Cyberattack On Finland Intensifies, Hits Critical Sectors

The NoName ransomware group, suspected to have Russian affiliations, has reportedly intensified its cyberattack on Finland. The recent wave of distributed denial-of-service (DDoS) attacks has targeted a wide array of critical sectors in Finland.

The NoName cyberattacks have zeroed in on a variety of critical sectors encompassing the Energy Industry Association, which plays a pivotal role in overseeing the nation’s energy policies.

Additionally, Technical Academic TEK, representing technical professionals and engineers, has become a target, signifying a deliberate assault on key intellectual and technical expertise in the country.

Further intensifying the impact, the cyber onslaught extends to Oikeus.fi, Finland’s legal information portal, underlining the hacker group’s interest in disrupting legal infrastructure.

The Association of Municipalities, a collaborative body uniting local municipalities, faces the brunt of the attacks, impacting the decentralized governance structure.

Simultaneously, the Consumer Disputes Board, responsible for resolving consumer conflicts, becomes another casualty, illustrating a comprehensive assault on various facets of Finnish society and services.

In Detail: Cyberattack on Finland

The severity of the cyberattack on Finland claim is sensed by the diverse industries targeted, indicating a strategic and widespread campaign. If a cyberattack on Finland is proven true, the impact of this multi-industry attack could be far-reaching.

The situation further intensifies with the hacker group’s message, which reads, “We continue to remind the Finnish government how bad the idea of locating a NATO base near Russia is.”

The Cyber Express team conducted a thorough check of the websites reportedly under attack by NoName and found them operating smoothly. However, attempts to glean more details from the affected organizations proved futile, as there has been no official response from any entity as of the time of writing this report.

Previous Cyberattack on Finland 

In the first week of January 2024, NoName, a ransomware group launched a series of cyberattacks on several Finnish government organizations.

Targets included critical entities like Traficom, the National Cyber Security Centre Finland (NCSC-FI), The Railways, The Agency for Regulation and Development of Transport and Communications Infrastructure of Finland, and multiple subdomains of the Finnish Road Agency.

Additionally, the Central Chamber of Commerce, the Bank of Finland, the Helsinki Region Chamber of Commerce, and The Finland Arbitration Institute were also victims of the NoName DDoS attacks.

Why Targeting Finnish Organizations

The escalation of DDoS attacks on Finnish organizations is rooted in geopolitical tensions. As Russia’s relations with Western powers strained during the Russia-Ukraine war, Ukraine’s alignment with the EU and the US has fueled resentment.

In response, Russia-linked hacker groups have intensified cyber operations, targeting EU and US-based organizations. This pattern is now evident in the deliberate targeting of Finnish sectors by the NoName ransomware group.

If the claims made by NoName are substantiated, the potential consequences could be profound.

The multi-sectoral targeting indicates a deliberate effort to disrupt critical services and compromise sensitive data. The Energy Industry, Academic Institutions, Legal Services, Municipalities, and Consumer Affairs are all crucial components of Finland’s infrastructure, and their compromise could have cascading effects on various aspects of the nation’s functionality.0

As the investigation into the NoName cyberattacks unfolds, it is crucial for the affected entities to communicate openly and work collaboratively to enhance cybersecurity measures.

The international community, too, must remain vigilant in the face of evolving cyber threats that transcend borders, posing risks to the stability and security of nations.

Media Disclaimer: This report is based on internal and external research obtained through various means. The information provided is for reference purposes only, and users bear full responsibility for their reliance on it. The Cyber Express assumes no liability for the accuracy or consequences of using this information.

