark.borger.dk, and chervonyi.com.ua. In Denmark, notable targets include anklagemyndigheden.dk, bws.net, au.dk, advokatsamfundet.dk, horsens.dk, workindenmark.dk, sdu.dk, mit.dk, tinglysning.dk, ens.dk, dmi.dk, naestved.dk, aau.dk, danskehavne.dk, and jobnet.dk.AI generated
24 targets are under attack, 6 new targets and 18 targets from previous attack
New Targets(6): zp.gov.ua, loga.gov.ua, adm.dp.gov.ua, chervonyi.com.ua, www.vmr.gov.ua, awex.com.ua
Targets from prev attack(18): ens.dk, advokatsamfundet.dk, www.naestved.dk, danskehavne.dk, www.dmi.dk, horsens.dk, nyidanmark.dk, anklagemyndigheden.dk, lifeindenmark.borger.dk, workindenmark.dk, www.aau.dk, www.sdu.dk, www.dba.dk, jobnet.dk, www.tinglysning.dk, www.bws.net, www.au.dk, mit.dk
Dismissed Targets(0):
2026-02-26_07-10-08
Noname057(16) has targeted various websites primarily in Denmark. The attacked sites include government portals, educational institutions, and job-related platforms, indicating a focus on critical infrastructure within the country.AI generated
18 targets are under attack, 18 new targets and 0 targets from previous attack
New Targets(18): www.naestved.dk, www.au.dk, www.sdu.dk, jobnet.dk, workindenmark.dk, www.tinglysning.dk, advokatsamfundet.dk, mit.dk, horsens.dk, anklagemyndigheden.dk, nyidanmark.dk, www.bws.net, danskehavne.dk, www.aau.dk, ens.dk, www.dba.dk, lifeindenmark.borger.dk, www.dmi.dk
Targets from prev attack(0):
Dismissed Targets(28): phoenix-s.com.ua, aeroprakt.kiev.ua, www.airports.gl, oib.com.ua, e-commerce.airgreenland.com, www.faxekommune.dk, sikuki.gl, solrod.dk, ral.gl, tor-safety.com, www.hillerod.dk, www.diskoline.gl, eng.navigation.gl, kruk.company, bezpeka.ua, www.guldborgsund.dk, www.koege.dk, www.roskilde.dk, www.lolland.dk, visitgreenland.com, ohorona-bezpeka.com, www.greenland-travel.com, stevns.dk, ufpb.kiev.ua, holbaek.dk, bus.gl, airgreenland.com, vertol.com.ua
2026-02-25_11-05-12
Noname057(16) has targeted various websites primarily located in Greenland, Denmark, and Ukraine. Key countries under attack include Greenland, with multiple sites such as airports.gl and visitgreenland.com, Denmark, featuring websites like hillerod.dk and solrod.dk, and Ukraine, with targets including bezpeka.ua and aeroprakt.kiev.ua.AI generated
28 targets are under attack, 9 new targets and 19 targets from previous attack
New Targets(9): tor-safety.com, kruk.company, ohorona-bezpeka.com, aeroprakt.kiev.ua, oib.com.ua, phoenix-s.com.ua, bezpeka.ua, vertol.com.ua, ufpb.kiev.ua
Targets from prev attack(19): www.diskoline.gl, ral.gl, holbaek.dk, www.airports.gl, www.hillerod.dk, www.faxekommune.dk, airgreenland.com, visitgreenland.com, www.greenland-travel.com, eng.navigation.gl, www.lolland.dk, e-commerce.airgreenland.com, www.koege.dk, bus.gl, stevns.dk, sikuki.gl, solrod.dk, www.guldborgsund.dk, www.roskilde.dk
Dismissed Targets(0):
2026-02-25_07-05-09
The attacks attributed to noname057 primarily target websites in Greenland and Denmark. Key sites affected include various regional and tourism-related platforms, such as visitgreenland.com and airgreenland.com, as well as local government and municipality sites like holbaek.dk and lolland.dk. The focus appears to be on both public services and travel-related entities in these countries.AI generated
19 targets are under attack, 19 new targets and 0 targets from previous attack
New Targets(19): bus.gl, holbaek.dk, eng.navigation.gl, www.lolland.dk, visitgreenland.com, solrod.dk, airgreenland.com, www.koege.dk, www.faxekommune.dk, www.guldborgsund.dk, www.airports.gl, e-commerce.airgreenland.com, stevns.dk, www.roskilde.dk, ral.gl, www.hillerod.dk, www.diskoline.gl, sikuki.gl, www.greenland-travel.com
