or analyse a relationship
65 incidents · 84 responses 0 threat actors
Years
Records matching “united states department of state”
Analyse
149 results for “United States Department of State” 65 incidents · 84 responses
Unknown United Kingdom +9 ·Media Clop ransomware group exploited a zero-day in software developer Ipswitch's MOVEit Managed File Transfer and stole data from over 100 organisations beginning on 27 May 2023 27 May 2023
Incident · Low severity 27 May 2023
Unknown United Kingdom +9 ·Media
Clop ransomware group exploited a zero-day in software developer Ipswitch's MOVEit Managed File Transfer and stole data from over 100 organisations beginning on 27 May 2023
USUnited States Treasury Department Technical Reconnaissance Bureau (control… US Treasury Sanctioned North Korean Technical Reconnaissance Bureau and 110th Research Center, 23 May 2023 Criminal proceedings 23 May 2023
Criminal proceedings 23 May 2023
USUnited States Treasury Department Technical Reconnaissance Bureau (control…
US Treasury Sanctioned North Korean Technical Reconnaissance Bureau and 110th Research Center, 23 May 2023
USUnited States Department of Justice Mikhail Matveev (LockBit, Babuk, Hive) (Russian Federation) US Unsealed Two Indictments Against Mikhail Matveev, LockBit Operator, 16 May 2023 Criminal proceedings 16 May 2023
Criminal proceedings 16 May 2023
USUnited States Department of Justice Mikhail Matveev (LockBit, Babuk, Hive) (Russian Federation)
US Unsealed Two Indictments Against Mikhail Matveev, LockBit Operator, 16 May 2023
USUnited States Department of State Mikhail Matveev (LockBit, Babuk, Hive) (Russian Federation) US State Department Offers US$10 Million Reward for Information Leading to Location and Information about Mikhail Matveev, LockBit Operator, on 16 May 2023 Criminal proceedings 16 May 2023
Criminal proceedings 16 May 2023
USUnited States Department of State Mikhail Matveev (LockBit, Babuk, Hive) (Russian Federation)
US State Department Offers US$10 Million Reward for Information Leading to Location and Information about Mikhail Matveev, LockBit Operator, on 16 May 2023
USUnited States Treasury Department Mikhail Matveev (LockBit, Babuk, Hive) (Russian Federation) US Treasury Sanctions Senior LockBit Operator, Mikhail Matveev, 16 May 2023 Criminal proceedings 16 May 2023
Criminal proceedings 16 May 2023
USUnited States Treasury Department Mikhail Matveev (LockBit, Babuk, Hive) (Russian Federation)
US Treasury Sanctions Senior LockBit Operator, Mikhail Matveev, 16 May 2023
Storm-0558 United States +2 ·Civil society & individuals Chinese threat actor Storm-0558 gained access to email accounts of about 25 organisations, including government agencies, starting on 15 May 2023 15 May 2023
Incident · Low severity 15 May 2023
Storm-0558 United States +2 ·Civil society & individuals
Chinese threat actor Storm-0558 gained access to email accounts of about 25 organisations, including government agencies, starting on 15 May 2023
Showing 97–102 of 149 Prev Page 17 / 25 Next
How to read the ledger Every row is an incident or a response. Shape tells them apart; colour and the marks below each sigil carry the rest.
Row type
Incident — a square sigil. The connected dots below carry attribution.
Response — a round sigil. The two squares below show its anchors.
Incident types
Data theft
Disruption
Hijacking
Ransomware & extortion
Response types
Official policy
Unofficial policy
Criminal proceedings
Technical disclosure
Operational action
Reading the marks
Attribution dots (incidents) — how firmly an initiator is named; both filled and joined navy when fully attributed.
none one both
Weight squares (responses) — anchors present: left = a linked incident, right = a named actor.
0 1 2
Issuer stack — one chip is a single issuer; a stack of ISO codes marks a joint or coordinated response.
EUsingle DEFRNL+5several states

An independent, interdisciplinary research consortium providing evidence-based analysis of cyber incidents and the political and legal responses to them.

A consortium of

Heidelberg University · Stiftung Wissenschaft und Politik (SWP)

© 2026 European Repository of Cyber Incidents Evidence-based analysis of cyber incidents & responses
Search