iZOOlogic threat researchers have been monitoring the recent activities of the Anonymous Sudan threat group as they were seen targeting major organisations in the UAE. The threat group’s sophisticated techniques are causing concern as they could cause significant operational disruptions.
Since the beginning of 2023, a politically-driven group of hackers known as Anonymous Sudan has been carrying out multiple Distributed Denial of Service (DDoS) attacks against targets across Europe, Australia, and India.
Studies reveal that the attacks were carried out in response to alleged anti-Islamic actions by the victim countries as part of an online activism campaign, also known as hacktivism. However, there is no confirmation regarding whether Anonymous Sudan is located in Sudan or if any of its members are actually from that region.
Anonymous Sudan has been showing indications of attack threats toward entities in the UAE.
From our iZOOlogic research team’s investigations, a number of Abu Dhabi Government departments, three UAE banks, and other major UAE organisations have been the most recent targets of the notorious threat group.
Our research team is monitoring the situation closely as these attacks have yet to be reported publicly or shared by the group on their online channels. We will keep track of any updates regarding these incidents.
In related news, Killnet, a hacker group known for carrying out DDoS attacks and backing Russia, has recently announced the inclusion of Anonymous Sudan into its cluster of hacktivists.
Both groups seem to share common goals and are targeting countries that oppose Russia. However, there have been speculations that Anonymous Sudan might be a false flag operation by the Russian government.
To help prevent attacks, experts recommend verifying your Anti-DDoS configuration, ensuring your sites are protected, and having your NOC monitor ISP lines for abnormal traffic.
It is also advisable to scan your website frequently for potential security loopholes and ensure that all necessary updates are installed to prevent possible attacks. Attackers could use the original IP address of their system or fake it to make it more difficult to track the source of the attack, potentially by using VPNs.
Therefore, staying alert and taking preemptive measures to safeguard yourself against cyber threats is crucial.