Targets from prev attack(0):
Dismissed Targets(19): www.nationalbanken.dk, www.fmn.dk, www.regionoest.dk, www.transportministeriet.dk, www.smyril-line.com, www.onlinebutik.dk, portofkalundborg.dk, orsted.dk, orsted.com, accountant.dk, www.dsb.dk, www.hplush.com, nordicshipping.csl-consult.dk, www.forsvaret.dk, fm.dk, www.arla.com, www.qq.dk, www.karstensens.dk, www.phaseone.com
2026-02-24_07-05-12
The attack by noname057(16) primarily targeted Denmark, with numerous sites related to government, transportation, and industry being affected. Key entities include the Danish Armed Forces, various transportation companies, and major corporations like Ørsted and Arla. The focus on these sites indicates a significant threat to national infrastructure and corporate operations within Denmark.AI generated
19 targets are under attack, 19 new targets and 0 targets from previous attack
New Targets(19): www.forsvaret.dk, www.phaseone.com, www.smyril-line.com, portofkalundborg.dk, orsted.com, www.arla.com, www.hplush.com, www.transportministeriet.dk, accountant.dk, fm.dk, www.dsb.dk, www.nationalbanken.dk, www.fmn.dk, www.onlinebutik.dk, nordicshipping.csl-consult.dk, www.regionoest.dk, orsted.dk, www.qq.dk, www.karstensens.dk
Targets from prev attack(0):
Dismissed Targets(18): byret.dk, www.scangl.dk, www.nrg.dk, borgernesparti.dk, rigsadvokaten.dk, handelsretten.dk, netbutik.postnord.dk, energinet.dk, www.borger.dk, login.konservative.dk, www.rn.dk, ringsted.dk, radikalevenstre.dk, konservative.dk, copenhagensuborbitals.com, socialistiskfolkeparti.dk, www.taarnby.dk, ntg.com
2026-02-23_07-05-07
The sites attacked by noname057 primarily belong to Denmark, indicating a focus on Danish political, legal, and commercial entities. Key targets include political parties, municipal websites, and various organizations, reflecting a potential interest in disrupting local governance and political discourse.AI generated
18 targets are under attack, 18 new targets and 0 targets from previous attack
New Targets(18): copenhagensuborbitals.com, borgernesparti.dk, ringsted.dk, radikalevenstre.dk, www.borger.dk, netbutik.postnord.dk, www.scangl.dk, www.rn.dk, handelsretten.dk, ntg.com, energinet.dk, socialistiskfolkeparti.dk, www.nrg.dk, login.konservative.dk, byret.dk, rigsadvokaten.dk, www.taarnby.dk, konservative.dk
Targets from prev attack(0):
Dismissed Targets(16): www.advens.com, www.tibagroup.com, www.gva.es, www.cabeza.com, web.larioja.org, www.teldat.com, www.authusb.net, www.cleceseguridad.com, administracion.gob.es, eme-es.com, www.silescb.com, santiagodecompostela.gal, www.axians.es, www.navarra.es, representantesaduaneros.com, www.trablisa.es
2026-02-22_07-05-08
Noname057(16) has targeted various websites primarily in Spain, affecting government and regional sites such as administracion.gob.es and gva.es, as well as private companies like axians.es and cleceseguridad.com. The attacks also extend to other domains like teldat.com and tibagroup.com, indicating a focus on both public and private sectors within the country.AI generated
16 targets are under attack, 16 new targets and 0 targets from previous attack
New Targets(16): administracion.gob.es, www.silescb.com, www.navarra.es, www.axians.es, www.trablisa.es, www.cleceseguridad.com, eme-es.com, www.teldat.com, www.cabeza.com, santiagodecompostela.gal, www.advens.com, www.tibagroup.com, representantesaduaneros.com, www.gva.es, www.authusb.net, web.larioja.org
