Pro-Russian Actors Initiated A DDoS Attack Against Canadian Organizations

The Canadian government, banking, and transportation industries have recently been the targets of many distributed denial of service (DDoS) attacks.

This criminal activity is linked to state-sponsored cyber threat actors from Russia. Since March 2022, NoName057(16), a pro-Russian hacktivist operator or group, has claimed responsibility for many Distributed Denial of Service (DDoS) operations against targets in perceived anti-Russian nations.

The back-end infrastructure of NoName057(16) is hosted in Russia and is probably run by individuals with knowledge of system design and maintenance.

The Canadian Centre for Cyber Security issued a warning to inform the public about these activities, draw attention to the possible effects on government services, and offer advice to organizations that could target criminal activity.

Document
Get a Demo

Start protecting your SaaS data in just a few minutes!

With DoControl, you can keep your SaaS applications and data safe and secure by creating workflows tailored to your needs. It’s an easy and efficient way to identify and manage risks. You can mitigate the risk and exposure of your organization’s SaaS applications in just a few simple steps.

Using Denial-Of-Service Attack To Cause Disruption

The threat actors bother businesses by using denial-of-service attacks. This is performed by a group of computer systems acting as a botnet to hinder the operation of a targeted web server. The actors then make this degradation public.

DDoS is a type of cybercrime in which the perpetrator floods a server with internet traffic to keep people from accessing linked websites and online services.  

These attacks are carried out by attackers who aim to knock down a company’s servers to make a statement, have fun by taking advantage of a cyber vulnerability, or show their displeasure.

“Actors leverage denial of service tools to harass organizations. This is accomplished through a collection of systems operating as a botnet that degrades a targeted web server’s ability to provide services”, reads the advisory.

Most of the time, on-premises solutions can control this issue; nevertheless, third-party DDoS solutions should be taken into consideration to help stop major and targeted hostile activity. 

Once the actors have terminated the harmful behavior, websites usually resume regular functionality.

The Cyber Centre predicted in July 2022 that state-sponsored cyber threat actors in Russia will very definitely continue to carry out operations in support of the strategic and tactical goals of the Russian military.

Recommendation

Check the perimeter systems to see whether any related activity has taken place.

Review and put into practice the precautionary measures recommended in the Cyber Centre’s recommendations on defending your company from denial-of-service attacks.

Examine the guidelines for US agencies released by the Cybersecurity and Infrastructure Security Agency (CISA), which includes technological mitigation suggestions for handling DDoS activity.

Keep informed about the latest Cyber Security News by following us on Google NewsLinkedinTwitter, and Facebook.

Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

Cyberhaven Hacked – Chrome Extension With 400,000 users Compromised

Cyberhaven, a prominent cybersecurity company, disclosed that its Chrome extension With 400,000+ users was targeted…

46 minutes ago

AT&T and Verizon Hacked – Salt Typhoon Compromised The Network For High Profiles

AT&T and Verizon Communications, two of America's largest telecommunications providers, have confirmed they were targeted…

1 hour ago

Lumma Stealer Attacking Users To Steal Login Credentials From Browsers

Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a disguised…

2 days ago

New ‘OtterCookie’ Malware Attacking Software Developers Via Fake Job Offers

Palo Alto Networks reported the Contagious Interview campaign in November 2023, a financially motivated attack…

2 days ago

NjRat 2.3D Pro Edition Shared on GitHub: A Growing Cybersecurity Concern

The recent discovery of the NjRat 2.3D Professional Edition on GitHub has raised alarms in…

2 days ago

Palo Alto Networks Vulnerability Puts Firewalls at Risk of DoS Attacks

A critical vulnerability, CVE-2024-3393, has been identified in the DNS Security feature of Palo Alto…

2 days ago