Lyce · Hybrid Watch

hw_604946940c1e18ee

Grote DDoS-aanval treft Letse staatswebsites.

Een gecoördineerde distributed-denial-of-service-aanval (DDoS) trof op de ochtend van 2 oktober meerdere Letse staatsinstellingen, waardoor belangrijke portalen zoals het gov.lv-platform en de digitale handtekeningdienst eParaksts.lv tot ongeveer 80 minuten offline waren of ernstig traag werkten. De geografie is significant: deze webdiensten fungeren als centrale knooppunten voor nationaal bestuur, publieke dienstverlening en digitale-identiteitssystemen voor de bevolking van Letland, waardoor ze waardevolle doelwitten zijn in het hybride domein. De dynamiek weerspiegelt de logica van hybride oorlogsvoering: door centrale overheidsportalen neer te halen of te degraderen, dwong de actor een snelle herverdeling van IT-responsmiddelen af, verhoogde hij de perceptie van risico’s voor publieke diensten en dwong hij een escalatie van de defensieve houding af zonder raketten of troepen in te zetten. Volgens het Letse Staatsradio- en Televisiecentrum (LVRTC) was de aanval afkomstig van IP-adressen in Rusland, Belarus, Vietnam, Zuid-Korea, India, Taiwan en de VS, wat wijst op ofwel een botnet-bronnenpatroon of proxying via meerdere jurisdicties. Hoewel er geen officiële publieke attributie aan de regering van de Russische Federatie werd gedaan, zien cybersecurityanalisten dit als consistent met campagnes van aan Rusland gelieerde hacktivisten en statelijke proxy’s tegen Baltische regeringen. De episode onderstreepte dat Letlands blootstelling aan hybride dreigingen diep doorloopt in zijn digitale bestuurslaag, niet alleen in grenszones of militaire domeinen.

Gebeurtenis
2025-10-02
Publicatie
2025-10-02T16:19:35Z
Eerst waargenomen
2026-09-24T06:09:10.079Z
Beoordelingsstatus
Niet beoordeeld
Landen
LV
Bijgewerkt
2026-09-27T23:56:59.668Z

E/M/R/S-scores

  • EBestaan0/4 · Niet beoordeeld
  • MIntentie0/4 · Niet beoordeeld
  • RBand met Russische actor0/4 · Niet beoordeeld
  • SVerantwoordelijkheid van de Russische staat0/4 · Niet beoordeeld

Feiten

Geen feiten

Bronnen

  1. Rol
    discovery_lead
    Datum
    2025-10-02T16:19:35Z

    A coordinated distributed-denial-of-service (DDoS) attack struck multiple Latvian state institutions on the morning of 2 October, rendering key portals such as the gov.lv platform and the digital signature service eParaksts.lv either offline or severely slow for up to around 80 minutes. The geography is significant: these web-services act as central nodes for national governance, public service delivery and digital identity systems across Latvia’s population, making them high-value targets in the hybrid-domain. The dynamics reflect hybrid-warfare logic: by taking down or degrading core government portals, the actor imposed rapid re-allocation of IT-response resources, raised public-service risk perceptions, and forced escalation of defensive posture without deploying missiles or troops. According to the Latvian State Radio and Television Centre (LVRTC), the attack originated from IP addresses across Russia, Belarus, Vietnam, South Korea, India, Taiwan and the U.S., suggesting either a bot-net sourcing pattern or proxying through multiple jurisdictions. Although no official public attribution was made to the Russian Federation’s government, cybersecurity analysts view this as consistent with Russia-aligned hacktivist and state-proxy campaigns against Baltic governments. The episode underscored that Latvia’s hybrid-threat exposure extends deep into its digital-governance layer, not only border zones or military domains.