or analyse a relationship
0 incidents · 545 responses 0 threat actors
Years
Responses
Analyse
545 records 0 incidents · 545 responses
DKDanish Civil Protection Agency Pro-Russian hacker groups (Russian Federation) Danish SAMSIK Issued Warning of Heightened Threat From Destructive Cyber Attacks by Russian State-Sponsored Hackers on 30 June 2026 Official policy 30 Jun 2026
Official policy 30 Jun 2026
DKDanish Civil Protection Agency Pro-Russian hacker groups (Russian Federation)
Danish SAMSIK Issued Warning of Heightened Threat From Destructive Cyber Attacks by Russian State-Sponsored Hackers on 30 June 2026
GRAL2 statesjoint Albanian and Greek Defence Ministers Held Talks on Bilateral Cooperation in National Cybersecurity, 29 June 2026 Official policy 29 Jun 2026
Official policy 29 Jun 2026
GRAL2 states
Albanian and Greek Defence Ministers Held Talks on Bilateral Cooperation in National Cybersecurity, 29 June 2026
USME2 statescoordinated A.B. (Iranian/Turkish national) Montenegrin Police Directorate and FBI Arrested Turkish-Iranian Cybercrime Suspect in Kotor, 25 June 2026 Criminal proceedings 25 Jun 2026
Criminal proceedings 25 Jun 2026
USME2 states A.B. (Iranian/Turkish national)
Montenegrin Police Directorate and FBI Arrested Turkish-Iranian Cybercrime Suspect in Kotor, 25 June 2026
USJPKR3 statescoordinated US, Japan, and ROK Interagency Delegations Convened the Trilateral Diplomatic Working Group on DPRK Cyber Threats on 25-26 June 2026 Official policy 25 Jun 2026
Official policy 25 Jun 2026
USJPKR3 states
US, Japan, and ROK Interagency Delegations Convened the Trilateral Diplomatic Working Group on DPRK Cyber Threats on 25-26 June 2026
USGBDECA+26 statesjoint Amadey Europol and International Partners Launched Operation Endgame, Disrupting SocGholish, Amadey, and StealC Malware Networks on 24 June 2026 Operational action 24 Jun 2026
Operational action 24 Jun 2026
USGBDECA+26 states Amadey
Europol and International Partners Launched Operation Endgame, Disrupting SocGholish, Amadey, and StealC Malware Networks on 24 June 2026
GBCity of London Police Scattered Spider UK Authorities Convicted Scattered Spider Members for Cyber Attack on Transport for London on 22 June 2026 Criminal proceedings 22 Jun 2026
Criminal proceedings 22 Jun 2026
GBCity of London Police Scattered Spider
UK Authorities Convicted Scattered Spider Members for Cyber Attack on Transport for London on 22 June 2026
Showing 1–6 of 545 Prev Page 1 / 91 Next
How to read the ledger Every row is an incident or a response. Shape tells them apart; colour and the marks below each sigil carry the rest.
Row type
Incident — a square sigil. The connected dots below carry attribution.
Response — a round sigil. The two squares below show its anchors.
Incident types
Data theft
Disruption
Hijacking
Ransomware & extortion
Response types
Official policy
Unofficial policy
Criminal proceedings
Technical disclosure
Operational action
Reading the marks
Attribution dots (incidents) — how firmly an initiator is named; both filled and joined navy when fully attributed.
none one both
Weight squares (responses) — anchors present: left = a linked incident, right = a named actor.
0 1 2
Issuer stack — one chip is a single issuer; a stack of ISO codes marks a joint or coordinated response.
EUsingle DEFRNL+5several states

An independent, interdisciplinary research consortium providing evidence-based analysis of cyber incidents and the political and legal responses to them.

A consortium of

Heidelberg University · Stiftung Wissenschaft und Politik (SWP)

© 2026 European Repository of Cyber Incidents Evidence-based analysis of cyber incidents & responses
Search