Operation PowerOFF shuts down 27 DDoS-for-hire platforms

December 11, 2024 at 11:38AM Law enforcement from 15 countries has dismantled 27 DDoS-for-hire services, arrested three administrators, and identified 300 users as part of ‘Operation PowerOFF.’ This initiative, led by Europol, targets cybercrime involving DDoS attacks, which can disrupt online services, especially during peak holiday shopping. **Meeting Takeaways:** 1. **Operation PowerOFF Success**: An international … Read more

BlackBasta Ransomware Brand Picks Up Where Conti Left Off

November 25, 2024 at 05:09PM Recent analysis shows that Russian-language ransomware groups are coordinating closely, sharing tactics and malware. BlackBasta has emerged as a key player, adapting to law enforcement crackdowns. Cybersecurity experts warn of potential cooperation between BlackBasta and the Russian state, emphasizing the need for enhanced defenses against evolving social engineering attacks. ### … Read more

Cloudflare blocks largest recorded DDoS attack peaking at 3.8Tbps

October 3, 2024 at 12:15PM A recent DDoS campaign targeted financial, internet, and telecommunications sectors, resulting in a record 3.8 Tbps volumetric attack. The assault comprised 100 hyper-volumetric attacks, overwhelming network infrastructure and primarily leveraging compromised devices in various countries. Cloudflare autonomously mitigated the attacks, with UDP-based transfers and CUPS vulnerabilities posing ongoing threats. Key … Read more

How DDoS attacks are taking down even the largest tech companies

November 16, 2023 at 10:22AM DDoS attacks have been increasing, particularly targeting major cloud platforms like Microsoft. These attacks aim to disrupt online services by overwhelming them with excessive traffic. The recent attacks on Microsoft employed Layer 7 DDoS attacks, which can cause significant damage with fewer resources. Anonymous Sudan, a cyber threat group, was … Read more

Record-Breaking 100 Million RPS DDoS Attack Exploits HTTP/2 Rapid Reset Flaw

October 26, 2023 at 10:06AM Cloudflare has reported mitigating thousands of distributed denial-of-service (DDoS) attacks that exploited the recently disclosed HTTP/2 Rapid Reset flaw. Among these attacks, 89 exceeded 100 million requests per second. The total number of HTTP DDoS attack requests in Q3 2023 reached 8.9 trillion, representing a significant increase compared to previous … Read more

Cloudflare sees surge in hyper-volumetric HTTP DDoS attacks

October 26, 2023 at 09:43AM Cloudflare has reported a significant increase in hyper-volumetric HTTP DDoS attacks in Q3 2023, surpassing previous years. These attacks overwhelm servers with garbage traffic, and exploit a new technique called ‘HTTP/2 Rapid Reset.’ Cloudflare also observed trends in mDNS, CoAP, and ESP attacks, indicating the emergence of new attack strategies. … Read more

Organizations Respond to HTTP/2 Zero-Day Exploited for DDoS Attacks

October 11, 2023 at 08:24AM Tech companies including Cloudflare, AWS, and Google have responded to the HTTP/2 zero-day vulnerability that led to massive distributed denial-of-service attacks. The attacks exploited the HTTP/2 Rapid Reset feature, resulting in servers being taken down. Organizations like CISA, Microsoft, NGINX, F5, Netty, Apache, Swift, and Linux distributions have issued advisories … Read more