Targets from prev attack(0):
Dismissed Targets(14): id.coruna.gal, comunicacion.diputaciondevalladolid.es, www.talgo.com, www.elcasco1920.com, www.transportepublico.es, www.turgranada.es, www.coruna.gal, www.parcan.es, www.palma.es, www.hacienda.gob.es, energia.imdea.org, www.legebiltzarra.eus, www.tramalacant.es, web.murcia.es
2026-02-22_06-10-08
The attacks by noname057 primarily targeted websites in Spain. Key sites affected include those belonging to local government entities, public transportation, and energy organizations. Notable regions under attack include Galicia, Murcia, and Andalusia, with a focus on municipal and regional services.AI generated
14 targets are under attack, 0 new targets and 14 targets from previous attack
New Targets(0):
Targets from prev attack(14): id.coruna.gal, www.tramalacant.es, www.palma.es, www.transportepublico.es, energia.imdea.org, www.elcasco1920.com, www.hacienda.gob.es, www.parcan.es, www.talgo.com, comunicacion.diputaciondevalladolid.es, www.coruna.gal, web.murcia.es, www.legebiltzarra.eus, www.turgranada.es
Dismissed Targets(1): metropolitanogranada.es
2026-02-21_07-10-08
The sites attacked by noname057 include various domains primarily from Spain. Key targets include government and municipal websites such as id.coruna.gal, energia.imdea.org, and www.hacienda.gob.es. Other notable attacks were on tourism and transportation sites like www.turgranada.es and www.transportepublico.es. The attacks demonstrate a focus on Spanish institutions and public services.AI generated
15 targets are under attack, 0 new targets and 15 targets from previous attack
New Targets(0):
Targets from prev attack(15): energia.imdea.org, id.coruna.gal, www.legebiltzarra.eus, www.tramalacant.es, www.coruna.gal, www.parcan.es, web.murcia.es, www.turgranada.es, www.elcasco1920.com, comunicacion.diputaciondevalladolid.es, metropolitanogranada.es, www.talgo.com, www.hacienda.gob.es, www.palma.es, www.transportepublico.es
Dismissed Targets(21): www.ufd.es, www.nedgia.es, www.transgesa.es, gasnam.es, eidas.izenpe.com, www.gasrenovable.org, www.toledo.es, emtre.es, aul.gl, qeqertalik.gl, kujalleq.gl, www.logista.com, areaprivada.ufd.es, avannaata.gl, www.fundacionnaturgy.org, sermersooq.gl, naalakkersuisut.gl, sede.toledo.es, diskoline.gl, www.globalpower-generation.com, qeqqata.gl
2026-02-21_07-05-08
The attacks attributed to noname057 primarily targeted websites in Spain, with notable focus on regional and governmental entities. The principal countries under attack include Spain, as evidenced by the numerous Spanish domains such as www.ufd.es, www.parcan.es, and www.hacienda.gob.es. Additionally, there are several sites from Greenland, indicated by the presence of .gl domains like kujalleq.gl and sermersooq.gl. Overall, the attacks reflect a concentrated effort against Spanish institutions and some Greenlandic entities.AI generated
36 targets are under attack, 15 new targets and 21 targets from previous attack
New Targets(15): id.coruna.gal, energia.imdea.org, www.legebiltzarra.eus, www.tramalacant.es, www.parcan.es, web.murcia.es, www.coruna.gal, www.turgranada.es, www.elcasco1920.com, comunicacion.diputaciondevalladolid.es, metropolitanogranada.es, www.talgo.com, www.hacienda.gob.es, www.palma.es, www.transportepublico.es
Targets from prev attack(21): www.ufd.es, www.nedgia.es, www.transgesa.es, gasnam.es, eidas.izenpe.com, www.gasrenovable.org, www.toledo.es, emtre.es, aul.gl, qeqertalik.gl, www.logista.com, areaprivada.ufd.es, kujalleq.gl, avannaata.gl, www.fundacionnaturgy.org, sermersooq.gl, naalakkersuisut.gl, sede.toledo.es, diskoline.gl, www.globalpower-generation.com, qeqqata.gl
