惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

WordPress大学
WordPress大学
小众软件
小众软件
MongoDB | Blog
MongoDB | Blog
Hugging Face - Blog
Hugging Face - Blog
Jina AI
Jina AI
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Stack Overflow Blog
Stack Overflow Blog
L
LangChain Blog
大猫的无限游戏
大猫的无限游戏
量子位
A
About on SuperTechFans
G
Google Developers Blog
雷峰网
雷峰网
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
IT之家
IT之家
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
博客园_首页
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Vercel News
Vercel News
V
Visual Studio Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园 - 聂微东
U
Unit 42
Apple Machine Learning Research
Apple Machine Learning Research

Truesec

CRA Reporting Starts on 11 September: What Businesses Need To Know - Truesec Privilege Escalation Vulnerability in Falcon Crowdstrike - Truesec SonicWall Vulnerabilities Exploited in the Wild - Truesec Privileged Access Management (PAM) Is No Longer Optional  - Truesec Australian Arrests Allegedly Disrupt TeamPCP, but the Shai-Hulud Threat Persists - Truesec Critical Citrix NetScaler Memory-Overflow Vulnerability - Truesec Iranian Cyberattacks Against Critical Infrastructure - Truesec Russia Targets Businesses and Officials Behind Europe’s Ukraine Defense Supply Chain - Truesec The World Is Moving at Machine Speed. Are We Ready? - Truesec False CVE in Overwhelmed Verification System - Truesec LLMjacking Is a New Cyber Threat - Truesec Rogue AI Agent Allegedly Hack Hugging Face - Truesec Microsoft SharePoint Server Vulnerabilities Actively Exploited - Truesec Russian Intelligence Targets SOHO Routers - Truesec Cyber Warfare in the Iran War - Truesec Organized Cybercrime Merging with Other Crime - Truesec AI Used in Ransomware Attack The Fortibleed Campaign: Truesec's Experience Fortibleed: Truesec's Experience Supply Chain Attack Compromising Arch Linux AUR Packages with Infostealer and Rootkit - Truesec FortiNet SSO Vulnerability CVE-2025-59718 and CVE-2025-59719 Leading to Full System Compromise - Truesec Critical Vulnerabilities in Ivanti Sentry Allows Code Execution as Root (CVE-2026-10520 & CVE-2026-10523) Typosquatting: When Your Domain Is Used Against You AI in Cybersecurity: Separating Operational Reality from Speculation Compromised @redhat-Cloud-Services Npm Packages Distribute Credential-Stealing Worm GitHub Hacks Highlights Need for Repository Security Installation of a Syslog Log Collector Critical Cisco Secure Workload Vulnerability Allows Unauthenticated Site Admin Access (CVE-2026-20223) Securing IT, OT, and IoT When the Digital Meets the Physical Russia Rolls Out Surveillance Through State-Backed “Super App” MAX
DDoS Attacks Against Norwegian Government Sites - Truesec
Hjalmar Desmond · 2026-08-28 · via Truesec

Threat Insight

On August 24, a denial-of-service (DDoS) attack was directed against infrastructure operated by the Norwegian Digitalisation Agency. The attack impacted several Norwegian government services, as Digdir operates authentication services for many government sites, including ID-porten, MinID, Maskinporten, eFormidling, eInnsyn, the Contact and Reservation Register, and Ansattporten. [1]

The pro-Russian hacktivist group Server Killers has claimed responsibility for the attacks and says it has declared a “cyber war” against Norway, allegedly in response to Norway and Ukraine signing a drone deal to strengthen Ukraine’s defenses. [2]

The DDoS attack was the third similar attack against Norwegian digital infrastructure this summer. Two previous attacks reportedly occurred in June and on August 3. [3]

Assessment

Truesec has no direct evidence that Server Killers is led by the Russian state. However, the group is linked to another Russian hacktivist group, Noname057(16), which has been exposed as the product of a Russian agency called CISM that appears to be involved in online information operations. Since Server Killers shares many characteristics with Noname057(16), including its messaging, it is likely that the group is led by the Russian state in a similar way.

Central authentication services, such as those operated by Digdir, can be effective solutions for minimizing breaches from regular cyberattacks, but they can also make DDoS attacks more effective. Authentication services for banks and other financial institutions are also popular targets for DDoS attacks.

At present, Truesec has no information about the exact extent of the DDoS attack or what DDoS protection Digdir has in place. However, as we have seen previously, even sites with strong DDoS protection can be temporarily disrupted if the attacker has sufficient resources.

Since Sweden and Ukraine have announced that Ukraine will soon begin flying Swedish Gripen fighters, it is possible that this could also trigger similar Russian DDoS attacks against Swedish sites. The risk of Russian information operations in cyberspace will also increase in conjunction with the upcoming general election in Sweden on September 13.

Heightened tensions in Northern Europe, along with warnings about a potential Russian military incursion into one of the Baltic states, also mean that the overall cyber threat landscape in Northern Europe is assessed to be at heightened risk, even if there are no specific cyber threats at this moment. [4]

If you or your organization have concerns about the topic above or need support, please reach out to Truesec for further assistance.

References

[1] https://nsm.no/aktuelt/malrettede-tjenestenektangrep-mot-norske-nettsteder
[2] https://www.nrk.no/artikkel/russisk-hackergruppe-hevder-a-sta-bak-dataangrep-mot-norge-1526574
[3] https://t.me/ServerKillersRus
[4] https://www.rferl.org/a/baltics-russia-security-threat-eu-letter-nato-defense/33840594.html