Attribution is the practice of taking forensic artifacts of a cyberattack and matching them to known threats against targets with a profile matching a particular organization. Or in other words, trying to figure out the threat actor based on the methods used and who the target was (or might have been). More in-depth information can be found in these blog posts: Attribution, and when you should care: Part 1 and Attribution Part II: Don’t overthink it.