Dismissed Targets(9): www.inatsisartut.gl, www.apc.es, www.sedigas.es, www.ombudsmand.gl, www.sullissivik.gl, www.bilbao.eus, www.palmasport.es, licitaciones.canaldeisabelsegunda.es, srm.canaldeisabelsegunda.es
2026-02-20_11-05-08
The attacks attributed to noname057 primarily targeted websites in Spain and Greenland. Key sectors affected include energy, public services, and local government. Notable sites include those related to natural gas, renewable energy, and municipal services. The attacks highlight a growing trend in cyber threats against critical infrastructure in these regions.AI generated
30 targets are under attack, 11 new targets and 19 targets from previous attack
New Targets(11): qeqqata.gl, naalakkersuisut.gl, www.sullissivik.gl, avannaata.gl, aul.gl, diskoline.gl, kujalleq.gl, sermersooq.gl, www.ombudsmand.gl, qeqertalik.gl, www.inatsisartut.gl
Targets from prev attack(19): www.fundacionnaturgy.org, www.gasrenovable.org, licitaciones.canaldeisabelsegunda.es, www.bilbao.eus, www.toledo.es, areaprivada.ufd.es, www.nedgia.es, www.sedigas.es, www.logista.com, www.ufd.es, sede.toledo.es, gasnam.es, emtre.es, eidas.izenpe.com, www.palmasport.es, www.apc.es, srm.canaldeisabelsegunda.es, www.transgesa.es, www.globalpower-generation.com
Dismissed Targets(0):
2026-02-20_08-05-09
The attacks by noname057 primarily targeted websites in Spain, affecting various sectors including energy, public services, and local government. Notable sites include gasnam.es, srm.canaldeisabelsegunda.es, and toledo.es, showcasing a focus on infrastructure and utilities. Other affected entities include private companies and foundations, indicating a broad range of interests in the cyber assault.AI generated
19 targets are under attack, 0 new targets and 19 targets from previous attack
New Targets(0):
Targets from prev attack(19): gasnam.es, www.ufd.es, srm.canaldeisabelsegunda.es, www.palmasport.es, sede.toledo.es, www.sedigas.es, eidas.izenpe.com, areaprivada.ufd.es, www.bilbao.eus, www.transgesa.es, licitaciones.canaldeisabelsegunda.es, www.globalpower-generation.com, www.apc.es, www.toledo.es, www.gasrenovable.org, emtre.es, www.nedgia.es, www.logista.com, www.fundacionnaturgy.org
Dismissed Targets(6): start-ni-mitte.de, www.nah.sh, www.l.de, www.vbb.de, www.vmv.de, frontend-api.sbahn-hannover.de
2026-02-20_07-05-08
The attacks attributed to noname057 primarily targeted websites in Spain and Germany. Key sectors affected include energy, environmental organizations, and public services. Notable sites include gasnam.es and fundacionnaturgy.org from Spain, as well as sbahn-hannover.de and vbb.de from Germany. The attacks indicate a focus on critical infrastructure and public utilities.AI generated
25 targets are under attack, 19 new targets and 6 targets from previous attack
New Targets(19): gasnam.es, www.fundacionnaturgy.org, www.palmasport.es, www.logista.com, areaprivada.ufd.es, sede.toledo.es, eidas.izenpe.com, www.nedgia.es, www.globalpower-generation.com, www.transgesa.es, srm.canaldeisabelsegunda.es, www.sedigas.es, www.gasrenovable.org, www.bilbao.eus, www.apc.es, www.ufd.es, www.toledo.es, licitaciones.canaldeisabelsegunda.es, emtre.es
Targets from prev attack(6): www.vmv.de, frontend-api.sbahn-hannover.de, start-ni-mitte.de, www.nah.sh, www.vbb.de, www.l.de
Dismissed Targets(20): www.interglobo.net, www.advens.com, vcbalarm.es, www.tibagroup.com, www.authusb.net, web.larioja.org, www.cabeza.com, www.bahn.de, contratacioncentralizada.gob.es, www.cleceseguridad.com, ww2.aiaf.es, www.jtsec.es, eme-es.com, www.trablisa.es, ciberso.com, revistasic.es, www.silescb.com, www.totallogistic.es, www.navarra.es, epicom.es
2026-02-19_10-15-08
Noname057(16) has targeted various websites across multiple countries. The principal countries under attack include Germany, with sites like sbahn-hannover.de and bahn.de; Spain, featuring vbb.de, totallogistic.es, and contratacioncentralizada.gob.es; and other regions represented by sites such as advens.com and interglobo.net. This indicates a broad range of interests and potential motivations behind the attacks.AI generated
26 targets are under attack, 1 new targets and 25 targets from previous attack
New Targets(1): www.bahn.de
Targets from prev attack(25): frontend-api.sbahn-hannover.de, www.vbb.de, www.advens.com, www.cabeza.com, www.l.de, vcbalarm.es, www.jtsec.es, www.totallogistic.es, www.cleceseguridad.com, ww2.aiaf.es, ciberso.com, revistasic.es, www.navarra.es, www.nah.sh, start-ni-mitte.de, epicom.es, www.interglobo.net, www.vmv.de, www.silescb.com, eme-es.com, contratacioncentralizada.gob.es, www.authusb.net, www.trablisa.es, www.tibagroup.com, web.larioja.org
Dismissed Targets(0):
2026-02-19_09-55-10
The attacks attributed to noname057(16) primarily targeted websites in Spain and Germany. Notable Spanish sites include interglobo.net, totallogistic.es, and navarra.es, while German targets include vbb.de and vmv.de. Other affected countries include minor representations from the Netherlands and the United States, as indicated by sites like l.de and authusb.net. Overall, the campaign highlights a focus on logistics, transportation, and regional government entities.AI generated
25 targets are under attack, 6 new targets and 19 targets from previous attack
New Targets(6): start-ni-mitte.de, www.vmv.de, www.vbb.de, frontend-api.sbahn-hannover.de, www.l.de, www.nah.sh
Targets from prev attack(19): www.interglobo.net, www.totallogistic.es, www.navarra.es, eme-es.com, revistasic.es, www.trablisa.es, www.tibagroup.com, ww2.aiaf.es, www.jtsec.es, www.advens.com, www.authusb.net, www.cleceseguridad.com, contratacioncentralizada.gob.es, ciberso.com, www.silescb.com, www.cabeza.com, vcbalarm.es, epicom.es, web.larioja.org
Dismissed Targets(0):
2026-02-19_07-20-07
The sites attacked by noname057(16) primarily belong to Spain, indicating a focus on Spanish governmental and business entities. The targeted websites include those related to public administration, logistics, security, and various service providers, highlighting a significant threat landscape within the country.AI generated
19 targets are under attack, 5 new targets and 14 targets from previous attack
New Targets(5): www.authusb.net, epicom.es, ciberso.com, revistasic.es, www.jtsec.es
Targets from prev attack(14): www.advens.com, contratacioncentralizada.gob.es, ww2.aiaf.es, www.cabeza.com, eme-es.com, www.totallogistic.es, www.navarra.es, www.cleceseguridad.com, vcbalarm.es, www.tibagroup.com, www.trablisa.es, www.silescb.com, web.larioja.org, www.interglobo.net
Dismissed Targets(0):
2026-02-19_07-15-08
Noname057(16) has targeted various websites primarily in Spain. The attacked sites include government portals such as contratacioncentralizada.gob.es and regional sites like navarra.es and web.larioja.org. Additionally, several private companies from different sectors, including logistics and security, were affected, such as totallogistic.es and cleceseguridad.com. Overall, Spain is the main country under attack in this campaign.AI generated
