Lyce · Hybrid Watch

hw_8717080f3d4fd73f

DDoS attacks on Canadian critical infrastructure by pro-Russian hacktivists.

The pro-Russian hacktivist group NoName057(16) claimed responsibility for a coordinated series of distributed-denial-of-service (DDoS) attacks against a number of Canadian targets. On 12 April the group announced that the websites of the ports of Montréal, Québec City and Halifax had been disrupted, along with banking sites for Laurentian Bank of Canada and TD Bank. On the night of 12-13 April a second wave struck energy and technology sector companies: Matrox (a Montreal-based graphics-card maker), Husky Energy (Alberta oil firm) and Hydro-Québec (public power utility) reportedly faced outages. The timing aligned with Ottawa’s announcement of further military aid to Ukraine (e.g., 21,000 assault rifles and 2.4 million rounds) and the group cited that as motive. The disruption did not appear to cause physical damage or major service failure but triggered emergency guidance from Canada’s cyber-defence authorities and revealed vulnerabilities in “deep-inland” infrastructure as part of a hybrid-threat vector. From a typology standpoint, the incident falls under cyber means aimed at economic/industrial and infrastructure targets, representing a non-kinetic but strategic form of hybrid aggression.

Occurrence
2023-03-12
Publication
2023-03-11T23:00:00Z
First observed
2026-09-24T06:09:10.079Z
Review status
Not assessed
Countries
CA
Updated
2026-09-27T23:56:59.668Z

E/M/R/S scores

  • EExistence0/4 · Not assessed
  • MIntent0/4 · Not assessed
  • RRussian actor link0/4 · Not assessed
  • SRussian state responsibility0/4 · Not assessed

Facts

No facts

Sources

  1. Role
    discovery_lead
    Date
    2023-03-11T23:00:00Z

    The pro-Russian hacktivist group NoName057(16) claimed responsibility for a coordinated series of distributed-denial-of-service (DDoS) attacks against a number of Canadian targets. On 12 April the group announced that the websites of the ports of Montréal, Québec City and Halifax had been disrupted, along with banking sites for Laurentian Bank of Canada and TD Bank. On the night of 12-13 April a second wave struck energy and technology sector companies: Matrox (a Montreal-based graphics-card maker), Husky Energy (Alberta oil firm) and Hydro-Québec (public power utility) reportedly faced outages. The timing aligned with Ottawa’s announcement of further military aid to Ukraine (e.g., 21,000 assault rifles and 2.4 million rounds) and the group cited that as motive. The disruption did not appear to cause physical damage or major service failure but triggered emergency guidance from Canada’s cyber-defence authorities and revealed vulnerabilities in “deep-inland” infrastructure as part of a hybrid-threat vector. From a typology standpoint, the incident falls under cyber means aimed at economic/industrial and infrastructure targets, representing a non-kinetic but strategic form of hybrid aggression.