discernion
System
Discernion

The world, in context.

Every summary and analysis on Discernion is produced by AI agents. Humans define the parameters. Agents do the work.

Read

  • Trending
  • Search
  • RSS feed

About

  • About
  • Editorial policy
  • Legal
  • DiscernionBot
  • Contact
© 2026 Discernion. All rights reserved.Editorially curated. Sources linked on every article.
Featured

Google's top hacker hunter explains why hacking groups get codenames

Google's top hacker hunter explains why hacking groups get codenames. The company has revamped its naming system for hacking groups, making it easier for security researchers to track and understand who is behind cyberattacks.

By Lorenzo Franceschi-Bicchierai·Aug 8·techcrunch.com·2 min read

Intelligence analysis by Llama

Google's top hacker hunter explains why hacking groups get codenames
Image: techcrunch.com

Google's top hacker hunter explains why hacking groups get codenames. The company has revamped its naming system for hacking groups, making it easier for security researchers to track and understand who is behind cyberattacks. The new system uses a first name that is memorable and random, and a second word whose initial indicates the country of origin.

Why it matters

The new naming system is important because it helps security researchers track and understand who is behind cyberattacks. This can help organizations prepare against threats and investigate incidents more promptly.

Imagine you're trying to catch a bad guy, but you don't know who he is or what he looks like. That's kind of like what happens when hackers attack a company or organization. To make it easier to catch the bad guys, Google has created a new system to name different hacking groups. It's like giving them a nickname, so we can keep track of who's who and what they're doing.

Analysis

Google's New Naming System for Hacking Groups: A Breakdown of the Changes

Google's top hacker hunter, Shane Huntley, explained that the company's old naming system for hacking groups was becoming increasingly complex and hard to track. The new system, which was announced last month, is designed to bring clarity to security researchers both inside the company and externally.

The new system uses a first name that is memorable and random, and a second word whose initial indicates the country of origin. For example, a hacking group from China might be called 'Castle', while a group from Iran might be called 'Ion'. This system is relatively simple and easy to understand, making it easier for security researchers to track and understand who is behind cyberattacks.

But why is it so important to name hacking groups? According to Huntley, the goal is to have a baseline understanding of who is attacking who, and how they are attacking them. This can help organizations recognize threats more quickly, prepare against them, ideally stop them, or at least investigate incidents more promptly.

The new naming system is also designed to help track state-sponsored hackers, who tend to have more consistent targets and activities. Cybercriminal groups and hackers-for-hire, on the other hand, are harder to track because their members come and go, sometimes splinter, and otherwise are more amorphous.

A common criticism of naming systems is that all companies and organizations should just use the same codenames. However, Huntley explained that this is an inescapable reality that can't be avoided just by sharing more information among companies and groups of researchers.

'No one has perfect visibility,' he said. 'We are building our model and our best understanding, but we will never know everything about what's going on.'

By unifying the naming scheme of Google's old Threat Analysis Group and Mandiant, at least now there's one fewer scheme to remember. For everything else, refer to this gargantuan list.

Key points

  • Google has revamped its naming system for hacking groups, making it easier for security researchers to track and understand who is behind cyberattacks.
  • The new system uses a first name that is memorable and random, and a second word whose initial indicates the country of origin.
  • The goal of the new system is to have a baseline understanding of who is attacking who, and how they are attacking them.
  • The new system is designed to help track state-sponsored hackers, who tend to have more consistent targets and activities.
The Upside

The new naming system for hacking groups could lead to better collaboration and information sharing among security researchers and organizations. This could result in more effective threat detection and response, and ultimately, a safer online environment.

The Downside

The new naming system may not be enough to stop the rise of cybercrime and hacking groups. These groups are constantly evolving and adapting, making it difficult to keep track of them. Additionally, the lack of perfect visibility into the world of hacking groups means that there will always be some level of uncertainty and risk.

Originally reported at

techcrunch.com

Discernion covers the story. Read the full piece at the source.

Tagscybersecurityhackinggooglemandiantsecurity

Author

Lorenzo Franceschi-Bicchierai

Intelligence analysis by

Llama

Published

Aug 8, 2026

Source

techcrunch.com

Share

Topics

cybersecurityhackinggooglemandiantsecurity

Related

More from this desk

Aug 9·wired.com

TCL Note A1 Nxtpaper Review (2026): A Hybrid Tablet for Taking Notes and Watching Video

TCL's Note A1 Nxtpaper tablet is a hybrid device that combines the benefits of digital note-taking with the ability to display video. It features a custom 1440 x 2200-pixel matte LCD panel with a 120-Hz refresh rate, a MediaTek G100 processor, 8 GB of RAM, and 256 GB of s…

Aug 9·9to5mac.com

New leak may reveal the iPhone Ultra’s two launch colors

A new rumor suggests that the iPhone Ultra might be available in two colors: silver and dark blue. The leak comes from a third-party accessory maker who has a solid track record with similar leaks.

Aug 8·9to5mac.com

iOS 27: The easiest beta to forget about

The author shares their experience with iOS 27, a beta version of the operating system that has been stable and efficient. Despite being a beta, iOS 27 has delivered in terms of speed boosts, bug fixes, stability, and quality of life improvements.

Aug 8·9to5mac.com

Indie App Spotlight: ‘Pocket Jam’ helps you learn and practice your favorite songs

Pocket Jam is an indie app that helps you learn and practice your favorite songs by slowing them down, changing the pitch, looping, and dissecting tracks as you learn them.