14 targets are under attack, 2 new targets and 12 targets from previous attack
New Targets(2): www.advens.com, eme-es.com
Targets from prev attack(12): contratacioncentralizada.gob.es, ww2.aiaf.es, www.cabeza.com, www.totallogistic.es, www.navarra.es, www.cleceseguridad.com, vcbalarm.es, www.tibagroup.com, www.trablisa.es, www.silescb.com, web.larioja.org, www.interglobo.net
Dismissed Targets(0):
2026-02-19_07-10-08
Noname057(16) has targeted various websites primarily from Spain. Key sectors affected include logistics, security, and government services. The attacks have impacted sites such as Silescb, Cabeza, Trablisa, Interglobo, and several others, indicating a focused effort on Spanish organizations and institutions.AI generated
12 targets are under attack, 2 new targets and 10 targets from previous attack
New Targets(2): www.interglobo.net, www.totallogistic.es
Targets from prev attack(10): www.silescb.com, www.cabeza.com, www.trablisa.es, www.cleceseguridad.com, contratacioncentralizada.gob.es, vcbalarm.es, web.larioja.org, www.navarra.es, ww2.aiaf.es, www.tibagroup.com
Dismissed Targets(0):
2026-02-19_07-05-08
Noname057(16) has targeted various websites primarily in Spain, including companies and governmental organizations. The attacked sites include Silescb, Cabeza, Trablisa, Cleceseguridad, and others, indicating a focus on both private and public sectors within the country.AI generated
10 targets are under attack, 10 new targets and 0 targets from previous attack
New Targets(10): www.silescb.com, www.cabeza.com, www.trablisa.es, www.cleceseguridad.com, contratacioncentralizada.gob.es, vcbalarm.es, web.larioja.org, www.navarra.es, ww2.aiaf.es, www.tibagroup.com
Targets from prev attack(0):
Dismissed Targets(32): www.mjusticia.gob.es, tks.sumy.ua, www.jtsec.es, skm.com.ua, ejercitodelaireydelespacio.defensa.gob.es, ejercito.defensa.gob.es, www.ccn.cni.es, s2grupo.es, armada.defensa.gob.es, emad.defensa.gob.es, megaprostir.net, z.skm.com.ua, zbx.skm.com.ua, www.ccn-cert.cni.es, sede.agenciatributaria.gob.es, mumken.es, contrataciondelestado.es, rns.ccn-cert.cni.es, administracion.gob.es, triolan.com, sitv.com.ua, online.sumy.ua, www.axians.es, home.l4.ua, www.cni.es, www.teldat.com, l4.ua, representantesaduaneros.com, planderecuperacion.gob.es, www.dsn.gob.es, www.shtorm.net, www.defensa.gob.es
2026-02-19_07-00-11
The attacks attributed to noname057(16) primarily targeted websites in Spain and Ukraine. Key sectors affected include government agencies, defense, and telecommunications. Notable Spanish sites include planderecuperacion.gob.es and administracion.gob.es, while Ukrainian targets include zbx.skm.com.ua and online.sumy.ua. The attacks highlight a focus on critical infrastructure and public services in these countries.AI generated
32 targets are under attack, 0 new targets and 32 targets from previous attack
New Targets(0):
Targets from prev attack(32): planderecuperacion.gob.es, www.axians.es, zbx.skm.com.ua, www.teldat.com, tks.sumy.ua, s2grupo.es, contrataciondelestado.es, megaprostir.net, online.sumy.ua, administracion.gob.es, sitv.com.ua, rns.ccn-cert.cni.es, home.l4.ua, www.dsn.gob.es, www.defensa.gob.es, skm.com.ua, ejercito.defensa.gob.es, www.mjusticia.gob.es, ejercitodelaireydelespacio.defensa.gob.es, z.skm.com.ua, www.shtorm.net, sede.agenciatributaria.gob.es, representantesaduaneros.com, armada.defensa.gob.es, www.ccn.cni.es, triolan.com, www.ccn-cert.cni.es, mumken.es, l4.ua, emad.defensa.gob.es, www.cni.es, www.jtsec.es
Dismissed Targets(1): contratacioncentralizada.gob.es