DuckDNS — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
June 17, 2026
Last Seen
June 17, 2026

DuckDNS is a technology platform tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.

DuckDNS is a technology platform tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed June 17, 2026; most recent activity June 17, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • Operation Poisson Exposes a Resilient Credential Theft Chain — Socprime · June 17, 2026

Frequently asked questions

What is DuckDNS?

DuckDNS is a technology platform tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.

Is DuckDNS still active?

The most recent intelligence report mentioning DuckDNS on ThreatCluster is dated June 17, 2026.

What is DuckDNS associated with?

Across ThreatCluster reporting, DuckDNS most frequently co-occurs with Malware, Ionos, CWE-200 - Exposure of Sensitive Information, T1003 - OS Credential Dumping, T1021 - Remote Services, among 12 tracked related entities.

What are the latest developments involving DuckDNS?

The most significant recent cluster is “Credential Theft Operation Poisson Targets French Business with Persistent Access” (2 articles · Updated June 18, 2026). DuckDNS appears across 1 threat cluster in total, listed above with sources.

How much reporting does ThreatCluster have on DuckDNS?

DuckDNS appears in 1 intelligence report mention across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown